Quantcast
Viewing all articles
Browse latest Browse all 60861

Re: Port Forward to a Domain Name

UBNT-stig is right about being computationally expensive for such feature to exist in Netfilter - Linux's firewall and NAT.

 

An alternative solution is to make use of ipset with an address-set. Use the address-set in the NAT rule instead of domain name. Have an independent script or otherwise check the domain name and update the address-set when the IP changes.

 

 Take a look at this thread where we discussed a few days ago. The problem/solution fits well imho to your situation.

 

 


Viewing all articles
Browse latest Browse all 60861

Trending Articles