
Connection refuse after ip route add local dev lo table 100

no flag

i have ubuntu vps server, and want to use TPROXY to handle all outgoing traffic by Go Simple Tunnel , i apply these ip table rules

iptables -t mangle -N DIVERT
iptables -t mangle -A DIVERT -j MARK --set-mark 1
iptables -t mangle -A DIVERT -j ACCEPT
iptables -t mangle -A PREROUTING -p tcp -m socket -j DIVERT

iptables -t mangle -N GOST
iptables -t mangle -N GOST_LOCAL

iptables -t mangle -A GOST -p tcp -d -j RETURN
iptables -t mangle -A GOST -p tcp -d -j RETURN
iptables -t mangle -A GOST -p tcp -m mark --mark 100 -j RETURN 
iptables -t mangle -A GOST -p tcp -j TPROXY --tproxy-mark 0x1/0x1 --on-ip --on-port 12345
iptables -t mangle -A PREROUTING -p tcp -j GOST

iptables -t mangle -A GOST_LOCAL -p tcp -d -j RETURN
iptables -t mangle -A GOST_LOCAL -p tcp -d -j RETURN
iptables -t mangle -A GOST_LOCAL -p tcp -d -j RETURN
iptables -t mangle -A GOST_LOCAL -p tcp -d -j RETURN
iptables -t mangle -A GOST_LOCAL -p tcp -m mark --mark 100 -j RETURN
iptables -t mangle -A GOST_LOCAL -p tcp -j MARK --set-mark 1
iptables -t mangle -A OUTPUT -p tcp -j GOST_LOCAL

but after run these commands second line of below command connection to server lost

ip rule add fwmark 1 lookup 100
ip route add local dev lo table 100 must change to what to problem soleve and already tproxy work for outgoing?

I sit in a Tesla and translated this thread with Ai:


Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.