Tema: Re: dd wrt iptables
Autorius: ccc
Data: 2016-09-14 14:35:19
On 2016-09-13 16:19, locked wrote:
> viskas ten gerai, zmogus greiciausiai uzsirove ant sitos klaidos:
> http://www.dd-wrt.com/phpBB2/viewtopic.php?p=426886

O klaida kur, kad per web interfeisa neveikia ? Bandziau ir per telnet, 
bet gal kazka darau netaip.. "iptables -vnL FORWARD" nesimato mano 
nurodytu eiluciu (arba as ju nesuprantu). Nors bent jau is dalies 
veikia. T.y blokuoja viska.


BusyBox v1.24.2 (2016-09-09 04:34:55 CEST) built-in shell (ash)

root@DD-WRT:~# iptables -I FORWARD 1 -p tcp -m multiport --dports 80,443 
-j ACCE
PT
root@DD-WRT:~# iptables -I FORWARD 2 -m state --state 
ESTABLISHED,RELATED -j ACC
EPT
root@DD-WRT:~# iptables -I FORWARD 3 -j DROP


root@DD-WRT:~# iptables -vnL FORWARD
Chain FORWARD (policy DROP 0 packets, 0 bytes)
  pkts bytes target     prot opt in     out     source 
destination
  3940 1005K ACCEPT     0    --  *      *       0.0.0.0/0 
0.0.0.0/0           state RELATED,ESTABLISHED
     0     0 ACCEPT     0    --  *      *       0.0.0.0/0 
0.0.0.0/0           state RELATED,ESTABLISHED
    23 19848 DROP       0    --  *      *       0.0.0.0/0 
0.0.0.0/0
     0     0 ACCEPT     47   --  *      eth0    192.168.1.0/24 
0.0.0.0/0
     0     0 ACCEPT     tcp  --  *      eth0    192.168.1.0/24 
0.0.0.0/0           tcp dpt:1723
   153 57154 lan2wan    0    --  *      *       0.0.0.0/0 
0.0.0.0/0
     0     0 ACCEPT     0    --  br0    br0     0.0.0.0/0 
0.0.0.0/0
     0     0 TRIGGER    0    --  eth0   br0     0.0.0.0/0 
0.0.0.0/0           TRIGGER type:in match:0 relate:0
   153 57154 trigger_out  0    --  br0    *       0.0.0.0/0 
0.0.0.0/0
   153 57154 ACCEPT     0    --  br0    *       0.0.0.0/0 
0.0.0.0/0           state NEW
     0     0 DROP       0    --  *      *       0.0.0.0/0 
0.0.0.0/0