Can anyone tell me how to do this?

Think in that it is an internal configured SSH daemond and the administrator
don't want to modify the config because the daemon is worwing well.

The solution to open the service to another network is map the ports.

A posible solution for redirect the ssh port is (in the machine):

1) Allow incoming SSH connexs from the iface.
2) Redirect to

And ... how to do this with IPTABLES?

$> iptables -t filter -A INPUT -i eth1 -d -m tcp -p tcp --dport
22 -j ACCEPT
$> iptables -t nat -A PREROUTING -i eth1 -d -m tcp -p tcp --dport
22 -j DNAT --to-destination

This add the rules at the chain tail.


i hate answering questions with the "why don't you just do it this way"
response, but here goes...

if you have SSH connections being received on, and that machine
also has an IP of, why don't you just accept the
connections on


