Sunday, December 19, 2010

Linux Iptables firewall configuration methods of common

Common firewall configuration Iptables this script environment as eth0, eth1 extranet intranet;

#! # NET NIC/bin/s EXT_IF = "et0" FW_IP = "61.137.85.21" # intranet network adapter "INT_IF =" et1 LAN_IP = "192.168.0.1" LAN_IP_RANGE = "192.168.0.0/255.255.255.0" # plus read module, generally have built-in # Moduleloading. # Echo "modprobemodules" # modprodeip_tables # modprodeip_nat_tp # modprodeip_conntrack # modprobeip_conntrack_tp # enable forwarding (forward) echo "enablingIPFORWARDING ..." echo "1" >;/proc/sys/net/ipv4/ip_forward # rule initialization, set the default for drop enablingiptablesrules "# echo" resetthedefaultpoliciesinthetables iptables-iptables-X iptables-F-tmangle iptables-X-tmangle iptables-F-tnat iptables-X-tnat iptables-Z-tnat # setpolicies iptables-PINPUTDROP iptables-PFORWARDDROP iptables-POUTPUTDROP ###-###

No comments:

Post a Comment