вот ifconfig
eth0 Link encap:Ethernet HWaddr 00:04:76:92:3d:dd
inet addr:192.168.0.1 Bcast:192.168.0.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:35165 errors:0 dropped:0 overruns:0 frame:0
TX packets:13538 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:5442503 (5.4 MB) TX bytes:5019191 (5.0 MB)
Interrupt:17 Base address:0x8c00
а вот iptables, возможно криво сделанный!!!
# Generated by iptables-save v1.4.4 on Wed Mar 16 19:27:16 2011
*nat
:PREROUTING ACCEPT [6379:1139485]
:OUTPUT ACCEPT [2411:148498]
:POSTROUTING ACCEPT [2411:148498]
[272:16447] -A PREROUTING -i eth0 -p tcp -m multiport --dports 80 -j REDIRECT --to-ports 3128
[0:0] -A PREROUTING -p tcp -m tcp --dport 1012 -j DNAT --to-destination 192.168.0.4:1012
[0:0] -A PREROUTING -p tcp -m tcp --dport 1013 -j DNAT --to-destination 192.168.0.3:1013
[0:0] -A PREROUTING -p tcp -m tcp --dport 1011 -j DNAT --to-destination 192.168.0.2:1011
[0:0] -A PREROUTING -p tcp -m tcp --dport 1111 -j DNAT --to-destination 192.168.0.66:1111
[0:0] -A POSTROUTING -s 192.168.0.0/16 -o ppp0 -j MASQUERADE
[0:0] -A POSTROUTING -s 192.168.0.0/16 -o eth1 -j MASQUERADE
[0:0] -A POSTROUTING -s 192.168.0.104/32 -o ppp0 -j MASQUERADE
COMMIT
# Completed on Wed Mar 16 19:27:16 2011
# Generated by iptables-save v1.4.4 on Wed Mar 16 19:27:16 2011
*mangle
:PREROUTING ACCEPT [44573:11649533]
:INPUT ACCEPT [33781:10119509]
:FORWARD ACCEPT [59:2392]
:OUTPUT ACCEPT [29483:7778162]
:POSTROUTING ACCEPT [29557:7784476]
[0:0] -A FORWARD -o ppp0 -p tcp -m tcp --tcp-flags SYN,RST SYN -m tcpmss --mss 1400:65495 -j TCPMSS --clamp-mss-to-pmtu
COMMIT
# Completed on Wed Mar 16 19:27:16 2011
# Generated by iptables-save v1.4.4 on Wed Mar 16 19:27:16 2011
*filter
:INPUT DROP [70:3665]
:FORWARD DROP [4:192]
:OUTPUT ACCEPT [14853:2809448]
[1551:166208] -A INPUT -i lo -j ACCEPT
[3900:440689] -A INPUT -i eth1 -j ACCEPT
[14491:2248231] -A INPUT -i eth0 -j ACCEPT
[5:611] -A INPUT -m state --state INVALID -j DROP
[0:0] -A INPUT -i ppp0 -p udp -m udp --dport 87 -m state --state NEW -j ACCEPT
[10:564] -A INPUT -p tcp -m tcp --dport 22 -m state --state NEW -j ACCEPT
[1:60] -A INPUT -p tcp -m multiport --dports 5900,5901,5902,5903,5904,5905,5906 -m state --state NEW -j ACCEPT
[1:48] -A INPUT -p tcp -m tcp --dport 21 -m state --state NEW -j ACCEPT
[13752:7259433] -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
[55:2200] -A FORWARD -m state --state INVALID -j DROP
[0:0] -A FORWARD -s 192.168.0.104/32 -p udp -m state --state NEW -j ACCEPT
[0:0] -A FORWARD -d 192.168.0.4/32 -p tcp -m tcp --dport 1012 -j ACCEPT
[0:0] -A FORWARD -d 192.168.0.3/32 -p tcp -m tcp --dport 1013 -j ACCEPT
[0:0] -A FORWARD -d 192.168.0.2/32 -p tcp -m tcp --dport 1011 -j ACCEPT
[0:0] -A FORWARD -d 192.168.0.66/32 -p tcp -m tcp --dport 1111 -j ACCEPT
[0:0] -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
[1551:166208] -A OUTPUT -o lo -j ACCEPT
[38:3197] -A OUTPUT -o eth1 -j ACCEPT
[13041:4799309] -A OUTPUT -o eth0 -j ACCEPT
[0:0] -A OUTPUT -o ppp0 -p udp -m udp --dport 87 -m state --state NEW -j ACCEPT
COMMIT