你的防火墙规则没有阻止任何东西,但它们不清楚,可以更好。建议修改这一行添加action=drop chain=forward comment=\ "defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \ connection-state=new in-interface-list=WAN TO: add chain=forwa…
在mi雷竞技网站crotik中,你只需要一个允许端口转发的规则,它是你已经拥有的默认规则!!add action=drop chain=forward comment=\ "defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \ connection-state=new in-interface-list=WAN基本…
有几件事可以帮助大多数端口转发场景工作得很好(1)修改转发链规则:add action=drop chain=forward comment="defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \ connection-state=new in-interface-list=WAN添加action=accept chain=forward…
不需要隐藏私有IP地址,包括范围和在你的情况下一个私有WANIP,它不是公共!!!!(1)建议您稍微改变您的转发链规则From: add action=drop chain=forward comment=\ "defconf: drop all From WAN not DSTNATed" connection-nat-state=!Dstnat \ conn…