采用ufw防火墙配置
1.sudo ufw status 查看当前防火墙状态
2.sudo ufw enable
sudo ufw disable
sudo /etc/init.d/ufw restart
3.sudo vi /etc/default/ufw
DEFAULT_FORWARD_POLICY = "ACCEPT" 允许转发
4.sudo vi /etc/ufw/sysctl.conf
net/ipv4/ip_forward=1
net/ipv6/conf/default/forwarding=1
5.sudo vi /etc/ufw/before.rules
#nat 规则
*nat
:POSTROUTING ACCEPT [0:0]
#将来自eth1的数据包转发给eth0
-A POSTROUTING -s 192.168.0.0/24 -o eth0 -j MASQUERADE
COMMIT
6.sudo ufw logging on/off