Есть такие правила:
-q nat 1 config log if rl1 reset same_ports deny_in redirect_port tcp
-q nat 2 config log if rl1 reset same_ports deny_in redirect_port tcp
-q nat 3 config log if rl1 reset same_ports deny_in redirect_port tcp
-q nat 4 config log if rl1 reset same_ports deny_in redirect_port tcp