momo's Blog.

重新温习一下iptables

字数统计: 190阅读时长: 1 min
2023/07/20 Share

前言

新版本traefik 又拿不到IP了,

1
2
3
4
5
6
7
8
9
10
+ iptables -t filter -I FORWARD -s 0.0.0.0/0 -p TCP --dport 30003 -j ACCEPT
+ echo 10.130.0.6
+ grep -Eq :
+ cat /proc/sys/net/ipv4/ip_forward
+ '[' 1 '==' 1 ]
+ iptables -t filter -A FORWARD -d 10.130.0.6/32 -p TCP --dport 30003 -j DROP
+ iptables -t nat -I PREROUTING -p TCP --dport 80 -j DNAT --to 10.130.0.6:30003
+ iptables -t nat -I POSTROUTING -d 10.130.0.6/32 -p TCP -j MASQUERADE
+ '[' '!' -e /pause ]
+ mkfifo /pause
1
2
3
4
5
6
7
8
9
10
+ iptables -t filter -I FORWARD -s 0.0.0.0/0 -p TCP --dport 80 -j ACCEPT
+ echo 10.43.61.181
+ grep -Eq :
+ cat /proc/sys/net/ipv4/ip_forward
+ '[' 1 '==' 1 ]
+ iptables -t filter -A FORWARD -d 10.43.61.181/32 -p TCP --dport 80 -j DROP
+ iptables -t nat -I PREROUTING '!' -s 10.43.61.181/32 -p TCP --dport 80 -j DNAT --to 10.43.61.181:80
+ iptables -t nat -I POSTROUTING -d 10.43.61.181/32 -p TCP -j MASQUERADE
+ '[' '!' -e /pause ]
+ mkfifo /pause
CATALOG
  1. 1. 前言