Hi Tom, When I do that NAT translation from a NAT pool, Changing Source IP on the incoming traffic from inet to lan. In this case, I add all the NAT pool IP to the loopback interface so that the system responds to arp for the supported NATpool IP .
Since the traffic has to be routed to one of the lan interfaces from inet , the kernel will see the ip is on the native box and the packet does not get forwarded to lan interface. Is there a workaround? for this situation. Thanks, Naveen
_______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users