我在mangle和nat表PREROUTING链中有以下规则
iptables -t mangle -nvL
Chain PREROUTING (policy ACCEPT 1561K packets, 1894M bytes)
pkts bytes target prot opt in out source destination
116K 38M MARK 47 -- * * 10.2.10.0/24 0.0.0.0/0 MARK set 0x4
116K 38M 47 -- * * 10.2.10.0/24 0.0.0.0/0
iptables -t nat -nvL
Chain PREROUTING (policy ACCEPT 6 packets, 328 bytes)
pkts bytes target prot opt in out source destination
0 0 DNAT 47 -- * * 10.2.10.0/24 0.0.0.0/0 to:123.185.151.227
0 0 DNAT all -- * * 0.0.0.0/0 0.0.0.0/0 mark match 0x4 to:123.185.151.227
0 0 DNAT all -- * * 10.2.10.0/24 0.0.0.0/0 to:123.185.151.227
0 0 all -- * * 10.2.10.0/24 0.0.0.0/0
我想将传入的流量从10.2.10.0路由到123.185.151.227 . 我已将/ proc / sys / net / ipv4 / conf / default / rp_filter设置为0.但我仍然看不到从MANGLE到NAT PREROUTING的数据包 .
谁能告诉我,我在这里失踪了什么?
谢谢