From: Владимир <fmfm@symmetron.msk.ru> To: sisyphus@altlinux.ru Subject: Re: [sisyphus] iptables Date: Thu, 10 Oct 2002 13:09:14 +0400 Message-ID: <3DA543BA.70802@symmetron.msk.ru> (raw) In-Reply-To: <3DA53F3C.1020505@strat.chtts.ru> Привет всем. Egorov Alexey пишет: > Привет всем! > Народ, подскажите такой скрипт iptables достаточен: Только это не скрипт. > > *filter > :INPUT ACCEPT [2305:262010] > :FORWARD ACCEPT [0:0] > :OUTPUT ACCEPT [2743:551432] > COMMIT > *nat > :PREROUTING ACCEPT [188:19967] > :POSTROUTING ACCEPT [0:0] > :OUTPUT ACCEPT [1838:117460] > -A POSTROUTING -s x.x.x.x/255.255.255.0 -o eth0 -j SNAT --to-source > y.y.y.y > -A POSTROUTING -s x.x.x.x/255.255.255.0 -d x.x.x.x/255.255.255.0 -j > ACCEPT А это еще зачем? > > COMMIT > > В принципе все работает, но по безапасности надо что-то делать или нет > ( в частности с цепочками :INPUT :FORWARD :OUTPUT ) ? > > Конечно надо. -- Best regards Vladimir
next prev parent reply other threads:[~2002-10-10 9:09 UTC|newest] Thread overview: 3+ messages / expand[flat|nested] mbox.gz Atom feed top 2002-10-10 8:50 Egorov Alexey 2002-10-10 9:09 ` Владимир [this message] 2002-10-10 9:13 ` Dmitry E. Oboukhov
Reply instructions: You may reply publicly to this message via plain-text email using any one of the following methods: * Save the following mbox file, import it into your mail client, and reply-to-all from there: mbox Avoid top-posting and favor interleaved quoting: https://en.wikipedia.org/wiki/Posting_style#Interleaved_style * Reply using the --to, --cc, and --in-reply-to switches of git-send-email(1): git send-email \ --in-reply-to=3DA543BA.70802@symmetron.msk.ru \ --to=fmfm@symmetron.msk.ru \ --cc=sisyphus@altlinux.ru \ /path/to/YOUR_REPLY https://kernel.org/pub/software/scm/git/docs/git-send-email.html * If your mail client supports setting the In-Reply-To header via mailto: links, try the mailto: link
ALT Linux Sisyphus discussions This inbox may be cloned and mirrored by anyone: git clone --mirror http://lore.altlinux.org/sisyphus/0 sisyphus/git/0.git # If you have public-inbox 1.1+ installed, you may # initialize and index your mirror using the following commands: public-inbox-init -V2 sisyphus sisyphus/ http://lore.altlinux.org/sisyphus \ sisyphus@altlinux.ru sisyphus@altlinux.org sisyphus@lists.altlinux.org sisyphus@lists.altlinux.ru sisyphus@lists.altlinux.com sisyphus@linuxteam.iplabs.ru sisyphus@list.linux-os.ru public-inbox-index sisyphus Example config snippet for mirrors. Newsgroup available over NNTP: nntp://lore.altlinux.org/org.altlinux.lists.sisyphus AGPL code for this site: git clone https://public-inbox.org/public-inbox.git