Next: Example: minimal host setup
Up: Route NAT status
Previous: How it works.
If you only want to translate selected ports (f.e. http)
and leave the rest intact, you may use
fwmark a class of packets.
Suppose you did and all the packets from 18.104.22.168
destined for port 80 are marked with marker 0x1234 in input fwchain.
In this case you may replace rule #320 with:
320: from 22.214.171.124 fwmark 1234 lookup main map-to 126.96.36.199
and translation will only be enabled for outgoing http requests.