natbox-spec-surge.rcS revision 1196
11196Shsul@eecs.umich.edu#!/bin/sh 21196Shsul@eecs.umich.eduEXTIF=192.168.0.7 31196Shsul@eecs.umich.eduINTIF=10.0.0.1 41196Shsul@eecs.umich.eduCLIENT=10.0.0.2 51196Shsul@eecs.umich.edu 61196Shsul@eecs.umich.eduecho "setting up network..." 71196Shsul@eecs.umich.eduifconfig lo 127.0.0.1 81196Shsul@eecs.umich.eduifconfig eth0 $EXTIF txqueuelen 1000 91196Shsul@eecs.umich.eduifconfig eth1 $INTIF txqueuelen 1000 101196Shsul@eecs.umich.edu 111196Shsul@eecs.umich.eduecho "0" > /proc/sys/net/ipv4/tcp_timestamps 121196Shsul@eecs.umich.eduecho "0" > /proc/sys/net/ipv4/tcp_sack 131196Shsul@eecs.umich.eduecho "5000000 5000000 5000000" > /proc/sys/net/ipv4/tcp_rmem 141196Shsul@eecs.umich.eduecho "5000000 5000000 5000000" > /proc/sys/net/ipv4/tcp_wmem 151196Shsul@eecs.umich.eduecho "5000000 5000000 5000000" > /proc/sys/net/ipv4/tcp_mem 161196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/rmem_max 171196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/wmem_max 181196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/rmem_default 191196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/wmem_default 201196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/optmem_max 211196Shsul@eecs.umich.eduecho "100000" > /proc/sys/net/core/netdev_max_backlog 221196Shsul@eecs.umich.edu 231196Shsul@eecs.umich.eduecho "1" > /proc/sys/net/ipv4/ip_forward 241196Shsul@eecs.umich.edu 251196Shsul@eecs.umich.eduecho "waiting for netserver..." 261196Shsul@eecs.umich.edu/usr/bin/netcat -c -l -p 8000 271196Shsul@eecs.umich.edu 281196Shsul@eecs.umich.eduecho "setting up iptables..." 291196Shsul@eecs.umich.eduIPTABLES=/sbin/iptables 301196Shsul@eecs.umich.eduEXTIF=eth0 311196Shsul@eecs.umich.eduINTIF=eth1 321196Shsul@eecs.umich.edu 331196Shsul@eecs.umich.edu$IPTABLES -P INPUT ACCEPT 341196Shsul@eecs.umich.edu$IPTABLES -F INPUT 351196Shsul@eecs.umich.edu$IPTABLES -P OUTPUT ACCEPT 361196Shsul@eecs.umich.edu$IPTABLES -F OUTPUT 371196Shsul@eecs.umich.edu$IPTABLES -P FORWARD DROP 381196Shsul@eecs.umich.edu$IPTABLES -F FORWARD 391196Shsul@eecs.umich.edu$IPTABLES -t nat -F 401196Shsul@eecs.umich.edu 411196Shsul@eecs.umich.edu$IPTABLES -A FORWARD -i $EXTIF -o $INTIF -m state --state ESTABLISHED,RELATED -j ACCEPT 421196Shsul@eecs.umich.edu$IPTABLES -A FORWARD -i $INTIF -o $EXTIF -j ACCEPT 431196Shsul@eecs.umich.edu$IPTABLES -A FORWARD -j LOG 441196Shsul@eecs.umich.edu 451196Shsul@eecs.umich.edu$IPTABLES -t nat -A POSTROUTING -o $EXTIF -j MASQUERADE 461196Shsul@eecs.umich.edu 471196Shsul@eecs.umich.eduecho "informing client..." 481196Shsul@eecs.umich.eduecho "server ready" | /usr/bin/netcat -c $CLIENT 8000 491196Shsul@eecs.umich.edu 501196Shsul@eecs.umich.eduecho "starting bash..." 511196Shsul@eecs.umich.eduexec /bin/bash 52