-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

saya coba bantu dgn contoh yg pernah saya pergunakan.
iptables dr RH9

router I + dns server + gateway segmen I + samba server
eth0 => 192.168.0.2/255.255.255.255   --> ke server internet Win2000
eth1 => 192.168.1.62/255.255.255.192 --> network segmen I   = 40 Pc
eth2 => 192.168.2.1/255.255.255.192 --> ke eth0 router ke 2

router II + gateway segmen II 
eth0 => 192.168.2.2/255.255.255.255 --> ke eth2 di router I
eth1 => 192.168.3.0/255.255.255.192 --> network segmen III  = 34 Pc
eth2 => 192.168.4.0/255.255.255.192 --> network segmen III  = 33 Pc

tambahkan di /etc/sysconfig/static-routes
any net 192.168.3.0 netmask 255.255.255.192 gw 192.168.2.2
any net 192.168.3.0 netmask 255.255.255.192 gw 192.168.2.2

/etc/init.d/iptables stop

ketik perintah dibawah pd shell.
keterangan : setelah -d terus kesamping, dan enter dilakukan setelah
ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.1.0/255.255.255.192 -d 
192.168.1.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.1.0/255.255.255.192 -d 
192.168.2.0/255.255.255.252 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.1.0/255.255.255.192 -d 
192.168.3.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.1.0/255.255.255.192 -d 
192.168.4.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.2.0/255.255.255.252 -d 
192.168.1.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.2.0/255.255.255.252 -d 
192.168.2.0/255.255.255.252 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.2.0/255.255.255.252 -d 
192.168.3.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.2.0/255.255.255.252 -d 
192.168.4.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.3.0/255.255.255.192 -d 
192.168.1.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.3.0/255.255.255.192 -d 
192.168.2.0/255.255.255.252 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.3.0/255.255.255.192 -d 
192.168.3.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.3.0/255.255.255.192 -d 
192.168.4.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.4.0/255.255.255.192 -d 
192.168.1.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.4.0/255.255.255.192 -d 
192.168.2.0/255.255.255.252 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.4.0/255.255.255.192 -d 
192.168.3.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -s 192.168.4.0/255.255.255.192 -d 
192.168.4.0/255.255.255.192 -J ACCEPT

iptables -t nat -A POSTROUTING -J SNAT --to 192.168.0.2

lalu /etc/init.d/iptables save agar tersimpan di /etc/sysconfig/iptables
lalu restart service /etc/init.d/iptables
setting clientnya
selamat mencoba


=======================================================
On Monday 06 October 2003 13:57, I.R. Harahap -- Medan wrote:
> ======================================================
> pakai IPTABLES saja.
> berapa segmen network yang akan terhubung ke router ?
> ======================================================
> ======================================================
>
> On Monday 06 October 2003 11:00, askari wrote:
> > Teman teman linuxer,
> > Ada yang tau cara membuat router di LINUX SERVER?. Gimana caranya atau
> > ada petunjuk online yang bisa saya ikuti ?
> > Thank's
> >
> > ASKARI
>
> ======================================================
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iD8DBQE/gSPIEGkdAMzBYFgRAvdYAKCh+SE5bvCaB881KTV3n8kDOCGaDwCfT8bn
rLkHhPC7LPxSrokO3HQ5O6g=
=I9VX
-----END PGP SIGNATURE-----



--
Berhenti langganan: [EMAIL PROTECTED]
Arsip dan info: http://linux.or.id/milis.php

Kirim email ke