Linux/iptables: Difference between revisions

From Wiki
mNo edit summary
mNo edit summary
Line 6: Line 6:
!Tables
!Tables
!Chains
!Chains
!
!
|-
|-
|FILTER
|FILTER
Line 14: Line 12:
* OUTPUT
* OUTPUT
* FORWARD
* FORWARD
|
|
|-
|-
|NAT
|NAT
Line 22: Line 18:
* OUTPUT
* OUTPUT
* POSTROUTING
* POSTROUTING
|
|
|-
|-
|MANGLE
|MANGLE
Line 33: Line 27:
* INPUT
* INPUT
* FORWARD
* FORWARD
|
|
|-
|-
|RAW
|RAW
Line 41: Line 33:
* PREROUTING
* PREROUTING
* OUTPUT
* OUTPUT
|
|
|-
|-
|SECURITY
|SECURITY
|
|
|
|
|}
|}


== Tables ==
* Filter (Default)
* NAT
* Mangle (modify ip headers)
* (Raw) (Connection tracking)
* (Security) (SELinux Tagging)


== Chains ==
*


== raspi wifi to ethernet ==
== raspi wifi to ethernet ==

Revision as of 17:14, 4 December 2023


Tables Chains
FILTER
  • INPUT
  • OUTPUT
  • FORWARD
NAT
  • PREROUTING
  • OUTPUT
  • POSTROUTING
MANGLE

(modify ip headers)

  • PREROUTING
  • POSTROUTING
  • OUTPUT
  • INPUT
  • FORWARD
RAW

(connection tracking)

  • PREROUTING
  • OUTPUT
SECURITY


raspi wifi to ethernet

  • rc.local
    • iptables --table nat --append POSTROUTING --out-interface wlan0 -j MASQUERADE
    • iptables --append FORWARD --in-interface eth0 -j ACCEPT