=?GB2312?Q?=BB=D8=B8=B4=A3=BA_=5BUsers=5D_Re=3A_Will_I_be_able_to_use_MASQUERA?= =?GB2312?Q?DE_in_iptables=3F?=

Mike Chen ccp0101 at gmail.com
Sat May 1 07:03:11 EDT 2010


ÔÚ 2010-5-1 ÏÂÎç7:02£¬"Suno Ano" <suno.ano at sunoano.org>±àд£º

 Mike> Hi everyone. I found some threads in OpenVZ's forum about
 Mike> MASQUERADE in iptables that said it's not yet supported. Can
 Mike> someone conform this?

It works but you can use the SNAT target instead which is the preferred
way to map addresses because is creates less overhead.

The MASQUERADE target is mostly only used with dynamically assigned IP
connections i.e. when we do not know the actual IP address upfront (read
DHCP). If you have a static IP address, then you should use the SNAT
target which works perfectly fine with OpenVZ.

Users mailing list
Users at openvz.org
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://openvz.org/pipermail/users/attachments/20100501/f420dabd/attachment.html

More information about the Users mailing list