diff --git a/rules/10-ar-amanojaku b/rules/10-ar-amanojaku index 9f0733b..3f8bef4 100644 --- a/rules/10-ar-amanojaku +++ b/rules/10-ar-amanojaku @@ -1,8 +1,14 @@ #!/bin/bash rules() { -# external port redirects + # tcp for port in 22 80 443 14528:14530; do iptables -t nat $flag PREROUTING -i ${IF_WAN} -d ${HOST_KASHA_WAN} -p tcp --dport ${port} -j DNAT --to-destination ${HOST_AMANOJAKU} iptables -t filter $flag FORWARD -i ${IF_WAN} -d ${HOST_AMANOJAKU} -p tcp --dport ${port} -j ACCEPT done + + # udp + for port in 60000:60100; do + iptables -t nat $flag PREROUTING -i ${IF_WAN} -d ${HOST_KASHA_WAN} -m udp -p udp --dport ${port} -j DNAT --to-destination ${HOST_AMANOJAKU} + iptables -t filter $flag FORWARD -i ${IF_WAN} -d ${HOST_AMANOJAKU} -m udp -p udp --dport ${port} -j ACCEPT + done }