Advertisement
Guest User

Untitled

a guest
Jan 30th, 2021
60
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.44 KB | None | 0 0
  1. > iptables-save; sysctl net 2> /dev/null | grep -e forward; wg show
  2. 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
  3. link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
  4. inet 127.0.0.1/8 scope host lo
  5. valid_lft forever preferred_lft forever
  6. inet6 ::1/128 scope host
  7. valid_lft forever preferred_lft forever
  8. 2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
  9. link/ether 5a:bf:76:c1:30:61 brd ff:ff:ff:ff:ff:ff
  10. inet xxxxxxxxxxxxx/20 brd xxxxxxxxx scope global eth0
  11. valid_lft forever preferred_lft forever
  12. inet 10.18.0.5/16 brd 10.18.255.255 scope global eth0
  13. valid_lft forever preferred_lft forever
  14. inet6 fe80::58bf:76ff:fec1:3061/64 scope link
  15. valid_lft forever preferred_lft forever
  16. 3: eth1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
  17. link/ether 2a:d6:94:9f:65:00 brd ff:ff:ff:ff:ff:ff
  18. inet 10.110.0.2/20 brd 10.110.15.255 scope global eth1
  19. valid_lft forever preferred_lft forever
  20. inet6 fe80::28d6:94ff:fe9f:6500/64 scope link
  21. valid_lft forever preferred_lft forever
  22. 6: wg0: <POINTOPOINT,NOARP,UP,LOWER_UP> mtu 1420 qdisc noqueue state UNKNOWN group default qlen 1000
  23. link/none
  24. inet 10.8.0.1/24 scope global wg0
  25. valid_lft forever preferred_lft forever
  26. inet6 fd42:42:42::1/64 scope global
  27. valid_lft forever preferred_lft forever
  28. default via xxxxxxxxx dev eth0 proto static
  29. 10.8.0.0/24 dev wg0 proto kernel scope link src 10.8.0.1
  30. 10.18.0.0/16 dev eth0 proto kernel scope link src 10.18.0.5
  31. 10.110.0.0/20 dev eth1 proto kernel scope link src 10.110.0.2
  32. xxxxxxxxx.0/20 dev eth0 proto kernel scope link src xxxxxxxxx
  33. 192.168.10.0/24 dev wg0 scope link
  34. broadcast 10.8.0.0 dev wg0 table local proto kernel scope link src 10.8.0.1
  35. local 10.8.0.1 dev wg0 table local proto kernel scope host src 10.8.0.1
  36. broadcast 10.8.0.255 dev wg0 table local proto kernel scope link src 10.8.0.1
  37. broadcast 10.18.0.0 dev eth0 table local proto kernel scope link src 10.18.0.5
  38. local 10.18.0.5 dev eth0 table local proto kernel scope host src 10.18.0.5
  39. broadcast 10.18.255.255 dev eth0 table local proto kernel scope link src 10.18.0.5
  40. broadcast 10.110.0.0 dev eth1 table local proto kernel scope link src 10.110.0.2
  41. local 10.110.0.2 dev eth1 table local proto kernel scope host src 10.110.0.2
  42. broadcast 10.110.15.255 dev eth1 table local proto kernel scope link src 10.110.0.2
  43. broadcast 127.0.0.0 dev lo table local proto kernel scope link src 127.0.0.1
  44. local 127.0.0.0/8 dev lo table local proto kernel scope host src 127.0.0.1
  45. local 127.0.0.1 dev lo table local proto kernel scope host src 127.0.0.1
  46. broadcast 127.255.255.255 dev lo table local proto kernel scope link src 127.0.0.1
  47. broadcast xxxxxxxxx.0 dev eth0 table local proto kernel scope link src xxxxxxxx
  48. local xxxxxxxxxxx dev eth0 table local proto kernel scope host src xxxxxxxxxx
  49. broadcast xxxxxxxxxxx dev eth0 table local proto kernel scope link src xxxxxxxxxx
  50. ::1 dev lo proto kernel metric 256 pref medium
  51. fd42:42:42::/64 dev wg0 proto kernel metric 256 pref medium
  52. fe80::/64 dev eth1 proto kernel metric 256 pref medium
  53. fe80::/64 dev eth0 proto kernel metric 256 pref medium
  54. local ::1 dev lo table local proto kernel metric 0 pref medium
  55. anycast fd42:42:42:: dev wg0 table local proto kernel metric 0 pref medium
  56. local fd42:42:42::1 dev wg0 table local proto kernel metric 0 pref medium
  57. anycast fe80:: dev eth0 table local proto kernel metric 0 pref medium
  58. anycast fe80:: dev eth1 table local proto kernel metric 0 pref medium
  59. local fe80::28d6:94ff:fe9f:6500 dev eth1 table local proto kernel metric 0 pref medium
  60. local fe80::58bf:76ff:fec1:3061 dev eth0 table local proto kernel metric 0 pref medium
  61. ff00::/8 dev eth1 table local metric 256 pref medium
  62. ff00::/8 dev eth0 table local metric 256 pref medium
  63. ff00::/8 dev wg0 table local metric 256 pref medium
  64. 0: from all lookup local
  65. 32766: from all lookup main
  66. 32767: from all lookup default
  67. # Generated by iptables-save v1.8.4 on Sat Jan 30 11:24:19 2021
  68. *nat
  69. :PREROUTING ACCEPT [69403:6395231]
  70. :INPUT ACCEPT [33342:2826062]
  71. :OUTPUT ACCEPT [3435:255772]
  72. :POSTROUTING ACCEPT [29:2070]
  73. -A POSTROUTING -o eth0 -j MASQUERADE
  74. COMMIT
  75. # Completed on Sat Jan 30 11:24:19 2021
  76. # Generated by iptables-save v1.8.4 on Sat Jan 30 11:24:19 2021
  77. *filter
  78. :INPUT ACCEPT [1233390:182965055]
  79. :FORWARD ACCEPT [1337459:8131751230]
  80. :OUTPUT ACCEPT [6230903:8740707940]
  81. -A INPUT -s 10.8.0.0/24 -p udp -m udp --dport 53 -m conntrack --ctstate NEW -j ACCEPT
  82. -A FORWARD -i wg0 -j ACCEPT
  83. COMMIT
  84. # Completed on Sat Jan 30 11:24:19 2021
  85. net.ipv4.conf.all.bc_forwarding = 0
  86. net.ipv4.conf.all.forwarding = 1
  87. net.ipv4.conf.all.mc_forwarding = 0
  88. net.ipv4.conf.default.bc_forwarding = 0
  89. net.ipv4.conf.default.forwarding = 1
  90. net.ipv4.conf.default.mc_forwarding = 0
  91. net.ipv4.conf.eth0.bc_forwarding = 0
  92. net.ipv4.conf.eth0.forwarding = 1
  93. net.ipv4.conf.eth0.mc_forwarding = 0
  94. net.ipv4.conf.eth1.bc_forwarding = 0
  95. net.ipv4.conf.eth1.forwarding = 1
  96. net.ipv4.conf.eth1.mc_forwarding = 0
  97. net.ipv4.conf.lo.bc_forwarding = 0
  98. net.ipv4.conf.lo.forwarding = 1
  99. net.ipv4.conf.lo.mc_forwarding = 0
  100. net.ipv4.conf.wg0.bc_forwarding = 0
  101. net.ipv4.conf.wg0.forwarding = 1
  102. net.ipv4.conf.wg0.mc_forwarding = 0
  103. net.ipv4.ip_forward = 1
  104. net.ipv4.ip_forward_update_priority = 1
  105. net.ipv4.ip_forward_use_pmtu = 0
  106. net.ipv6.conf.all.forwarding = 1
  107. net.ipv6.conf.all.mc_forwarding = 0
  108. net.ipv6.conf.default.forwarding = 1
  109. net.ipv6.conf.default.mc_forwarding = 0
  110. net.ipv6.conf.eth0.forwarding = 1
  111. net.ipv6.conf.eth0.mc_forwarding = 0
  112. net.ipv6.conf.eth1.forwarding = 1
  113. net.ipv6.conf.eth1.mc_forwarding = 0
  114. net.ipv6.conf.lo.forwarding = 1
  115. net.ipv6.conf.lo.mc_forwarding = 0
  116. net.ipv6.conf.wg0.forwarding = 1
  117. net.ipv6.conf.wg0.mc_forwarding = 0
  118. interface: wg0
  119. public key: xxxxxxxxxxxxx
  120. listening port: 51820
  121.  
  122. peer: xxxxxxxxxxx
  123. preshared key: (hidden)
  124. endpoint: xxxxxxxxxx:52360
  125. allowed ips: 10.8.0.5/32, fd42:42:42::5/128
  126. latest handshake: 1 minute, 38 seconds ago
  127. transfer: 124.45 MiB received, 7.95 GiB sent
  128.  
  129. peer: xxxxxxxxxxxx
  130. preshared key: (hidden)
  131. endpoint: xxxxxxxxxxx:11883
  132. allowed ips: 10.8.0.4/32, fd42:42:42::4/128
  133. latest handshake: 3 hours, 35 minutes, 5 seconds ago
  134. transfer: 539.91 KiB received, 1.54 MiB sent
  135.  
  136. peer: xxxxxxxxx
  137. preshared key: (hidden)
  138. allowed ips: 10.8.0.6/32, fd42:42:42::6/128, 192.168.10.0/24
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement