[suse-security] Replace sender ip with iptables

Hi list

One of my router sends requests a
(snort)database server somewhere in the vpn.

I want to replace the sender ip of this
requests using iptables in order to change
the external nic ip (that is not routeable
vpn wide) to the internal nic ip.


src --> dst

should become

src --> dst

Think i need a statement for the PREROUTING
chains. But howto exactly ?

Or can i force snort to bind the internal interface for
such requests ? 

Thx in advance


