On bloque avant d'activer le routage

darcs-hash:20070908160337-c992d-01666bd87915175cf47713ed9c009903faa65656.gz
This commit is contained in:
bos 2007-09-08 18:03:37 +02:00
parent 63916bbaa0
commit 4f0d379ade

View file

@ -8,11 +8,13 @@
# le routage et de vider le firewall quand vous n'en avez
# plus besoin
echo 1 >> /proc/sys/net/ipv4/ip_forward
iptables -F
iptables -t nat -F
iptables -t mangle -F
iptables -P FORWARD DROP
echo 1 >> /proc/sys/net/ipv4/ip_forward
iptables -A FORWARD -d 138.231.136.3 -p tcp --dport 80 -j ACCEPT
iptables -A FORWARD -s 138.231.136.3 -p tcp --sport 80 -j ACCEPT
@ -25,4 +27,3 @@ iptables -t nat -A POSTROUTING -d 138.231.136.3 -j SNAT --to-source 138.231.136.
iptables -t nat -A PREROUTING -d 82.225.39.54 -p tcp --dport 443 -j DNAT --to-destination 138.231.136.3
iptables -t nat -A POSTROUTING -d 138.231.136.3 -j SNAT --to-source 138.231.136.9