This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision Next revision Both sides next revision | ||
сервис_nat [2022/07/26 06:26] val [Debian/Ubuntu (iptables)] |
сервис_nat [2024/04/08 16:37] val [nftables] |
||
---|---|---|---|
Line 36: | Line 36: | ||
== Вариант 1 == | == Вариант 1 == | ||
- | = Сохранение состояния iptables = | + | == Сохранение состояния iptables == |
<code> | <code> | ||
root@gate:~# iptables-save > /etc/iptables.rules | root@gate:~# iptables-save > /etc/iptables.rules | ||
</code> | </code> | ||
- | = Восстановление состояния iptables = | + | == Восстановление состояния iptables == |
<code> | <code> | ||
root@gate:~# iptables-restore < /etc/iptables.rules | root@gate:~# iptables-restore < /etc/iptables.rules | ||
</code> | </code> | ||
- | = Восстановление состояния iptables при загрузке = | + | == Восстановление состояния iptables при загрузке == |
<code> | <code> | ||
root@gate:~# cat /etc/network/interfaces | root@gate:~# cat /etc/network/interfaces | ||
Line 63: | Line 63: | ||
# netfilter-persistent save | # netfilter-persistent save | ||
</code> | </code> | ||
+ | |||
+ | ==== nftables ==== | ||
+ | |||
+ | * [[https://wiki.nftables.org/wiki-nftables/index.php/Performing_Network_Address_Translation_(NAT)|Performing Network Address Translation (NAT)]] | ||
+ | * https://wiki.debian.org/nftables | ||
+ | |||
+ | <code> | ||
+ | # apt install nftables | ||
+ | |||
+ | ... | ||
+ | # nft add rule nat postrouting ip saddr 192.168.22.0/24 oif eth1 snat to 10.5.7.122 | ||
+ | |||
+ | # nft list ruleset | ||
+ | |||
+ | # file /etc/nftables.conf | ||
+ | |||
+ | # systemctl enable nftables.service | ||
+ | </code> | ||
+ | |||
==== CentOS (firewalld) ==== | ==== CentOS (firewalld) ==== | ||