linux:konfiguracja_firewall-a

# Generated by iptables-save v1.4.2 on Wed Jun 10 19:58:15 2009
*filter
:INPUT ACCEPT [5193:1520500]
:FORWARD DROP [11:676]
:OUTPUT ACCEPT [3509:357891]
-A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
-A FORWARD -p udp -m udp --dport 53 -j ACCEPT
-A FORWARD -i eth1 -o eth1 -j ACCEPT
-A FORWARD -s 192.168.1.120/32 -p tcp -m tcp --dport 443 -j ACCEPT
-A FORWARD -s 192.168.1.120/32 -p tcp -m tcp --dport 80 -j ACCEPT
-A FORWARD -j REJECT --reject-with icmp-port-unreachable
COMMIT
# Completed on Wed Jun 10 19:58:15 2009
# Generated by iptables-save v1.4.2 on Wed Jun 10 19:58:15 2009
*nat
:PREROUTING ACCEPT [57513:4794059]
:POSTROUTING ACCEPT [28:2022]
:OUTPUT ACCEPT [14:922]
-A PREROUTING -s ! 192.168.1.120/32 -i eth1 -p tcp -m tcp --dport 80 -j DNAT --to-destination 192.168.1.120:8080
-A POSTROUTING -s 192.168.1.0/24 -o eth0 -j SNAT --to-source 10.0.2.100
-A POSTROUTING -s 192.168.1.0/24 -d 192.168.1.120/32 -o eth1 -j SNAT --to-source 192.168.1.1
COMMIT
# Completed on Wed Jun 10 19:58:15 2009