1 message in com.xensource.lists.xen-bugs[Xen-bugs] [Bug 447] New: dom0 netfil...
FromSent OnAttachments
bugz...@lists.xensource.com10 Dec 2005 04:06 
Subject:[Xen-bugs] [Bug 447] New: dom0 netfilter DNAT rule that rewrites the destination port doesn't work with domU TX checksum offload
From:bugz...@lists.xensource.com (bugz@lists.xensource.com)
Date:12/10/2005 04:06:35 AM
List:com.xensource.lists.xen-bugs

http://bugzilla.xensource.com/bugzilla/show_bug.cgi?id=447

Summary: dom0 netfilter DNAT rule that rewrites the destination port doesn't work with domU TX checksum offload Product: Xen Version: 3.0-testing Platform: x86-64 OS/Version: Linux-2.6 Status: NEW Severity: normal Priority: P2 Component: Unspecified AssignedTo: xen-@lists.xensource.com ReportedBy: mgoo@csua.berkeley.edu

A rule like this in dom0:

iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j DNAT --to-destination $DOMU_IP:7800

doesn't work unless in the domU, I run:

ethtool -K eth0 tx off

If the DNAT rule preserves the destination port, it works.