Changes between Version 21 and Version 22 of TipAndDoc/network/iptables
- Timestamp:
- Dec 13, 2010 5:42:04 PM (14 years ago)
Legend:
- Unmodified
- Added
- Removed
- Modified
-
TipAndDoc/network/iptables
v21 v22 143 143 144 144 = sample script = 145 * source:/trunk/ iptables145 * source:/trunk/TipAndDoc/iptables 146 146 147 147 * 注意 … … 150 150 * [#setfilter] raw,mangle,natテーブルをflushするため、ufwスクリプトと同様の注意が必要 151 151 152 == ~~[source:/trunk/ iptables/setnapt.sh setnapt.sh]~~ ==152 == ~~[source:/trunk/TipAndDoc/iptables/setnapt.sh setnapt.sh]~~ == 153 153 * replaced to [#setmasq.sh] 154 154 * for Ubuntu … … 167 167 * 上の例ではWANはeth1,2ということになる 168 168 169 == [source:/trunk/ iptables/setfilter setfilter] ==169 == [source:/trunk/TipAndDoc/iptables/setfilter setfilter] == 170 170 * for Ubuntu 171 171 * raw, mangle nar tableを使って不要・異常なパケットを落とすポリシーを起動時自動登録 172 172 * natテーブルをresetするため、[#setnapt.sh]と排他利用 173 173 * /etc/init.d/setfilter start/stop 174 * source:/trunk/ iptables/ufw と併せて使用174 * source:/trunk/TipAndDoc/iptables/ufw と併せて使用 175 175 * sudo update-rc.d setfilter start 39 S . 176 176 * /etc/rcS.d/S39setfilter -> ../init.d/setfilter 177 177 178 == [source:/trunk/ iptables/setmasq.sh setmasq.sh] ==178 == [source:/trunk/TipAndDoc/iptables/setmasq.sh setmasq.sh] == 179 179 * for Ubuntu 180 180 * WAN deviceに対してIP MASQUERADEを設定 … … 192 192 }}} 193 193 194 == [source:/trunk/ iptables/setlan2wan.sh setlan2wan.sh] ==194 == [source:/trunk/TipAndDoc/iptables/setlan2wan.sh setlan2wan.sh] == 195 195 * #4への対処をするスクリプト 196 196 * 設定例は[#setmasq.sh]を参照 197 197 198 == [source:/trunk/ iptables/ufw ufw/] ==198 == [source:/trunk/TipAndDoc/iptables/ufw ufw/] == 199 199 * for Ubuntu 200 200 * /etc/ufw/*.rules に配置