[原]iptables的NAT策略

#*nat
#:PREROUTING ACCEPT [1187238:115715705]
#:POSTROUTING ACCEPT [37985:2504635]
#:OUTPUT ACCEPT [37985:2504635]
#
#-A PREROUTING –s  IP1   -d IP2/32 -p tcp -m tcp --dport xxx -j DNAT --to-destination IP2:port1
#-A POSTROUTING -o 网卡 -s IP1 -d IP2 -p tcp -m tcp –dport port1  -j SNAT --to-source IP2
#COMMIT
原文地址:https://www.cnblogs.com/lyongerr/p/5062884.html