On Mon, Apr 22, 2024 at 11:14 AM Ales Musil wrote:
> On Fri, Apr 19, 2024 at 6:38 PM Numan Siddique wrote:
>
> >
> >
> > On Fri, Apr 19, 2024 at 7:09 AM Ales Musil wrote:
> >
> >> The current packet injection loses ct_state in the process. When
> >> the ct_state is lost we might commit to DNAT
On Fri, Apr 19, 2024 at 6:38 PM Numan Siddique wrote:
>
>
> On Fri, Apr 19, 2024 at 7:09 AM Ales Musil wrote:
>
>> The current packet injection loses ct_state in the process. When
>> the ct_state is lost we might commit to DNAT zone and perform
>> zero SNAT after the packet injection. This
On Fri, Apr 19, 2024 at 7:09 AM Ales Musil wrote:
> The current packet injection loses ct_state in the process. When
> the ct_state is lost we might commit to DNAT zone and perform
> zero SNAT after the packet injection. This causes the first session
> to be wrong as the reply packets are not
The current packet injection loses ct_state in the process. When
the ct_state is lost we might commit to DNAT zone and perform
zero SNAT after the packet injection. This causes the first session
to be wrong as the reply packets are not unDNATted.
Instead of re-injecting the packet back into the