removido
(usa Nenhuma)
Enviado em 23/07/2010 - 07:22h
Korvoman,
Pelo que vi, rodando o comando iptables-save ele me reporta isso.
______________________________________________________________________
-A POSTROUTING -s 192.168.1.0/24 -o eth0 -j MASQUERADE
COMMIT
# Completed on Fri Jul 23 07:21:26 2010
# Generated by iptables-save v1.4.7 on Fri Jul 23 07:21:26 2010
*mangle
:PREROUTING ACCEPT [79320:37766907]
:INPUT ACCEPT [22180:10430153]
:FORWARD ACCEPT [57136:27335361]
:OUTPUT ACCEPT [18795:9263949]
:POSTROUTING ACCEPT [75921:36598364]
COMMIT
# Completed on Fri Jul 23 07:21:26 2010
# Generated by iptables-save v1.4.7 on Fri Jul 23 07:21:26 2010
*filter
:INPUT ACCEPT [430:113182]
:FORWARD ACCEPT [6:388]
:OUTPUT ACCEPT [399:112332]
-A INPUT -i lo -j ACCEPT
-A INPUT -p tcp -m tcp --tcp-flags FIN,SYN,RST,ACK RST -m limit --limit 1/sec -j ACCEPT
-A INPUT -i eth1 -p udp -m udp --dport 33435:33525 -j DROP
-A INPUT -m state --state INVALID -j DROP
-A INPUT -s 192.168.1.109/32 -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -s 192.168.1.109/32 -p tcp -m tcp --dport 53 -j ACCEPT
-A INPUT -s 172.16.0.0/16 -i eth0 -j DROP
-A INPUT -s 192.168.1.0/24 -i eth0 -j DROP
-A INPUT -s 192.168.1.0/24 -i eth0 -j DROP
-A INPUT -s 192.168.1.0/24 -p icmp -j DROP
-A INPUT -p tcp -m tcp --dport 6080 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 443 -j ACCEPT
-A INPUT -p icmp -m icmp --icmp-type 8 -m limit --limit 1/sec -j ACCEPT
-A INPUT -p icmp -m icmp --icmp-type 0 -m limit --limit 1/sec -j ACCEPT
-A INPUT -p tcp -m tcp --dport 6080 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 443 -j ACCEPT
-A INPUT -p icmp -m icmp --icmp-type 8 -m limit --limit 1/sec -j ACCEPT
-A INPUT -p icmp -m icmp --icmp-type 0 -m limit --limit 1/sec -j ACCEPT
-A FORWARD -p tcp -m tcp --tcp-flags FIN,SYN,RST,ACK SYN -m limit --limit 1/sec -j ACCEPT
COMMIT
# Completed on Fri Jul 23 07:21:26 2010
______________________________________________________________________
Parece que essa regra de redirecionamento não está rodando...