iptables 工作机制
iptables 介绍
一图概览
local process
----------^-----------------------------------------------------------v-----
^ |
| v
+--------------+ +---------------+
| Filter#input | | Raw#output |
+--------------+ +---------------+
| |
+--------------+ +---------------+
| SNAT#input | | Mangle#output |
+--------------+ +---------------+
| |
+--------------+ +---------------+
| Mangle#input | | NAT#output |
+--------------+ +---------------+
^ |
| +---------------+
| | Filter#output |
| +---------------+
| |
| +----------------+ +----------------+ v
+------->| Mangle#forward |----->| Filter#forward |+------->+
^ +----------------+ +----------------+ |
| v
+-------------------+ +--------------------+
| DNAT#prerouting | | Mangle#postrouting |
+-------------------+ +--------------------+
| |
+-------------------+ +--------------------+
| Mangle#prerouting | | SNAT#postrouting |
+-------------------+ +--------------------+
| |
+-------------------+ v
| Raw#prerouting | |
+-------------------+ |
^ |
| v
----------^-----------------------------------------------------------v-----
network参考资料
最后更新于