среда, 26 августа 2015 г.

Настройка iptables.rules. Ubuntu 14 (заметки)

#создаем файл настроек

nano /etc/iptables.rules

#применения правил
iptables-restore < /etc/iptables.rules

# Generated by iptables-save v1.4.21 on Tue Aug 11 00:04:59 2015
*filter
:INPUT ACCEPT [3187:363820]
:FORWARD ACCEPT [272:23234]
:OUTPUT ACCEPT [1693:195104]
-A FORWARD -i eth0 -o eth1 -m state --state RELATED,ESTABLISHED -j ACCEPT
-A FORWARD -i eth1 -o eth0 -j ACCEPT
COMMIT
# Completed on Tue Aug 11 00:04:59 2015
# Generated by iptables-save v1.4.21 on Tue Aug 11 00:04:59 2015
*nat
:PREROUTING ACCEPT [906:69176]
:INPUT ACCEPT [399:32919]
:OUTPUT ACCEPT [88:9278]
:POSTROUTING ACCEPT [26:5532]
-A POSTROUTING -o eth0 -j MASQUERADE
-A PREROUTING -i eth0 -p tcp -m tcp --dport 1433 -j DNAT --to-destination 192.1$
-A PREROUTING -i eth0 -p udp -m udp --dport 1723 -j DNAT --to-destination 192.1$
-A PREROUTING -i eth0 -p tcp -m tcp --dport 1723 -j DNAT --to-destination 192.1$
-A PREROUTING -i eth0 -p udp -m udp --dport 5060 -j DNAT --to-destination 192.1$
-A PREROUTING -i eth0 -p tcp -m tcp --dport 5060 -j DNAT --to-destination 192.1$
#-A PREROUTING -i eth0 -p udp -m udp --dport 1194 -j DNAT --to-destination 192.$
#-A PREROUTING -i eth0 -p tcp -m tcp --dport 1194 -j DNAT --to-destination 192.$
-A PREROUTING -i eth0 -p udp -m udp --dport 2041 -j DNAT --to-destination 192.1$
-A PREROUTING -i eth0 -p tcp -m tcp --dport 2041 -j DNAT --to-destination 192.1$
-A PREROUTING -i eth0 -p udp -m udp --dport 10000:20000 -j DNAT --to-destinatio$
-A PREROUTING -i eth0 -p tcp -m tcp --dport 3389 -j DNAT --to-destination 192.1$
COMMIT
# Completed on Tue Aug 11 00:04:59 2015



Комментариев нет:

Отправить комментарий