CODE
iptables -t nat -N mac-nat 2>/dev/null iptables -t nat -F mac-nat 2>/dev/null iptables -t nat -D PREROUTING -j mac-nat 2>/dev/null iptables -t nat -I PREROUTING -j mac-nat 2>/dev/null iptables -t nat -A mac-nat -i $IF_LOCAL --match mac --mac-source XX:XX:XX:XX:XX:XX -j ACCEPT iptables -t nat -A mac-nat -j DROP
请问怎么改从外网能ssh到服务器并且端口映射也能正常呢 ? 谢谢 应当改为:
CODE
iptables -t nat -N mac-nat 2>/dev/nulliptables -t nat -F mac-nat 2>/dev/nulliptables -t nat -D PREROUTING -j mac-nat 2>/dev/nulliptables -t nat -I PREROUTING -j mac-nat 2>/dev/nulliptables -t nat -A mac-nat -i $IF_LOCAL --match mac --mac-source XX:XX:XX:XX:XX:XX -j ACCEPTiptables -t nat -A mac-nat -i $IF_LOCAL -j DROP 谢谢,虽然不懂iptables 基本上明白了,原来是 外网和内网的非法 mac 都 jop 现在是只DROP内网的是么? jop?haha 似乎还是不行。。郁闷。
页:
[1]