Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- -P INPUT DROP
- -P FORWARD DROP
- -P OUTPUT ACCEPT
- -A INPUT -m state --state INVALID -j DROP
- -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A INPUT -i lo -j ACCEPT
- -A INPUT -p icmp -m icmp --icmp-type 8 -j ACCEPT
- -A INPUT -i venet0 -p tcp -m tcp --dport 655 -j ACCEPT
- -A INPUT -i venet0 -p udp -m udp --dport 655 -j ACCEPT
- -A INPUT -i venet0 -p esp -j ACCEPT
- -A INPUT -i venet0 -p ah -j ACCEPT
- -A INPUT -s $VPN_NETWORK -p tcp -m tcp --dport 22 -j ACCEPT
- -A INPUT -s $VPN_NETWORK -i tun0 -p udp -m udp --dport 53 -j ACCEPT
- -A INPUT -s $VPN_NETWORK -i tun0 -p udp -m udp --dport 853 -j ACCEPT
- -A INPUT -s $VPN_NETWORK -i tun0 -p tcp -m tcp --dport 53 -j ACCEPT
- -A INPUT -s $VPN_NETWORK -i tun0 -p tcp -m tcp --dport 853 -j ACCEPT
- -A INPUT -s $VPN_NETWORK -i tun0 -p tcp -m tcp --dport 25 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p tcp -m tcp --dport 6112 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p udp -m udp --dport 6112 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p tcp -m tcp --dport 6113 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p udp -m udp --dport 6113 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p tcp -m tcp --dport 6114 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p udp -m udp --dport 6114 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p tcp -m tcp --dport 6115 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p udp -m udp --dport 6115 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p tcp -m tcp --dport 6116 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p udp -m udp --dport 6116 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p tcp -m tcp --dport 6117 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p udp -m udp --dport 6117 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p tcp -m tcp --dport 6118 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p udp -m udp --dport 6118 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p tcp -m tcp --dport 6119 -j ACCEPT
- -A FORWARD -d $WIN10_VPN_ADDRESS -i venet0 -o tun0 -p udp -m udp --dport 6119 -j ACCEPT
- -A FORWARD -m state --state INVALID -j DROP
- -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A FORWARD -i tun0 -j ACCEPT
- -A OUTPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
- -P PREROUTING ACCEPT
- -P POSTROUTING ACCEPT
- -P OUTPUT ACCEPT
- -A PREROUTING -p tcp -m tcp --dport 6112 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p udp -m udp --dport 6112 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p tcp -m tcp --dport 6113 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p udp -m udp --dport 6113 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p tcp -m tcp --dport 6114 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p udp -m udp --dport 6114 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p tcp -m tcp --dport 6115 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p udp -m udp --dport 6115 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p tcp -m tcp --dport 6116 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p udp -m udp --dport 6116 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p tcp -m tcp --dport 6117 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p udp -m udp --dport 6117 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p tcp -m tcp --dport 6118 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p udp -m udp --dport 6118 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p tcp -m tcp --dport 6119 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A PREROUTING -p udp -m udp --dport 6119 -j DNAT --to-destination $WIN10_VPN_ADDRESS
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p tcp -m tcp --sport 6112 -j SNAT --to-source $INET_ADDRESS:6112
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p udp -m udp --sport 6112 -j SNAT --to-source $INET_ADDRESS:6112
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p tcp -m tcp --sport 6113 -j SNAT --to-source $INET_ADDRESS:6113
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p udp -m udp --sport 6113 -j SNAT --to-source $INET_ADDRESS:6113
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p tcp -m tcp --sport 6114 -j SNAT --to-source $INET_ADDRESS:6114
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p udp -m udp --sport 6114 -j SNAT --to-source $INET_ADDRESS:6114
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p tcp -m tcp --sport 6115 -j SNAT --to-source $INET_ADDRESS:6115
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p udp -m udp --sport 6115 -j SNAT --to-source $INET_ADDRESS:6115
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p tcp -m tcp --sport 6116 -j SNAT --to-source $INET_ADDRESS:6116
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p udp -m udp --sport 6116 -j SNAT --to-source $INET_ADDRESS:6116
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p tcp -m tcp --sport 6117 -j SNAT --to-source $INET_ADDRESS:6117
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p udp -m udp --sport 6117 -j SNAT --to-source $INET_ADDRESS:6117
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p tcp -m tcp --sport 6118 -j SNAT --to-source $INET_ADDRESS:6118
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p udp -m udp --sport 6118 -j SNAT --to-source $INET_ADDRESS:6118
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p tcp -m tcp --sport 6119 -j SNAT --to-source $INET_ADDRESS:6119
- -A POSTROUTING -s $WIN10_VPN_ADDRESS -o venet0 -p udp -m udp --sport 6119 -j SNAT --to-source $INET_ADDRESS:6119
- -A POSTROUTING -s $VPN_NETWORK -o venet0 -j MASQUERADE
Advertisement
Add Comment
Please, Sign In to add comment