|
不知道为什么就是访问不了http://192.168.1.106
192.168.2.2上的web服务是正常的
CnmmxFW:/# iptables -L -n -t nat
Chain PREROUTING (policy ACCEPT)
target prot opt source destination
DNAT tcp -- 0.0.0.0/0 192.168.1.106 tcp dpt:80 to:192.168.2.2
Chain POSTROUTING (policy ACCEPT)
target prot opt source destination
SNAT all -- 0.0.0.0/0 0.0.0.0/0 to:192.168.1.101
SNAT tcp -- 0.0.0.0/0 192.168.1.106 tcp dpt:80 to:192.168.2.2
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
DNAT tcp -- 0.0.0.0/0 192.168.1.106 tcp dpt:80 to:192.168.2.2
---------------------------------------------------------------------------------
还有,如果
$IPT -P INPUT DROP
$IPT -P OUTPUT DROP
$IPT -P FORWARD DROP
做DNAT除了PREROUTING是必须的,还有其它什么语句是必须要有的吗 |
|