Tak vyreseno, musi se to natovat drobatko jinak.
Takhle to funguje.
Kód:
gentoo ~ # iptables -t nat -nv --line-numbers -L
Chain PREROUTING (policy ACCEPT 2126K packets, 183M bytes)
num   pkts bytes target     prot opt in     out     source               destination
1      272 13900 DNAT       tcp  --  *      *       0.0.0.0/0            62.24.66.141        tcp dpt:59999 to:192.168.123.110
2     1265  159K DNAT       udp  --  *      *       0.0.0.0/0            62.24.66.141        udp dpt:59999 to:192.168.123.110
3        0     0 DNAT       tcp  --  *      *       0.0.0.0/0            62.24.66.141        tcp dpt:21 to:192.168.123.124
4        2   112 DNAT       tcp  --  *      *       0.0.0.0/0            62.24.66.141        tcp dpt:80 to:192.168.123.124
5        0     0 DNAT       tcp  --  *      *       0.0.0.0/0            62.24.66.141        tcp dpt:113 to:192.168.123.124
6        0     0 DNAT       udp  --  *      *       0.0.0.0/0            62.24.66.141        udp dpt:1194 to:192.168.123.124
7        0     0 DNAT       udp  --  *      *       0.0.0.0/0            62.24.66.141        udp dpt:8767 to:192.168.123.124
8        0     0 DNAT       tcp  --  *      *       0.0.0.0/0            62.24.66.141        tcp dpts:60000:60200 to:192.168.123.124
9        0     0 DNAT       tcp  --  *      *       0.0.0.0/0            62.24.66.141        tcp dpt:413 to:192.168.123.22
10       0     0 DNAT       udp  --  *      *       0.0.0.0/0            62.24.66.141        udp dpt:413 to:192.168.123.22
11       0     0 DNAT       tcp  --  *      *       0.0.0.0/0            62.24.66.141        tcp dpt:1984 to:192.168.123.22
12       0     0 DNAT       udp  --  *      *       0.0.0.0/0            62.24.66.141        udp dpt:1984 to:192.168.123.22
13       0     0 DNAT       tcp  --  *      *       0.0.0.0/0            62.24.66.141        tcp dpts:2000:2010 to:192.168.123.22

Chain POSTROUTING (policy ACCEPT 2639K packets, 310M bytes)
num   pkts bytes target     prot opt in     out     source               destination
1     3387  251K SNAT       all  --  *      *       192.168.123.0/24     0.0.0.0/0           to:62.24.66.141

Chain OUTPUT (policy ACCEPT 19339 packets, 1806K bytes)
num   pkts bytes target     prot opt in     out     source               destination