Next: Example: minimal host setup
Up: Route NAT status
Previous: How it works.
If you only want to translate selected ports (f.e. http)
and leave the rest intact, you may use
fwmark a class of packets.
Suppose you did and all the packets from 220.127.116.11
destined for port 80 are marked with marker 0x1234 in input fwchain.
In this case you may replace rule #320 with:
320: from 18.104.22.168 fwmark 1234 lookup main map-to 22.214.171.124
and translation will only be enabled for outgoing http requests.