QQ登录

只需一步,快速开始

 找回密码
 注册

QQ登录

只需一步,快速开始

查看: 641|回复: 0

看看我的ipttables有什么问题

[复制链接]
发表于 2005-5-27 10:31:52 | 显示全部楼层 |阅读模式
*nat
REROUTING ACCEPT [247]
OSTROUTING ACCEPT [209]
:OUTPUT ACCEPT [209]
-A POSTROUTING -s 192.168.0.0/255.255.255.0 -o eth1 -j SNAT --to-source a.b.c.d
-A POSTROUTING -s 192.168.0.0/255.255.255.0 -j MASQUERADE
COMMIT

*filter
:INPUT DROP [1083]
:FORWARD DROP [23305]
:OUTPUT ACCEPT [1568]

-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT

-A INPUT -m state --state NEW -m tcp -p tcp --dport 80 -j ACCEPT
-A INPUT -m state --state NEW -m tcp -p tcp --dport 21 -j ACCEPT
-A INPUT -m state --state NEW -m tcp -p tcp --dport 22 -j ACCEPT
-A INPUT -m state --state NEW -m tcp -p tcp --dport 3306 -j ACCEPT

-A FORWARD -i eth0 -o eth1 -j ACCEPT
-A FORWARD -i eth1 -o eth0 -m state --state RELATED,ESTABLISHED -j ACCEPT
COMMIT
您需要登录后才可以回帖 登录 | 注册

本版积分规则

GMT+8, 2024-11-5 20:49 , Processed in 0.039180 second(s), 15 queries .

© 2021 Powered by Discuz! X3.5.

快速回复 返回顶部 返回列表