导入导出防火墙规则

保存规则:iptables-save > /etc/iptables-script
恢复规则:iptables-restore < /etc/iptables-script

1
> vim iptables.conf
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
# Generated by iptables-save v1.4.21 on Mon Nov 21 14:49:30 2016
*nat
:PREROUTING ACCEPT [75958158:4710517785]
:INPUT ACCEPT [11156433:697999260]
:OUTPUT ACCEPT [11270560:679018758]
:POSTROUTING ACCEPT [0:0]
-A POSTROUTING -j MASQUERADE
COMMIT
# Completed on Mon Nov 21 14:49:30 2016
# Generated by iptables-save v1.4.21 on Mon Nov 21 14:49:30 2016
*filter
:INPUT ACCEPT [1937717187:1020106795408]
:FORWARD ACCEPT [2772458722:1915560771769]
:OUTPUT ACCEPT [2100892309:1998825790936]
COMMIT
# Completed on Mon Nov 21 14:49:30 2016
1
> iptables-restore < iptables.conf

配置网卡转发

1
echo 1 > /proc/sys/net/ipv4/ip_forward