Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- table ip nat {
- chain postrouting {
- type nat hook postrouting priority 100; policy accept;
- oifname "eth1" masquerade
- oifname "eth1" ip saddr 10.8.0.0/24 masquerade
- oifname "eth1" ip saddr 10.9.0.0/24 masquerade
- oifname "eth1" ip saddr 10.10.0.0/24 masquerade
- oifname "eth1" ip saddr 192.168.2.0/24 masquerade
- ip daddr 192.168.22.5 udp dport 53 counter masquerade
- ip daddr 192.168.22.5 tcp dport 53 counter masquerade
- }
- chain prerouting {
- type nat hook prerouting priority -100; policy accept;
- iifname "wg-p2p" ip daddr != 192.168.22.5 udp dport 53 counter dnat to 192.168.22.5:53
- iifname "wg-p2p" ip daddr != 192.168.22.5 tcp dport 53 counter dnat to 192.168.22.5:53
- iifname "tun0" ip daddr != 192.168.22.5 udp dport 53 counter dnat to 192.168.22.5:53
- iifname "tun0" ip daddr != 192.168.22.5 tcp dport 53 counter dnat to 192.168.22.5:53
- iifname "tun1" ip daddr != 192.168.22.5 udp dport 53 counter dnat to 192.168.22.5:53
- iifname "tun1" ip daddr != 192.168.22.5 tcp dport 53 counter dnat to 192.168.22.5:53
- iifname "tun2" ip daddr != 192.168.22.5 udp dport 53 counter dnat to 192.168.22.5:53
- iifname "tun2" ip daddr != 192.168.22.5 tcp dport 53 counter dnat to 192.168.22.5:53
- iifname "br0" ip saddr != 192.168.22.5 udp dport 53 counter dnat to 192.168.22.5:53
- iifname "br0" ip saddr != 192.168.22.5 tcp dport 53 counter dnat to 192.168.22.5:53
- }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement