Re: Chiudere tutto sul GW
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
On Wednesday 01 October 2003 18:22, _Martin_ wrote:
> P.S. non posso squiddare in maniera trasparente tutto in quanto poi con
> faccio per https, ftp e posta?
si può fare così:
I
iptables -t nat -A POSTROUTING \
- -o $INTERNET -s 192.168.2.0/24 -p tcp --dport 22 -d ! 192.168.2.0/24 -j SNAT
- --to-source 10.0.0.1
iptables -t nat -A POSTROUTING \
- -o $INTERNET -s 192.168.2.0/24 -p tcp --dport 110 -d ! 192.168.2.0/24 -j SNAT
- --to-source 10.0.0.1
iptables -t nat -A POSTROUTING \
- -o $INTERNET -s 192.168.2.0/24 -p tcp --dport 119 -d ! 192.168.2.0/24 -j SNAT
- --to-source 10.0.0.1
iptables -t nat -A POSTROUTING \
- -o $INTERNET -s 192.168.2.0/24 -p tcp --dport 123 -d ! 192.168.2.0/24 -j SNAT
- --to-source 10.0.0.1
il resto passa per squid...
ciao,
Mario
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)
iD8DBQE/ewRsWXPeINKXhYURAjd+AJ9ce0WFFA6YN7yQnN8ws6YqLQA3ogCgonuI
PJNesXV/gKpQZg6p7rlxVCE=
=dcGc
-----END PGP SIGNATURE-----
Reply to: