iptables -P FORWARD DROP
iptables -A FORWARD -s 192.168.1.101 -j ACCEPT
iptables -A FORWARD -s 192.168.1.102 -j ACCEPT
iptables -A FORWARD -s 192.168.1.103 -j ACCEPT
iptables -A FORWARD -s 192.168.1.105 -j ACCEPT
iptables -A FORWARD -s 192.168.1.106 -j ACCEPT
iptables -A FORWARD -s 192.168.1.108 -j ACCEPT
iptables -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
只让 192.168.1.101/102/103/105/106/108上网,其它不给上
这样对不?