1Similar to SNAT/DNAT depending on chain: it takes a range of addresses
2(`--to 1.2.3.4-1.2.3.7') and gives a client the same
3source-/destination-address for each connection.
4.TP
5.BI "--to " "<ipaddr>-<ipaddr>"
6Addresses to map source to. May be specified more than once for
7multiple ranges.
8.TP
9.B "--nodst"
10Don't use the destination-ip in the calculations when selecting the
11new source-ip
12.TP
13.B "--random"
14Port mapping will be forcely randomized to avoid attacks based on 
15port prediction (kernel >= 2.6.21).
16