Monday, September 23, 2013

Port Address Translation ++ configure by Linux IPTables.




Port Address Translation ++ configure by Linux IPTables.

Hardware: PC with double LAN card.
OS: Linux  Debian: 2.6.32-5-686


Interface:
eth0: Private IP block                                       //Configure eth0 with Private IP
eth1: Public IP                                                 // Configure eth1 with Public IP



#vi PATpp.sh                                                    //Firewall script

#!/bin/sh

echo "1" > /proc/sys/net/ipv4/ip_forward

/sbin/iptables --flush

/sbin/iptables -t nat -A POSTROUTING -o eth1 -j MASQUERADE --random

/sbin/iptables -A FORWARD -i eth1 -o eth0 -m state --state RELATED,ESTABLISHED -j ACCEPT

/sbin/iptables -A FORWARD -i eth0 -o eth1 -j ACCEPT


Save and exit
#chmod +x PATpp.sh                                                // Provide executable permission.


Run Firewall Scripts:
# sh PATpp.sh



It will work for PAT++ GW.

TCP Only (UDP Block) configure by Netgear router.




TCP Only (UDP Block) configure by Netgear router.

Device: NETGEAR Router: N150 Wireless Router model WNR1000v3

Login by admin user.


  •    Go to basic Settings:








  •    Go to LAN






  •    Go to Block Service




Now it will work for TCP Only (UDP-Block) GW.

Symmetric NAT configure by Linux IPTables.




Symmetric NAT configure by Linux IPTables.



Hardware: PC with double LAN card.
OS: Ubuntu 8.04

Interface:
eth0: Private IP block                                                      //Configure eth0 with Private IP
eth1: Public IP                                                                // Configure eth1 with Public IP



#vi symmetricNAT.sh                                                      //Firewall script

#!/bin/sh

echo "1" > /proc/sys/net/ipv4/ip_forward

/sbin/iptables --flush

/sbin/iptables -t nat -A POSTROUTING -o eth1 -j MASQUERADE --random

/sbin/iptables -A FORWARD -i eth1 -o eth0 -m state --state RELATED,ESTABLISHED -j ACCEPT

/sbin/iptables -A FORWARD -i eth0 -o eth1 -j ACCEPT


Save and exit

#chmod +x symmetricNAT.sh                                    // Provide executable permission.


Run Firewall Scripts:

# sh symmetricNAT.sh

It will work for Symmetric NAT GW.

UPnP configure by Netgear router.




UPnP (Universal Plug and Play) how to configure by Netgear router.

Device: NETGEAR Router: N150 Wireless Router model WNR1000v3

Login by admin user.


  •      Go to basic Settings:







  •      Go to LAN









  •     Go To UPnP




Now it will work for UPnP GW.

Full Cone NAT configure by Netgear router




FC (Full Cone) NAT, how to configure by Netgear Router:

FC NAT: An internal address (iAddr:iPort) is mapped to an external address (eAddr:ePort), any packets from iAddr:iPort will be sent through eAddr:ePort.


Device: NETGEAR Router: N150 Wireless Router model WNR1000v3

By Default NETGEAR router works for FC (Full Cone) NAT

Login by admin user:


  •      Go to basic Settings:






  •     Go to LAN




It will work for FC (Full Cone NAT) GW.