- 论坛徽章:
- 0
|
用iptables实现映射多个端口到某个端口~
比如,真实提供服务的端口是tcp得6900
想要访问该机9090 8080端口时候相当于访问6900 请问如何用iptables实现。
查阅了不少资料后发现不是无效就是重启iptables时候报错.
现在的/etc/sysconfig/iptables内容为
- *filter
- :INPUT ACCEPT [0:0]
- :FORWARD ACCEPT [0:0]
- :OUTPUT ACCEPT [0:0]
- :RH-Firewall-1-INPUT - [0:0]
- -A INPUT -j RH-Firewall-1-INPUT
- -A FORWARD -j RH-Firewall-1-INPUT
- -A RH-Firewall-1-INPUT -i lo -j ACCEPT
- -A RH-Firewall-1-INPUT -p icmp --icmp-type any -j ACCEPT
- -A RH-Firewall-1-INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT
- -A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 22 -j ACCEPT
- -A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 80 -j ACCEPT
- -A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 6900 -j ACCEPT
- -A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 6900 -j ACCEPT
- #-A RH-Firewall-1-INPUT -p tcp -j REJECT --reject-with tcp-reset
- -A RH-Firewall-1-INPUT -j REJECT --reject-with icmp-host-prohibited
- COMMIT
复制代码
谢谢各位了! |
|