diff options
author | Jack Morgan <jack.morgan@intel.com> | 2017-09-19 23:27:53 +0000 |
---|---|---|
committer | Gerrit Code Review <gerrit@opnfv.org> | 2017-09-19 23:27:53 +0000 |
commit | 61b3c90f44c1c881a0dcd8cff54ff35c9682bdfa (patch) | |
tree | 041a90669850a1e9d9be2be74f7e459b875d6474 /tools/laas-fog/hostScripts/ipnat.sh | |
parent | f969e48b7c72d0b68c58c259f23b2820fd5fb6bb (diff) | |
parent | 03b274f3a653a03bc3314d7fe385f7966c5672b2 (diff) |
Merge "Bash scripts for remote host deployment"
Diffstat (limited to 'tools/laas-fog/hostScripts/ipnat.sh')
-rwxr-xr-x | tools/laas-fog/hostScripts/ipnat.sh | 34 |
1 files changed, 34 insertions, 0 deletions
diff --git a/tools/laas-fog/hostScripts/ipnat.sh b/tools/laas-fog/hostScripts/ipnat.sh new file mode 100755 index 00000000..b8d97f0d --- /dev/null +++ b/tools/laas-fog/hostScripts/ipnat.sh @@ -0,0 +1,34 @@ +#!/bin/bash +############################################################################# +#Copyright 2017 Parker Berberian and others # +# # +#Licensed under the Apache License, Version 2.0 (the "License"); # +#you may not use this file except in compliance with the License. # +#You may obtain a copy of the License at # +# # +# http://www.apache.org/licenses/LICENSE-2.0 # +# # +#Unless required by applicable law or agreed to in writing, software # +#distributed under the License is distributed on an "AS IS" BASIS, # +#WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # +#See the License for the specific language governing permissions and # +#limitations under the License. # +############################################################################# + +MYIP=$1 +DESTINATION=10.20.0.2 +MYBRIDGE=10.20.0.1 +DESTNETWORK=10.20.0.0/24 +PORTS=(8000 8443) + +for PORT in "${PORTS[@]}"; do + + iptables -I INPUT 2 -d "$MYIP" -p tcp --dport "$PORT" -j ACCEPT + iptables -t nat -I INPUT 1 -d "$MYIP" -p tcp --dport "$PORT" -j ACCEPT + iptables -I FORWARD -p tcp --dport "$PORT" -j ACCEPT + + iptables -t nat -I PREROUTING -p tcp -d "$MYIP" --dport "$PORT" -j DNAT --to-destination "$DESTINATION:$PORT" + iptables -t nat -I POSTROUTING -p tcp -s "$DESTINATION" ! -d "$DESTNETWORK" -j SNAT --to-source "$MYIP" + + iptables -t nat -I POSTROUTING 2 -d "$DESTINATION" -j SNAT --to-source "$MYBRIDGE" +done |