#!/bin/sh
PATH=/usr/sbin:/sbin:/bin:/usr/bin
iptables -F
iptables -t nat -F
iptables -t mangle -F
iptables -X
iptables -A INPUT -i lo -j ACCEPT
iptables -A OUTPUT -o lo -j ACCEPT
iptables -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT
iptables -A INPUT -m state --state NEW -i ! eth0 -j ACCEPT
iptables -A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT
iptables -A FORWARD -i eth1 -o eth0 -j ACCEPT
iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE
iptables -A INPUT -i eth0 -p tcp --dport 2100 -j ACCEPT # SSH localhost
iptables -A INPUT -i eth0 -p tcp --dport 2200 -j ACCEPT # SSH LDAP-server
iptables -A INPUT -i eth0 -p tcp --dport 2300 -j ACCEPT # SSH Web-server
iptables -A INPUT -i eth0 -p tcp --dport 80 -j ACCEPT # Webside
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 2200 -j DNAT --to-destination 192.168.50.1
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j DNAT --to-destination 192.168.50.2
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 2300 -j DNAT --to-destination 192.168.50.2
iptables -A INPUT -i eth0 -j DROP
echo 1 > /proc/sys/net/ipv4/ip_forward
Returner til Nettverk / Sikkerhet
Registrerte brukere: Google [Bot]