Originally Posted by rossonieri#1
pls post your #ip route list
ip route list
172.20.21.0/24 dev eth2 proto kernel scope link src 172.20.21.227
192.168.21.0/24 dev eth1 proto kernel scope link src 192.168.21.85
192.168.20.0/24 dev eth0 proto kernel scope link src 192.168.20.201
172.20.20.0/24 dev eth3 proto kernel scope link src 172.20.20.69
169.254.0.0/16 dev eth3 scope link
default via 172.20.20.5 dev eth3
default via 192.168.20.3 dev eth0
and how you insert that FWMARK to the routing table?
ip route add default <some_command_> ???
ip rule add fwmark 1 table specific.out
ip rule add fwmark 2 table specific.out
this SYN_SENT - your remote target is rejecting your request - so it was not a routing problem i guess.
The packets are going out of the box, but the corporate firewall located on another server is what is blocking traffic on all NICs but the eth3.
I appreciate your help, I am clueless when it comes to routing policies, this is turning into a big learning experience which I again appreciate!
Also here is the command i used for mangle:
iptables -t mangle -A PREROUTING -i eth0 -p tcp --dport 443 -j MARK --set-mark 1