{"provider_name":"Hatena Blog","width":"100%","author_url":"https://blog.hatena.ne.jp/hogem/","author_name":"hogem","provider_url":"https://hatena.blog","html":"<iframe src=\"https://hatenablog-parts.com/embed?url=https%3A%2F%2Fhogem.hatenablog.com%2Fentry%2F20111204%2F1322989127\" title=\"bridge\u63a5\u7d9a\u3057\u3066\u3044\u308b\u4eee\u60f3\u30de\u30b7\u30f3\u306enetwork\u3092\u30db\u30b9\u30c8OS\u306eiptables\u3067\u5236\u5fa1 - \u3046\u307e\u3044\u307c\u3046\u3076\u308d\u3050\" class=\"embed-card embed-blogcard\" scrolling=\"no\" frameborder=\"0\" style=\"display: block; width: 100%; height: 190px; max-width: 500px; margin: 10px 0px;\"></iframe>","description":"man iptables \u3042\u3093\u307e\u3057\u3084\u308b\u3053\u3068\u306a\u3044\u3060\u308d\u3046\u3051\u3069\u3001\u51fa\u6765\u305f\u306e\u3067\u30e1\u30e2\u3002\u8a2d\u5b9a\u306f\u30db\u30b9\u30c8OS\u3067\u3002eth0\u3092br0\u3067bridge\u3057\u3066\u3044\u308b\u5834\u5408\u306e\u4f8b\u3002\u307e\u305aproc\u306e\u5024\u3092\u5909\u66f4 # echo 1 > /proc/sys/net/bridge/bridge-nf-call-iptables # echo 1 > /proc/sys/net/bridge/bridge-nf-call-arptables\u6b21\u306biptables \u306ephysdev \u30e2\u30b8\u30e5\u30fc\u30eb\u3092\u4f7f\u3046\u3002 ## \u4eee\u60f3\u30db\u30b9\u30c8 192.168.0.10 \u3078\u306e ssh\u3092DROP # iptables -A FORWARD -m physdev --physde\u2026","url":"https://hogem.hatenablog.com/entry/20111204/1322989127","title":"bridge\u63a5\u7d9a\u3057\u3066\u3044\u308b\u4eee\u60f3\u30de\u30b7\u30f3\u306enetwork\u3092\u30db\u30b9\u30c8OS\u306eiptables\u3067\u5236\u5fa1","height":"190","published":"2011-12-04 17:58:47","type":"rich","blog_title":"\u3046\u307e\u3044\u307c\u3046\u3076\u308d\u3050","categories":["linux","network"],"blog_url":"https://hogem.hatenablog.com/","version":"1.0","image_url":null}