I have a ac68u with asusmerlin's 384.13.
router (192.168.1.1) ..... nas (192.168.1.241).......Docker(172.16.0.1).......Machine(172.16.0.11)
..... laptop (192.168.1.22)
I can talk all the way up and down the network and dnsmaq works great too. I am having trouble getting iptables setup to forward incoming port 85 to Machine (172.168.0.11) and to make sure that Machine is only able to communicate to the internet via tun11.
on the router:
I haven't figured out with the <everything> is yet...
But it is not working. I need some fresh eyes. Please help
router (192.168.1.1) ..... nas (192.168.1.241).......Docker(172.16.0.1).......Machine(172.16.0.11)
..... laptop (192.168.1.22)
I can talk all the way up and down the network and dnsmaq works great too. I am having trouble getting iptables setup to forward incoming port 85 to Machine (172.168.0.11) and to make sure that Machine is only able to communicate to the internet via tun11.
on the router:
Code:
iptables -I FORWARD -i tun11 -p udp -d 172.16.0.11 --dport 85 -j ACCEPT
iptables -I FORWARD -i tun11 -p tcp -d 172.16.0.11 --dport 85 -j ACCEPT
iptables -t nat -I PREROUTING -i tun11 -p udp --dport 85 -j DNAT --to-destination 172.16.0.11
iptables -t nat -I PREROUTING -i tun11 -p tcp --dport 85 -j DNAT --to-destination 172.16.0.11
iptables -t nat -A POSTROUTING -s 172.16.0.11 -o tun11 -j ACCEPT
iptables -t nat -A POSTROUTING -s 172.16.0.11 -o <everythng> -j DROP
I haven't figured out with the <everything> is yet...
But it is not working. I need some fresh eyes. Please help
Last edited: