Joseph Mack NA3T jmack at wm7d.net
Fri Apr 16 10:12:23 BST 2010

On Fri, 16 Apr 2010, Michael Schwartzkopff wrote:

> Hi,
> I have a situation where I want to use NAT (masq) for my LVS service but
> cannot change the routing table of my real servers. So I thought adding a rule
> to my iptables like:
> iptables -t nat -A POSTROUTING -p tcp --dport 80 -d <realservers> \
>  -j SNAT --to-source DIP
> so the director would masquerade the source of all packets and thus all
> packates would be routed back to the director and NAT mech would work.

look in the HOWTO for F5-SNAT


