diff --git a/utils/webmail_freebox b/utils/webmail_freebox index 173132f4..a3750a1a 100755 --- a/utils/webmail_freebox +++ b/utils/webmail_freebox @@ -19,7 +19,7 @@ iptables -F iptables -t nat -F iptables -t mangle -F -# Le routage de paquets est autorisà ©si c'est bien ce que l'on veut +# Le routage de paquets est autorise si c'est bien ce que l'on veut iptables -A FORWARD -d 138.231.136.3 -i eth1 -p tcp --dport 80 --tcp-flags FIN,SYN,RST,ACK SYN -j ACCEPT iptables -A FORWARD -d 138.231.136.3 -i eth1 -p tcp --dport 80 -m state --state RELATED,ESTABLISHED -j ACCEPT iptables -A FORWARD -s 138.231.136.3 -i eth0 -p tcp --sport 80 -m state --state RELATED,ESTABLISHED -j ACCEPT @@ -28,6 +28,10 @@ iptables -A FORWARD -d 138.231.136.3 -i eth1 -p tcp --dport 443 --tcp-flags FIN, iptables -A FORWARD -d 138.231.136.3 -i eth1 -p tcp --dport 443 -m state --state RELATED,ESTABLISHED -j ACCEPT iptables -A FORWARD -s 138.231.136.3 -i eth0 -p tcp --sport 443 -m state --state RELATED,ESTABLISHED -j ACCEPT +iptables -A FORWARD -d 138.231.136.3 -i eth1 -p tcp --dport 993 --tcp-flags FIN,SYN,RST,ACK SYN -j ACCEPT +iptables -A FORWARD -d 138.231.136.3 -i eth1 -p tcp --dport 993 -m state --state RELATED,ESTABLISHED -j ACCEPT +iptables -A FORWARD -s 138.231.136.3 -i eth0 -p tcp --sport 993 -m state --state RELATED,ESTABLISHED -j ACCEPT + iptables -A FORWARD -j REJECT # On NATe le port 80 vers rouge @@ -38,5 +42,9 @@ iptables -t nat -A POSTROUTING -d 138.231.136.3 -j SNAT --to-source 138.231.136. iptables -t nat -A PREROUTING -d 82.225.39.54 -p tcp --dport 443 -j DNAT --to-destination 138.231.136.3 iptables -t nat -A POSTROUTING -d 138.231.136.3 -j SNAT --to-source 138.231.136.9 +# On NATe le port 993 vers rouge +iptables -t nat -A PREROUTING -d 82.225.39.54 -p tcp --dport 993 -j DNAT --to-destination 138.231.136.3 +iptables -t nat -A POSTROUTING -d 138.231.136.3 -j SNAT --to-source 138.231.136.9 + # On active le routage echo 1 >> /proc/sys/net/ipv4/ip_forward