vi /etc/config/firewall
nat规则
config redirect 'nat'
option name 'gaodi-nat'
option target 'SNAT'
option src 'lan'
option dest 'lan'
option proto '*'
option src_ip '10.244.0.0/16'
option src_dip '192.168.100.177'
option enabled '1'
过滤规则
config rule
option name 'Allow-forward-gaodi'
option src ''
option dest ''
option family 'ipv4'
option target 'ACCEPT'
option proto '*'