LINUX.ORG.RU

История изменений

Исправление tip78, (текущая версия) :

traceroute -I myip.ru
traceroute to myip.ru (178.62.9.171), 64 hops max
  1   10.9.8.1  54,923ms  48,670ms  57,370ms 
  2   5.61.34.10  50,471ms  53,953ms  56,528ms 
  3   5.61.32.2  49,692ms  50,772ms  55,483ms 
  4   212.95.37.34  58,103ms  60,485ms  58,136ms 
  5   31.31.34.216  49,144ms  50,556ms  52,591ms 
  6   31.31.34.52  74,931ms  64,099ms  59,743ms 
  7   31.31.34.21  76,025ms  73,472ms  62,987ms 
  8   195.66.231.145  63,340ms  82,223ms  63,955ms 
  9   143.244.224.146  78,820ms  66,176ms  64,868ms 
 10   *  *  * 
 11   *  *  * 
 12   *  *  * 
 13   *  *  * 
 14   *  *  * 
 15   178.62.9.171  69,200ms  64,602ms  62,747ms 



вроде в тоннель заходит...

но myip.ru открывается (
сервер то обычный VPS
сложно там намудрить с маршрутизацией

$ iptables -t nat --list-rules
-P PREROUTING ACCEPT
-P INPUT ACCEPT
-P OUTPUT ACCEPT
-P POSTROUTING ACCEPT
-A POSTROUTING -s 10.9.8.0/24 -o eth0 -j MASQUERADE


$ iptables -vnL
Chain INPUT (policy ACCEPT 492K packets, 145M bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain FORWARD (policy ACCEPT 282K packets, 226M bytes)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       0    --  *      *       0.0.0.0/0            178.62.9.171        

Chain OUTPUT (policy ACCEPT 676K packets, 365M bytes)
 pkts bytes target     prot opt in     out     source               destination


3: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
    link/none 
    inet 10.9.8.1/24 scope global tun0
       valid_lft forever preferred_lft forever
    inet6 fe80::68f6:8512:d1c3:9932/64 scope link stable-privacy 
       valid_lft forever preferred_lft forever

Исходная версия tip78, :

traceroute -I myip.ru
traceroute to myip.ru (178.62.9.171), 64 hops max
  1   10.9.8.1  54,923ms  48,670ms  57,370ms 
  2   5.61.34.10  50,471ms  53,953ms  56,528ms 
  3   5.61.32.2  49,692ms  50,772ms  55,483ms 
  4   212.95.37.34  58,103ms  60,485ms  58,136ms 
  5   31.31.34.216  49,144ms  50,556ms  52,591ms 
  6   31.31.34.52  74,931ms  64,099ms  59,743ms 
  7   31.31.34.21  76,025ms  73,472ms  62,987ms 
  8   195.66.231.145  63,340ms  82,223ms  63,955ms 
  9   143.244.224.146  78,820ms  66,176ms  64,868ms 
 10   *  *  * 
 11   *  *  * 
 12   *  *  * 
 13   *  *  * 
 14   *  *  * 
 15   178.62.9.171  69,200ms  64,602ms  62,747ms 



вроде в тоннель заходит...

но myip.ru открывается (
сервер то обычный VPS
сложно там намудрить с маршрутизацией

$ iptables -t nat --list-rules
-P PREROUTING ACCEPT
-P INPUT ACCEPT
-P OUTPUT ACCEPT
-P POSTROUTING ACCEPT
-A POSTROUTING -s 10.9.8.0/24 -o eth0 -j MASQUERADE


$ iptables -vnL
Chain INPUT (policy ACCEPT 492K packets, 145M bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain FORWARD (policy ACCEPT 282K packets, 226M bytes)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       0    --  *      *       0.0.0.0/0            178.62.9.171        

Chain OUTPUT (policy ACCEPT 676K packets, 365M bytes)
 pkts bytes target     prot opt in     out     source               destination