diff --git a/rules/01-output-snat b/rules/01-output-snat index 1505e2c..dbc839f 100644 --- a/rules/01-output-snat +++ b/rules/01-output-snat @@ -3,9 +3,9 @@ rules() { iptables --table filter $flag FORWARD -i ${IF_WAN} -o ${IF_LAN} -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT iptables --table filter $flag FORWARD -i ${IF_LAN} -o ${IF_WAN} -j ACCEPT iptables --table nat $flag POSTROUTING -s ${NET_LAN} -o ${IF_WAN} -j SNAT --to-source ${HOST_KASHA_WAN} - if ${HAVE_WAN2}; then - iptables --table nat $flag POSTROUTING -s 10.24.20.10 -o ${IF_WAN} -j SNAT --to-source ${HOST_KASHA_WAN2} - fi - # we want to be able to access 192.168.0.1 +# if ${HAVE_WAN2}; then +# iptables --table nat $flag POSTROUTING -s 10.24.20.10 -o ${IF_WAN} -j SNAT --to-source ${HOST_KASHA_WAN2} +# fi + # we want to be able to access 192.168.0.1, regardles of which snat we're using iptables --table nat $flag POSTROUTING -s ${NET_LAN} -d ${NET_WAN} -j SNAT --to-source ${HOST_KASHA_WAN} }