Jak mam spravne nastavit portforward, aby web server videl ip adresu klienta a ne brany? 
Maskaradu na routeru potrebuju zachovat.
0    ;;; TO_WEB_SERVER_HTTPS
      chain=dstnat action=dst-nat to-addresses=192.168.1.192 to-ports=443 
      protocol=tcp dst-address=XXX dst-address-type=local 
      dst-port=443 log=no log-prefix="" 
1    ;;; TO_WEB_SERVER_HTTP
      chain=dstnat action=dst-nat to-addresses=192.168.1.192 to-ports=80 
      protocol=tcp dst-address=XXXX dst-port=80 log=no log-prefix="" 
 2    chain=srcnat action=masquerade log=no log-prefix="" 
 3    ;;; TO_ADMIN_SERVER_SSH
      chain=dstnat action=dst-nat to-addresses=192.168.1.193 to-ports=22 
      protocol=tcp dst-address=XXXX dst-port=22 log=no log-prefix=""