From: rtrimana Date: Mon, 18 Sep 2017 22:32:04 +0000 (-0700) Subject: Fixing nat and startup.sh scripts X-Git-Url: http://demsky.eecs.uci.edu/git/?a=commitdiff_plain;h=11a510be215170a1500255bfef463533db1ac587;p=lede.git Fixing nat and startup.sh scripts --- diff --git a/sentinel_setup/setup/nat b/sentinel_setup/setup/nat index 3b3e6e2add..dbb6607ce4 100755 --- a/sentinel_setup/setup/nat +++ b/sentinel_setup/setup/nat @@ -1,3 +1,5 @@ iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE iptables -A FORWARD -i eth0 -o wlan0 -m state --state RELATED,ESTABLISHED -j ACCEPT iptables -A FORWARD -i wlan0 -o eth0 -j ACCEPT +iptables -A FORWARD -i eth0 -o wlan1 -m state --state RELATED,ESTABLISHED -j ACCEPT +iptables -A FORWARD -i wlan1 -o eth0 -j ACCEPT diff --git a/sentinel_setup/setup/startup.sh b/sentinel_setup/setup/startup.sh index fee2e028f2..82ef2eb3cf 100755 --- a/sentinel_setup/setup/startup.sh +++ b/sentinel_setup/setup/startup.sh @@ -14,20 +14,20 @@ iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE # Protocol ICMP iptables -A FORWARD -j ACCEPT -p icmp; -iptables -A INPUT -j ACCEPT -s 192.168.2.108 -d 192.168.2.1 -p icmp; -iptables -A INPUT -j ACCEPT -s 192.168.2.1 -d 192.168.2.108 -p icmp; -iptables -A OUTPUT -j ACCEPT -s 192.168.2.108 -d 192.168.2.1 -p icmp; -iptables -A OUTPUT -j ACCEPT -s 192.168.2.1 -d 192.168.2.108 -p icmp; +iptables -A INPUT -j ACCEPT -s 192.168.1.198 -d 192.168.1.1 -p icmp; +iptables -A INPUT -j ACCEPT -s 192.168.1.1 -d 192.168.1.198 -p icmp; +iptables -A OUTPUT -j ACCEPT -s 192.168.1.198 -d 192.168.1.1 -p icmp; +iptables -A OUTPUT -j ACCEPT -s 192.168.1.1 -d 192.168.1.198 -p icmp; # SSH port 22 -#iptables -A INPUT -j ACCEPT -s 192.168.2.108 -d 192.168.2.1 -p tcp --dport ssh; -#iptables -A INPUT -j ACCEPT -s 192.168.2.108 -d 192.168.2.1 -p tcp --sport ssh; -#iptables -A INPUT -j ACCEPT -s 192.168.2.1 -d 192.168.2.108 -p tcp --dport ssh; -#iptables -A INPUT -j ACCEPT -s 192.168.2.1 -d 192.168.2.108 -p tcp --sport ssh; -#iptables -A OUTPUT -j ACCEPT -s 192.168.2.108 -d 192.168.2.1 -p tcp --dport ssh; -#iptables -A OUTPUT -j ACCEPT -s 192.168.2.108 -d 192.168.2.1 -p tcp --sport ssh; -#iptables -A OUTPUT -j ACCEPT -s 192.168.2.1 -d 192.168.2.108 -p tcp --dport ssh; -#iptables -A OUTPUT -j ACCEPT -s 192.168.2.1 -d 192.168.2.108 -p tcp --sport ssh; +#iptables -A INPUT -j ACCEPT -s 192.168.1.198 -d 192.168.1.1 -p tcp --dport ssh; +#iptables -A INPUT -j ACCEPT -s 192.168.1.198 -d 192.168.1.1 -p tcp --sport ssh; +#iptables -A INPUT -j ACCEPT -s 192.168.1.1 -d 192.168.1.198 -p tcp --dport ssh; +#iptables -A INPUT -j ACCEPT -s 192.168.1.1 -d 192.168.1.198 -p tcp --sport ssh; +#iptables -A OUTPUT -j ACCEPT -s 192.168.1.198 -d 192.168.1.1 -p tcp --dport ssh; +#iptables -A OUTPUT -j ACCEPT -s 192.168.1.198 -d 192.168.1.1 -p tcp --sport ssh; +#iptables -A OUTPUT -j ACCEPT -s 192.168.1.1 -d 192.168.1.198 -p tcp --dport ssh; +#iptables -A OUTPUT -j ACCEPT -s 192.168.1.1 -d 192.168.1.198 -p tcp --sport ssh; iptables -A INPUT -j ACCEPT -p tcp --dport ssh; iptables -A INPUT -j ACCEPT -p tcp --sport ssh; iptables -A OUTPUT -j ACCEPT -p tcp --dport ssh;