summaryrefslogtreecommitdiff
path: root/src/samizdat-iptables.sh
blob: db5d039a51d2ebe1d416924d9ac8127375380009 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
#!/bin/sh
iptables-restore -T nat <<END
*nat
:PREROUTING ACCEPT [1369:182220]
:INPUT ACCEPT [2086:276956]
:OUTPUT ACCEPT [134:22171]
:POSTROUTING ACCEPT [144:22882]
-A OUTPUT -p tcp -m tcp --dport 53 -m owner ! --uid-owner unbound -m owner ! --uid-owner pdns -j REDIRECT --to-ports 535
-A OUTPUT -p udp -m udp --dport 53 -m owner ! --uid-owner unbound -m owner ! --uid-owner pdns -j REDIRECT --to-ports 535
-A OUTPUT -d 10.192.0.0/10 -p tcp -j REDIRECT --to-ports 9040
-A OUTPUT -d 10.64.0.1/32 -p tcp -m tcp --dport 80 -j REDIRECT --to-ports 8118
-A POSTROUTING -s 127.0.0.1/32 -m owner --uid-owner debian-tor -j SNAT --to-source 127.84.111.114
COMMIT
END