iptables_nat.sh脚本如下:

#! /bin/bash

echo 1 > /proc/sys/net/ipv4/ip_forward

iptables -A FORWARD -s 192.168.0.0/24 -j ACCEPT

iptables -A FORWARD -d 192.168.0.0/24 -j ACCEPT

 

iptables -A INPUT  -p icmp -j ACCEPT

iptables -A OUTPUT -p icmp -j ACCEPT

 

iptables -A OUTPUT -p udp --dport 53 -j ACCEPT

iptables -A INPUT  -p udp --sport 53 -j ACCEPT

 

iptables -t nat -A POSTROUTING -s 192.168.100.0/24 -j MASQUERADE

service iptables save

 

-------------------------------------

 

原文出自: http://blog.sina.com.cn/s/blog_63d65de4010126kv.html