if ([ "$proto" == "tcpudp" ] || [ "$proto" == "tcp" ]); then
iptables -t nat -A luci_prerouting -i "$iface" -p tcp --dport "$dport" -j DNAT --to "$to"
- iptables -A luci_forward -i "$iface" -p tcp -d "$ip" "$ports" -j ACCEPT
+ iptables -t nat -A luci_postrouting -p tcp -d "$ip" $ports -j MASQUERADE
+ iptables -A luci_forward -i "$iface" -p tcp -d "$ip" $ports -j ACCEPT
fi
if ([ "$proto" == "tcpudp" ] || [ "$proto" == "udp" ]); then
iptables -t nat -A luci_prerouting -i "$iface" -p udp --dport "$dport" -j DNAT --to "$to"
- iptables -A luci_forward -i "$iface" -p udp -d "$ip" "$ports" -j ACCEPT
+ iptables -t nat -A luci_postrouting -p udp -d "$ip" $ports -j MASQUERADE
+ iptables -A luci_forward -i "$iface" -p udp -d "$ip" $ports -j ACCEPT
fi
}
config_get jump "$cfg" jump
[ -n "$jump" ] && cmd="$cmd -j $jump"
- config_get state "$cfg" state
- [ -n "$state" ] && cmd="$cmd -m state --state $state"
-
config_get command "$cfg" command
[ -n "$command" ] && cmd="$cmd $command"
option network "/etc/init.d/network restart"
option wireless "/etc/init.d/network restart"
option olsrd "/etc/init.d/olsrd restart"
- option dhcp "/etc/init.d/dhcp restart"
\ No newline at end of file
+ option dhcp "/etc/init.d/dhcp restart"
+ option luci_fw "/etc/init.d/luci_fw restart"
\ No newline at end of file
tosrc.optional = true
tosrc:depends("jump", "DNAT")
-
-state = s:option(MultiValue, "state", "Status")
-state.optional = true
-state.delimiter = ","
-state:value("NEW", "neu")
-state:value("ESTABLISHED", "etabliert")
-state:value("RELATED", "zugehörig")
-state:value("INVALID", "ungültig")
-
jump = s:option(ListValue, "jump", "Aktion")
jump.rmempty = true
jump:value("", "")