From 1892cbf2180cf8e0a352ebb6137793ec96bf3954 Mon Sep 17 00:00:00 2001 From: Tom Eastep Date: Sat, 7 Jun 2014 17:02:04 -0700 Subject: [PATCH] Remove dest zone name in DNAT- rules. Signed-off-by: Tom Eastep --- docs/ManualChains.xml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/docs/ManualChains.xml b/docs/ManualChains.xml index c5e26a303..087322e5f 100644 --- a/docs/ManualChains.xml +++ b/docs/ManualChains.xml @@ -201,11 +201,11 @@ SSHKnock net $FW tcp 22,1599,1600,1601 becomes:PERL Knock 'net', '$FW', {target => 22, knocker => 1600, trap => [1599, 1601]};Similarly#ACTION SOURCE DEST PROTO DEST PORT(S) SOURCE ORIGINAL # PORT(S) DEST -DNAT- net loc:192.168.1.5 tcp 22 - 206.124.146.178 +DNAT- net 192.168.1.5 tcp 22 - 206.124.146.178 SSHKnock net $FW tcp 1599,1600,1601 SSHKnock net loc:192.168.1.5 tcp 22 - 206.124.146.178becomes:#ACTION SOURCE DEST PROTO DEST PORT(S) SOURCE ORIGINAL # PORT(S) DEST -DNAT- net loc:192.168.1.5 tcp 22 - 206.124.146.178 +DNAT- net 192.168.1.5 tcp 22 - 206.124.146.178 PERL Knock 'net', '$FW', {name => 'SSH', knocker => 1600, trap => [1599, 1601]}; PERL Knock 'net', 'loc:192.168.1.5', {name => 'SSH', target => 22, original_dest => '206.124.136.178'};