Selanjutnya perhatikan hanya aturan Nomor 0, 7, 35 dan 36. Saat proxy tidak berkerja atau bermasalah atau ingin melakukan by pass, aturan #0 dan #36 dibuat disable, sementara aturan #7 dan #35 dibuat enable. Saat proxy sudah pulih kembali, kondisinya dibalik. Aturan #0 dan #36 menjadi enable, sementara aturan #7 dan #35 menjadi disable. Aturan #0 dan #7 untuk wired dan aturan #35 dan #36 untuk wireless.
Aturan #0 (disable) :
General
Chain : dstnat
Src. Address : 192.168.0.0/19
Dst. Address : !202.46.3.66
Protocol : 6 (tcp)
Dst. Port : 80
Action
Action : dst-nat
To Address : 202.46.3.66
To Ports : 8080
Aturan #7 (enable) :
General
Chain : srcnat
Src. Address : 192.168.0.0/19
Protocol : 6 (tcp)
Out. Interface : ether2-intranet
Action
Action : masquerade
Aturan #35 (enable) :
General
Chain : srcnat
Src. Address : 172.16.1.0/24
Out. Interface : ether1-internet
Action
Action : masquerade
Aturan #36 (disable) :
General
Chain : dstnat
Src. Address : 172.16.1.0/24
Protocol : 6 (tcp)
Dst. Port : 80
Action
Action : dst-nat
To Address : 202.46.3.66
To Ports : 8080
Aturan #0 (disable) :
General
Chain : dstnat
Src. Address : 192.168.0.0/19
Dst. Address : !202.46.3.66
Protocol : 6 (tcp)
Dst. Port : 80
Action
Action : dst-nat
To Address : 202.46.3.66
To Ports : 8080
Aturan #7 (enable) :
General
Chain : srcnat
Src. Address : 192.168.0.0/19
Protocol : 6 (tcp)
Out. Interface : ether2-intranet
Action
Action : masquerade
Aturan #35 (enable) :
General
Chain : srcnat
Src. Address : 172.16.1.0/24
Out. Interface : ether1-internet
Action
Action : masquerade
Aturan #36 (disable) :
General
Chain : dstnat
Src. Address : 172.16.1.0/24
Protocol : 6 (tcp)
Dst. Port : 80
Action
Action : dst-nat
To Address : 202.46.3.66
To Ports : 8080
No comments:
Post a Comment