Advertisement
hugol

Untitled

Oct 16th, 2015
105
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Bash 1.14 KB | None | 0 0
  1.  
  2. killall dhclient
  3. dhclient eth0
  4.  
  5. ifconfig eth1 192.168.2.1 netmask 255.255.255.0 up
  6.  
  7. echo czyszczenie
  8. iptables -F
  9. iptables -F -t nat
  10. iptables -X -t nat
  11. iptables -F -t filter
  12. iptables -X -t filter
  13.  
  14. echo "ustawianie FW"
  15.  
  16. iptables -P FORWARD DROP
  17. iptables -P INPUT DROP
  18. iptables -P OUTPUT ACCEPT
  19.  
  20. iptables -A INPUT -i lo -j ACCEPT
  21. iptables -A INPUT -i eth1 -j ACCEPT
  22. iptables -A INPUT -i eth0 -s 192.168.56.101 -j DROP
  23. iptables -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  24.  
  25. #przekazywanie polaczen na interfejsie wewnetrznym
  26. iptables -A FORWARD -i eth1 -o eth1 -j ACCEPT
  27.  
  28. echo "ustawianie NAT"
  29. echo "1" > /proc/sys/net/ipv4/ip_forward
  30.  
  31. iptables -A FORWARD -i eth1 -o eth0 -s 192.168.2.0/24 -d 0/0 -j ACCEPT
  32. iptables -A FORWARD -i eth0 -o eth1 -s 0/0 -d 192.168.2.0/24 -j ACCEPT
  33. iptables -t nat -A POSTROUTING -s 192.168.2.0/24 -d 0/0 -j MASQUERADE
  34.  
  35. echo "ustawianie port redirect"
  36.  
  37. iptables -A PREROUTING -t nat -i eth0 -p tcp -d 192.168.56.101 --dport 1234 -j DNAT --to-destination 192.168.2.2:22
  38. iptables -A PREROUTING -t nat -i eth1 -p tcp -d 192.168.56.101 --dport 1234 -j DNAT --to-destination 192.168.2.2:22
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement