Прошу простить, что с меня нужно все выцеживать.
ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
link/ether f8:1a:67:04:5c:7c brd ff:ff:ff:ff:ff:ff
inet 192.168.0.1/24 brd 192.168.0.255 scope global eth0
inet6 fe80::fa1a:67ff:fe04:5c7c/64 scope link
valid_lft forever preferred_lft forever
3: eth1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
link/ether f8:1a:67:00:83:74 brd ff:ff:ff:ff:ff:ff
inet 94.247.62.201/24 brd 94.247.62.255 scope global eth1
inet6 fe80::fa1a:67ff:fe00:8374/64 scope link
valid_lft forever preferred_lft forever
7: ppp0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1456 qdisc pfifo_fast state UNKNOWN qlen 3
link/ppp
inet 185.33.236.38 peer 94.247.56.226/32 scope global ppp0
ip r
default dev ppp0 scope link
10.1.1.248 via 94.247.62.1 dev eth1 src 94.247.62.201
10.1.1.250 via 94.247.62.1 dev eth1 src 94.247.62.201
94.247.56.226 dev ppp0 proto kernel scope link src 185.33.236.38
94.247.62.0/24 dev eth1 proto kernel scope link src 94.247.62.201
192.168.0.0/24 dev eth0 proto kernel scope link src 192.168.0.1
iptables-save
# Generated by iptables-save v1.4.12 on Wed Dec 18 10:14:43 2013
*filter
:INPUT ACCEPT [2008747:2262091698]
:FORWARD ACCEPT [2492193:1936341439]
:OUTPUT ACCEPT [1541342:289196719]
COMMIT
# Completed on Wed Dec 18 10:14:43 2013
# Generated by iptables-save v1.4.12 on Wed Dec 18 10:14:43 2013
*mangle
:PREROUTING ACCEPT [4515792:4199571336]
:INPUT ACCEPT [2008477:2262070292]
:FORWARD ACCEPT [2492177:1936339873]
:OUTPUT ACCEPT [1541064:289174437]
:POSTROUTING ACCEPT [4033241:2225514310]
COMMIT
# Completed on Wed Dec 18 10:14:43 2013
# Generated by iptables-save v1.4.12 on Wed Dec 18 10:14:43 2013
*nat
:PREROUTING ACCEPT [85694:6365582]
:INPUT ACCEPT [53257:3724613]
:OUTPUT ACCEPT [14506:884696]
:POSTROUTING ACCEPT [14506:884696]
:NAT_POSTROUTING_CHAIN - [0:0]
:NAT_PREROUTING_CHAIN - [0:0]
:POST_NAT_POSTROUTING_CHAIN - [0:0]
:POST_NAT_PREROUTING_CHAIN - [0:0]
-A PREROUTING -j NAT_PREROUTING_CHAIN
-A PREROUTING -j POST_NAT_PREROUTING_CHAIN
-A PREROUTING ! -d 192.168.0.0/24 -i eth0 -p tcp -m multiport --dports 80,8080 -j DNAT --to-destination 192.168.0.1:3128
-A PREROUTING -i eth1 -p tcp -m multiport --dports 80,8080 -j REDIRECT --to-ports 3128
-A POSTROUTING -o eth1 -p tcp -m tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
-A POSTROUTING -o ppp0 -p tcp -m tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
-A POSTROUTING -j NAT_POSTROUTING_CHAIN
-A POSTROUTING -s 192.168.0.0/24 ! -d 192.168.0.0/24 -o eth1 -j MASQUERADE
-A POSTROUTING -s 192.168.0.0/24 ! -d 192.168.0.0/24 -o ppp0 -j MASQUERADE
-A POSTROUTING -j POST_NAT_POSTROUTING_CHAIN
COMMIT
# Completed on Wed Dec 18 10:14:43 2013
Пользователь решил продолжить мысль 18 Декабря 2013, 04:26:25:
в ppp0 я так поняла уже нет необходимости, т.к. провайдер дает айпи прямо в интернет, т.е. впн соединение уже не нужно. Его отключила все остальное без изменения. Подскажите, что мне делать с моими вопросами?