М
Size: a a a
М
С
༼
С
ST
ST
С
M
add chain=output action=accept out-interface=ether1 comment="accept everything to internet"
add chain=output action=accept out-interface=ether1 comment="accept everything to non internet"
add chain=output action=accept comment="accept everything"
#Loopback и так в форвард не попадут.
add chain=forward src-address=127.0.0.0/8 action=drop
add chain=forward dst-address=127.0.0.0/8 action=drop
# multicast не будет форвардится без IGMP proxy или PIM
add chain=forward dst-address=224.0.0.0/3 action=drop
add chain=forward src-address=0.0.0.0/8 action=drop
add chain=forward dst-address=0.0.0.0/8 action=dropadd chain=forward src-address=224.0.0.0/3 action=drop
М
ЮУ
AK