From 329e728f36b0efe93be2274aa2e3f17685c14202 Mon Sep 17 00:00:00 2001 From: iFargle <albert@sysctl.io> Date: Thu, 7 Dec 2023 00:37:09 +0900 Subject: [PATCH] test --- nixos/hosts/osaka-linode-01/firewall.nix | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/nixos/hosts/osaka-linode-01/firewall.nix b/nixos/hosts/osaka-linode-01/firewall.nix index f48ec797..f6777609 100644 --- a/nixos/hosts/osaka-linode-01/firewall.nix +++ b/nixos/hosts/osaka-linode-01/firewall.nix @@ -22,7 +22,10 @@ ]; networking.firewall.extraCommands = '' - iptables -A FORWARD -m conntrack --ctstate ESTABLISHED,RELATED -j ACCEPT + iptables -F + iptables -t nat -F + iptables -X + # iptables -A FORWARD -m conntrack --ctstate ESTABLISHED,RELATED -j ACCEPT iptables -t nat -A PREROUTING -p tcp --dport 25 -j DNAT --to-destination 10.100.0.2:25 iptables -t nat -A POSTROUTING -p tcp -d 10.100.0.2 --dport 25 -j SNAT --to-source 172.234.84.222