端口轉發,但不想整個 eth0 MASQUERADE, 只針對某個IP MASQUERADE

@reboot sleep 91; /sbin/iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 8992 -j DNAT --to-destination 192.168.2.203:992
@reboot sleep 91; /sbin/iptables -t nat -A POSTROUTING -d 192.168.2.203 -p tcp --dport 992 -j MASQUERADE

Comments are closed.