[Shorewall-users] Portforwarding within a zone

Tom Eastep teastep@shorewall.net
Sun, 6 Jan 2002 13:16:15 -0800

In looking at your rules, one thing you should keep in mind:

a) Any time that you have an entry in the ADDRESS column of the rules fil=
unless that same address also appears in the SERVER(S) column then DNAT i=
b) DNAT rules are evaluated ahead of all non-DNAT rules.
c) DNAT rules are evaluated in the order in which they appear in the rule=

You can see all of your NAT rules using the command:

=09shorewall show nat

