LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 09-03-2012, 11:31 PM   #1
Skaperen
Senior Member
 
Registered: May 2009
Location: center of singularity
Distribution: Xubuntu, Ubuntu, Slackware, Amazon Linux, OpenBSD, LFS (on Sparc_32 and i386)
Posts: 2,684
Blog Entries: 31

Rep: Reputation: 176Reputation: 176
Any iptables/netfilter document that does NOT talk about NAT?


Is there any iptables/netfilter document that does NOT talk about NAT? It seems almost everything I find is focused on NAT setups. And none seem to mention IPv6 anywhere. And the packet filtering document on netfilter.org, which seemed to be the only thing that didn't focus on NAT, starts out with examples that don't even work (seems to be out of date).
 
Old 09-04-2012, 08:41 PM   #2
Ygrex
Member
 
Registered: Nov 2004
Location: Russia (St.Petersburg)
Distribution: Debian
Posts: 666

Rep: Reputation: 68
no way, even ip6tables mentions nat:
Code:
$ man ip6tables | grep -iw nat
       iptables -t nat -A PREROUTING -p tcp --dport 80 -m cpu --cpu 0 -j REDI‐
       iptables -t nat -A PREROUTING -p tcp --dport 80 -m cpu --cpu 1 -j REDI‐
              nat and mangle OUTPUT chains one cannot match on the bridge out‐
if you think nat is deprecated, take a look at nat64 at least
 
Old 09-06-2012, 09:20 PM   #3
Skaperen
Senior Member
 
Registered: May 2009
Location: center of singularity
Distribution: Xubuntu, Ubuntu, Slackware, Amazon Linux, OpenBSD, LFS (on Sparc_32 and i386)
Posts: 2,684

Original Poster
Blog Entries: 31

Rep: Reputation: 176Reputation: 176
Quote:
Originally Posted by Ygrex View Post
if you think nat is deprecated, take a look at nat64 at least
It's not about deprication of NAT. I'm just looking for a clean reference for things that just don't need NAT. I need to get back into this and NAT will not be involved. Everything I see seems to include NAT everywhere and no explanation about how to leave it out correctly.
 
Old 09-06-2012, 11:21 PM   #4
Ygrex
Member
 
Registered: Nov 2004
Location: Russia (St.Petersburg)
Distribution: Debian
Posts: 666

Rep: Reputation: 68
ok, basic brute force protection using linux netfilter: http://archive.cert.uni-stuttgart.de.../msg00025.html
nothing about nat and applicable to ipv6
 
Old 09-07-2012, 06:29 PM   #5
Skaperen
Senior Member
 
Registered: May 2009
Location: center of singularity
Distribution: Xubuntu, Ubuntu, Slackware, Amazon Linux, OpenBSD, LFS (on Sparc_32 and i386)
Posts: 2,684

Original Poster
Blog Entries: 31

Rep: Reputation: 176Reputation: 176
Quote:
Originally Posted by Ygrex View Post
ok, basic brute force protection using linux netfilter: http://archive.cert.uni-stuttgart.de.../msg00025.html
nothing about nat and applicable to ipv6
I'm looking more for something like a mini-manual or reference guide. A tutorial might be OK. Examples are good. But this page seems to be focused on something dynamic for a particular case. I'm looking for a document where the author believes it covers a lot of simple case others might have.

I guess I should buy a book and cut the binding at the first 1/3. OTOH, that might be bad as some big documents I've seen went right into NAT stuff as soon as they explained what a network is.
 
Old 09-07-2012, 07:47 PM   #6
Ygrex
Member
 
Registered: Nov 2004
Location: Russia (St.Petersburg)
Distribution: Debian
Posts: 666

Rep: Reputation: 68
well, seems like you are going to read lectures before auditory not necessarily familiar with NAT; let us know when you find something like that

from my experience in most cases NAT is configured if iptables were touched at all; the only except I remember I've mentioned above
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
netfilter/NAT jnreddy Linux - Security 4 10-23-2008 07:20 AM
LXer: Designing and Implementing Linux Firewalls and QoS using netfilter, iproute2, NAT, and L7-filter LXer Syndicated Linux News 0 02-15-2007 09:46 PM
H.323 NAT Netfilter conntrack 2.6 Kernel core support avtechs Linux - Networking 0 05-24-2006 01:12 PM
Netfilter / IPtables SWAT Linux - Newbie 3 11-11-2003 09:04 AM
netfilter + nat + sshd on localhost r3b00t Linux - Security 2 05-24-2001 10:33 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 09:11 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration