Modify packet on output

Make changes to packets on output.

Packet modification is applied to forwarded traffic after the rule has matched. Use source NAT for masquerade-style policies and destination NAT for port-forward or service redirection policies.