LinuxÒÁµéÔ°ÂÛ̳'s Archiver

fsmhai ·¢±íÓÚ 2005-11-25 09:51

¡¾ÇóÖú¡¿Í¸¹ýiptables·ÃÎÊÍⲿVPN·þÎñÆ÷

ÎÒ¹«Ë¾µÄÄÚ²¿µçÄÔÊÇͨ¹ýiptablesÀ´ÅäÖÃת·¢(forward)¹²ÏíÉÏÍøµÄ.

ÇëÎÊÈç¿ÉÅäÖòÅÄÜÈÃÄÚÍø¿Í»§»ú·ÃÎÊÍⲿVPN·þÎñÆ÷ÄØ?

ÎÒÊÔÓùýÒÔϹæÔò¶¼²»ÄÜͨ¹ý:

²¦ÈëVPNµÄ¿Í»§»úIPÊÇ:192.168.0.101

$ipt -A INPUT -s 192.168.0.101 -p udp -j ACCEPT
$ipt -A INPUT -p gre -j ACCEPT
$ipt -A INPUT -p tcp --dport 1723 -j ACCEPT
$ipt -A INPUT -p tcp --sport 1723 -j ACCEPT
$ipt -t nat -A POSTROUTING -p tcp -o eth1 -j SNAT --to 192.168.0.101:1723

Çë¸÷λ´ó¸ç°ï°ï! :confused:

Roc.Ken ·¢±íÓÚ 2005-11-25 13:22

ÄÚÍø¿ÉÒÔÉϹ«ÍøµÄ»°£¬Ö±½ÓÁ¬²»ÐÐô£¿
Óà netcat £¬sshd£¬»òÕßiptables Ó³Éä¶Ë¿Úµ½±¾µØÊÔÊÔ

Ò³: [1]

Powered by Discuz! Archiver 6.1.0  © 2001-2007 Comsenz Inc.