On Mon, 2004-12-06 at 13:24 +0100, David Pristovnik
wrote:> Is it possible to somehow build this rule, where net could be any IP on 
> the net?
> 
> /etc/shorewall/masq
> #INTERFACE              SUBNET          ADDRESS         PROTO   PORT(S)
> eth3:10.10.10.7              net                    10.10.10.1
eth3:10.10.10.7              0.0.0.0/0                    10.10.10.1
That rule will cause all traffic out of eth3 to 10.10.10.7 to have
source ip 10.10.10.1.
-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ teastep@shorewall.net
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key