能说说acceptdroprejectpassthroughreturn和jump的区别吗??我看了好多资料就是看得一知半解的!!
acceptdrop这个还好理解,其它的真的很难理解啊 input规则是管理连接到ROS的规则,reject是转向 jump是跳转到其它规则 忘了看你改了winbox的端口了,建议你把第一条改一下源地址为你的内网,如192.168.0.0/32,即允许内网的机器对ROS进行远程管理 accept 接受, 认可, 承担, 承兑同意, 承认 drop使结束, 不再讨论, 停止与(某人)交往reject拒绝, 抵制, 否决, 呕出, 驳回, 丢弃passthrough 机器转移归向,通过 return回返, 归还jump跳跃从字面上理解,reject拒绝, 抵制, 否决, 呕出, 驳回, 丢弃与前面的朋友说的reject是转向有点不相同啊这个与drop的区别又在什么地方?acceptpassthrough差不多的啊还是除了accept\drop\jump理解了,其它的还是不解啊求解 手册里是这样解释的accept - accept the packet. No action, i.e., the packet is passed through without undertaking anyaction, except for mangle, and no more rules are processed in the relevant list/chain drop - silently drop the packet (without sending the ICMP reject message) jump - jump to the chain specified by the value of the jump-target argument passthrough - ignore this rule, except for mangle, go on to the next one. Acts the same way asa disabled rule, except for ability to count and mangle packets reject - reject the packet and send an ICMP reject message return - return to the previous chain, from where the jump took placepassthrough 是在mangle里用的。执行当前的规则后还可以到下一条规则。因此可以一个数据包打多个flow mark(在firewall里其他的地方只要符合规则条件的数据包都会不再继续下边的规则了)reject拒绝数据后还返回个ICMP信号。return是jump的反向操作。 懂了!!谢谢!!! 关键还是要仔细研究官方说明亚
页:
[1]