Figure 43.1 iptables: A Packet's Possible Paths
Processes
in the local
system
Routing
These tables contain several predefined chains to match packets:
incoming packet
INPUT
mangle
filter
OUTPUT
mangle
nat
filter
PREROUTING
mangle
nat
Routing
FORWARD
mangle
filter
POSTROUTING
mangle
nat
outgoing packet
Masquerading and Firewalls
825