19,612
社区成员
发帖
与我相关
我的任务
分享
linux:~ # cat iptables.save
# Generated by iptables-save v1.4.6 on Thu Feb 13 15:28:47 2014
*nat
:PREROUTING ACCEPT [4942:284273]
:POSTROUTING ACCEPT [123:7428]
:OUTPUT ACCEPT [123:7428]
-A PREROUTING -d 218.94.153.182/32 -p tcp -m tcp --dport 6081 -j DNAT --to-destination 10.10.3.10:6081
-A POSTROUTING -d 10.10.3.10/32 -p tcp -m tcp --dport 6081 -j SNAT --to-source 10.10.3.215
-A POSTROUTING -s 10.10.3.0/24 -o eth0 -j SNAT --to-source 218.94.153.182
COMMIT
# Completed on Thu Feb 13 15:28:47 2014
# Generated by iptables-save v1.4.6 on Thu Feb 13 15:28:47 2014
*filter
:INPUT ACCEPT [231453:14196913]
:FORWARD ACCEPT [92:5660]
:OUTPUT ACCEPT [10168522:5353705179]
-A INPUT -s 10.10.3.0/24 -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -s 218.94.153.180/32 -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 22 -j DROP
-A FORWARD -d 10.10.3.10/32 -o eth0 -p tcp -m tcp --dport 6081 -j ACCEPT
-A FORWARD -s 10.10.3.10/32 -i eth0 -p tcp -m tcp --sport 6081 -j ACCEPT
COMMIT
# Completed on Thu Feb 13 15:28:47 2014