netfilter-full-cone-nat icon indicating copy to clipboard operation
netfilter-full-cone-nat copied to clipboard

TCP Fullconenat 临时有限方案

Open basncy opened this issue 2 years ago • 0 comments

内网需要这功能的设备不能太多, 将部分端口范围划分给这些设备 内网机器: echo "20000 21999" >/proc/sys/net/ipv4/ip_local_port_range 网关: iptable -t nat -A PREROUTING -i ppp0 -p tcp -m multiport --dports 20000:21999 -j DNAT --to-destination 192.168.1.200

basncy avatar Jan 20 '23 10:01 basncy