Skip to content

Instantly share code, notes, and snippets.

@zealws
Created May 7, 2015 22:19
Show Gist options
  • Save zealws/f90e8cae18fd20897588 to your computer and use it in GitHub Desktop.
Save zealws/f90e8cae18fd20897588 to your computer and use it in GitHub Desktop.
@chantra @zfjagann @asanyal902 still facing problem down is complete network setup. Ty for ur support and reply
![setup](https://cloud.githubusercontent.com/assets/11455759/7522074/6c1cb88c-f510-11e4-8d11-61b26414932f.png)
iptables entry
# Generated by iptables-save v1.4.21 on Thu May 7 22:56:57 2015
*nat
:sudo iptables -t nat -P PREROUTING ACCEPT [13:2526]
sudo iptables -t nat -P INPUT ACCEPT
sudo iptables -t nat -P OUTPUT ACCEPT
sudo iptables -t nat -P POSTROUTING ACCEPT
sudo iptables -t nat -A POSTROUTING -s 10.42.0.0/24 ! -d 10.42.0.0/24 -j MASQUERADE
COMMIT
# Completed on Thu May 7 22:56:57 2015
# Generated by iptables-save v1.4.21 on Thu May 7 22:56:57 2015
*filter
sudo iptables -P INPUT ACCEPT
sudo iptables -P FORWARD ACCEPT
sudo iptables -P OUTPUT ACCEPT
sudo iptables -A INPUT -i wlan0 -p udp -m udp --dport 67 -j ACCEPT
sudo iptables -A INPUT -i wlan0 -p tcp -m tcp --dport 67 -j ACCEPT
sudo iptables -A INPUT -i wlan0 -p udp -m udp --dport 53 -j ACCEPT
sudo iptables -A INPUT -i wlan0 -p tcp -m tcp --dport 53 -j ACCEPT
sudo iptables -A FORWARD -d 10.42.0.0/24 -o wlan0 -m state --state RELATED,ESTABLISHED -j ACCEPT
sudo iptables -A FORWARD -s 10.42.0.0/24 -i wlan0 -j ACCEPT
sudo iptables -A FORWARD -i wlan0 -o wlan0 -j ACCEPT
sudo iptables -A FORWARD -o wlan0 -j REJECT --reject-with icmp-port-unreachable
sudo iptables -A FORWARD -i wlan0 -j REJECT --reject-with icmp-port-unreachable
COMMIT
# Completed on Thu May 7 22:56:57 2015
-------------------------------------------------------------------------
ip r entry
default via 10.104.26.1 dev em1 proto static
10.104.26.0/23 dev em1 proto kernel scope link src 10.104.27.40
10.104.32.0/24 dev wlan0 proto kernel scope link src 10.104.32.133 metric 9
169.254.0.0/16 dev em1 scope link metric 1000
------------------------------------------------------------------------------------
ip a entry
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
2: em1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
link/ether a4:5d:36:6b:34:42 brd ff:ff:ff:ff:ff:ff
inet 10.104.27.40/23 brd 10.104.27.255 scope global em1
inet6 fe80::a65d:36ff:fe6b:3442/64 scope link
valid_lft forever preferred_lft forever
3: wlan0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP group default qlen 1000
link/ether bc:85:56:c0:78:39 brd ff:ff:ff:ff:ff:ff
inet 10.104.32.133/24 brd 10.104.32.255 scope global wlan0
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment