[root@SMB ~]# iptables-save
# Generated by iptables-save v1.2.11 on Thu Apr 24 16:52:46 2008
*nat
REROUTING ACCEPT [1545:156262]

OSTROUTING ACCEPT [26:1960]

:OUTPUT ACCEPT [1:44]
-A POSTROUTING -s 192.168.1.0/255.255.255.0 -o eth0 -j SNAT --to-source 121.33.212.6
COMMIT
# Completed on Thu Apr 24 16:52:46 2008
# Generated by iptables-save v1.2.11 on Thu Apr 24 16:52:46 2008
*filter
:INPUT ACCEPT [4134:559141]
:FORWARD DROP [13:2525]
:OUTPUT ACCEPT [2667:387621]
:RH-Firewall-1-INPUT - [0:0]
-A FORWARD -m ipp2p --kazaa --edk --bit -j DROP
-A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
-A FORWARD -s 192.168.1.3 -m mac --mac-source 00:15:F2:8B:BC:3D -j ACCEPT
-A FORWARD -s 192.168.1.5 -m mac --mac-source 00:16:ECC:60:EE -j ACCEPT

-A FORWARD -s 192.168.1.6 -m mac --mac-source 00:16:EC:19:41:16 -j ACCEPT
。
。
。
。
-A FORWARD -s 192.168.1.128 -m mac --mac-source 00:16:EC:19:41:16 -j ACCEP
-A FORWARD -m ipp2p --kazaa --edk --bit -j DROP
-A FORWARD -p tcp -m ipp2p --ares -j DROP
-A FORWARD -p udp -m ipp2p --kazaa -j DROP
-A FORWARD -s 192.168.1.0/255.255.255.0 -m limit --limit 20/sec -j ACCEPT
-A FORWARD -s 192.168.1.0/255.255.255.0 -j DROP
大虾帮忙看下那里有问题,麻烦你帮忙纠正以下。谢谢
[ 本帖最后由 昨夜长风 于 2008-4-24 16:58 编辑 ]