FIREWALL COM IPTABLES - PARA INTERNET DISCADA E ADSL
Publicado por Perfil removido 18/09/2003
[ Hits: 11.141 ]
E AI GALERA, ESTOU DISPONIBILIZANDO PARA VCS UM NOVO SCRIPT DE FIREWALL ESSE É UM SCRIPT 2 EM 1, TANTO FAZ VOCÊ USAR PARA INTERNET DISCADA OU ADSL. BASTA APENAS VCS CUSTOMIZARAM CONFORME A NECESSIDADE DE CADA UM.
ABRAÇOS
######################################## FIREWALL 2 em 1 #############################################
################################ APLICAÇÃO DE FIREWALL PARA ADSL OU DISCADA ##########################
######################################################################################################
######################################################################################################
#!/bin/sh
#
echo -e "\n\nCarregando firewall...\n"
EXTIF="ppp0"
INTIF="eth1"
echo " Interface Externa: $EXTIF"
echo " Interface Interna: $INTIF"
echo " habilitando forwarding..."
echo "1" > /proc/sys/net/ipv4/ip_forward
echo " habilitando enderecamento dinamico.."
echo "1" > /proc/sys/net/ipv4/ip_dynaddr
echo " apagando regras existentes e atualizando as regras padrao.."
IPTABLES -P INPUT ACCEPT
IPTABLES -F INPUT
IPTABLES -P OUTPUT ACCEPT
IPTABLES -F OUTPUT
IPTABLES -P FORWARD DROP
IPTABLES -F FORWARD
IPTABLES -t nat -F
echo " FWD: Permitir conexoes para fora e apenas existentes para dentro"
IPTABLES -A FORWARD -i $EXTIF -o $INTIF -m state --state ESTABLISHED,RELATED -j ACCEPT
IPTABLES -A FORWARD -i $INTIF -o $EXTIF -j ACCEPT
IPTABLES -A FORWARD -j LOG
echo " Habilitando SNAT (MASQUERADE) em $EXTIF"
$IPTABLES -t nat -A POSTROUTING -o $EXTIF -j MASQUERADE
###########################################################################################################
PROXIMO ITEN: Se voce não tem uma conexao discada pode usar o seguinte script de firewall para compartilhar sua conexão.
###########################################################################################################
#!/bin/sh
#
echo -e "\n\nCarregando firewall...\n"
EXTIF="eth0" {{{{{{{{OU A ETH QUE VC USA PRA EXTERNA (retire esse comentario)}}}}}}}}
INTIF="eth1"
echo " Interface Externa: $EXTIF"
echo " Interface Interna: $INTIF"
echo " habilitando forwarding..."
echo "1" > /proc/sys/net/ipv4/ip_forward
echo " apagando regras existentes e atualizando as regras padrao.."
IPTABLES -P INPUT ACCEPT
IPTABLES -F INPUT
IPTABLES -P OUTPUT ACCEPT
IPTABLES -F OUTPUT
IPTABLES -P FORWARD DROP
IPTABLES -F FORWARD
IPTABLES -t nat -F
echo " FWD: Permitir conexoes para fora e apenas existentes para dentro"
IPTABLES -A FORWARD -i $EXTIF -o $INTIF -m state --state ESTABLISHED,RELATED -j ACCEPT
IPTABLES -A FORWARD -i $INTIF -o $EXTIF -j ACCEPT
IPTABLES -A FORWARD -j LOG
echo " Habilitando SNAT (MASQUERADE) em $EXTIF"
#IPTABLES -t nat -A POSTROUTING -s sua_faixa_de_ip_interno -o eth0 -j SNAT --to seu_ip_externo
IPTABLES -t nat -A POSTROUTING -s 192.168.1.0/24 -o eth0 -j SNAT --to 200.20X.XXX.XXX
#########################################################################################################
################################# FIM DA MÁGICA #########################################################
Analisador de rede com aviso em net send
Script simples para fazer backup em fita DAT
Script em shell do artigo: Implementando a segurança em servicos de acesso remoto
Nenhum comentário foi encontrado.
A combinação de WMs com compositores feitos por fora
Audacious, VLC e QMMP - que saudades do XMMS
SUNO OpenSource: Crie um servidor de gerador de música com IA
Instalação Completa e Configuração Básica do Void Linux
A Fundação da Confiança Digital: A Importância Estratégica de uma PKI CA na Segurança de Dados
Tenha opção de emblemas embutido no pcmanfm
Instalar o Microsoft Teams no Ubuntu e Derivados
Erro ao instalar o linux-headers (2)
O WiFi não reconhece minha rede depois que o processo de suspensão é r... (4)
Instalador não reconhece SSD Sata. (12)









