1This target is only valid in the 2.B nat 3table, in the 4.B POSTROUTING 5chain. It should only be used with dynamically assigned IP (dialup) 6connections: if you have a static IP address, you should use the SNAT 7target. Masquerading is equivalent to specifying a mapping to the IP 8address of the interface the packet is going out, but also has the 9effect that connections are 10.I forgotten 11when the interface goes down. This is the correct behavior when the 12next dialup is unlikely to have the same interface address (and hence 13any established connections are lost anyway). 14.TP 15\fB\-\-to\-ports\fP \fIport\fP[\fB\-\fP\fIport\fP] 16This specifies a range of source ports to use, overriding the default 17.B SNAT 18source port-selection heuristics (see above). This is only valid 19if the rule also specifies 20\fB\-p tcp\fP 21or 22\fB\-p udp\fP. 23.TP 24\fB\-\-random\fP 25Randomize source port mapping 26If option 27\fB\-\-random\fP 28is used then port mapping will be randomized (kernel >= 2.6.21). 29.RS 30.PP 31