19,613
社区成员
发帖
与我相关
我的任务
分享
eth0 inet addr:10.144.7.195 Bcast:10.144.15.255 Mask:255.255.240.0
eth1 inet addr:115.28.9.163 Bcast:115.28.11.255 Mask:255.255.252.0
eth0 inet addr:10.144.7.191 Bcast:10.144.15.255 Mask:255.255.240.0
iptables -t nat -A PREROUTING -m tcp -p tcp --dport 19122 -j DNAT --to-destination 10.144.7.191:22
iptables -t nat -A POSTROUTING -m tcp -p tcp --dport 19122 -d 10.144.7.191 -j SNAT --to-source 115.28.9.163
*nat
:PREROUTING ACCEPT [2:80]
:POSTROUTING ACCEPT [1:108]
:OUTPUT ACCEPT [1:108]
-A PREROUTING -d 114.215.146.A/32 -p tcp -m tcp --dport 221 -j DNAT --to-destination 10.165.53.B:22
-A POSTROUTING -d 10.0.0.0/255.0.0.0 -p tcp -m tcp --dport 22 -j SNAT --to-source 10.164.11.A
COMMIT
*filter
:INPUT ACCEPT [25:2144]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [24:2272]
-A FORWARD -d 10.0.0.0/32 -o eth0 -p tcp -m tcp --dport 22 -j ACCEPT
-A FORWARD -s 10.0.0.0/32 -i eth0 -p tcp -m tcp --sport 22 -j ACCEPT
COMMIT
正在解决纯内网机器访问外网的问题,解决了发帖!
######### 启用IP包转送,即时生效
echo 1 > /proc/sys/net/ipv4/ip_forward