We are struggling with the following.
We have a simple srcnat rule for 10.0.0.0/8 and we want the connection tracking table to be used only by 10.0.0.0/8 Subnet block.
We dont want the rest of our public IP s to go through the CT table.
So;
Code: Select all
chain=prerouting action=notrack log=no log-prefix="" src-address=!10.0.0.0/8
Above simply stops 10.0.0.0/8 srcNAT and doesnt work.
Are there any way to accomplish what we require ?
Any help will be appreciated.