natbox-spec-surge.rcS revision 1645
11196Shsul@eecs.umich.edu#!/bin/sh
21196Shsul@eecs.umich.eduEXTIF=192.168.0.7
31196Shsul@eecs.umich.eduINTIF=10.0.0.1
41196Shsul@eecs.umich.eduCLIENT=10.0.0.2
51196Shsul@eecs.umich.edu
61196Shsul@eecs.umich.eduecho "setting up network..."
71196Shsul@eecs.umich.eduifconfig lo 127.0.0.1
81196Shsul@eecs.umich.eduifconfig eth0 $EXTIF txqueuelen 1000
91196Shsul@eecs.umich.eduifconfig eth1 $INTIF txqueuelen 1000
101196Shsul@eecs.umich.edu
111196Shsul@eecs.umich.eduecho "0" > /proc/sys/net/ipv4/tcp_timestamps
121196Shsul@eecs.umich.eduecho "0" > /proc/sys/net/ipv4/tcp_sack
131362Shsul@eecs.umich.eduecho "1" > /proc/sys/net/ipv4/tcp_vegas_cong_avoid
141196Shsul@eecs.umich.eduecho "5000000 5000000 5000000" > /proc/sys/net/ipv4/tcp_rmem
151196Shsul@eecs.umich.eduecho "5000000 5000000 5000000" > /proc/sys/net/ipv4/tcp_wmem
161196Shsul@eecs.umich.eduecho "5000000 5000000 5000000" > /proc/sys/net/ipv4/tcp_mem
171196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/rmem_max
181196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/wmem_max
191196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/rmem_default
201196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/wmem_default
211196Shsul@eecs.umich.eduecho "262143" > /proc/sys/net/core/optmem_max
221196Shsul@eecs.umich.eduecho "100000" > /proc/sys/net/core/netdev_max_backlog
231196Shsul@eecs.umich.edu
241196Shsul@eecs.umich.eduecho "1" > /proc/sys/net/ipv4/ip_forward
251196Shsul@eecs.umich.edu
261645Srdreslin@umich.eduecho "262144" > /proc/sys/net/ipv4/ip_conntrack_max
271645Srdreslin@umich.edu
281196Shsul@eecs.umich.eduecho "waiting for netserver..."
291196Shsul@eecs.umich.edu/usr/bin/netcat -c -l -p 8000
301196Shsul@eecs.umich.edu
311196Shsul@eecs.umich.eduecho "setting up iptables..."
321196Shsul@eecs.umich.eduIPTABLES=/sbin/iptables
331196Shsul@eecs.umich.eduEXTIF=eth0
341196Shsul@eecs.umich.eduINTIF=eth1
351196Shsul@eecs.umich.edu
361196Shsul@eecs.umich.edu$IPTABLES -P INPUT ACCEPT
371196Shsul@eecs.umich.edu$IPTABLES -F INPUT
381196Shsul@eecs.umich.edu$IPTABLES -P OUTPUT ACCEPT
391196Shsul@eecs.umich.edu$IPTABLES -F OUTPUT
401196Shsul@eecs.umich.edu$IPTABLES -P FORWARD DROP
411196Shsul@eecs.umich.edu$IPTABLES -F FORWARD
421196Shsul@eecs.umich.edu$IPTABLES -t nat -F
431196Shsul@eecs.umich.edu
441196Shsul@eecs.umich.edu$IPTABLES -A FORWARD -i $EXTIF -o $INTIF -m state --state ESTABLISHED,RELATED -j ACCEPT
451196Shsul@eecs.umich.edu$IPTABLES -A FORWARD -i $INTIF -o $EXTIF -j ACCEPT
461196Shsul@eecs.umich.edu$IPTABLES -A FORWARD -j LOG
471196Shsul@eecs.umich.edu
481196Shsul@eecs.umich.edu$IPTABLES -t nat -A POSTROUTING -o $EXTIF -j MASQUERADE
491196Shsul@eecs.umich.edu
501196Shsul@eecs.umich.eduecho "informing client..."
511196Shsul@eecs.umich.eduecho "server ready" | /usr/bin/netcat -c $CLIENT 8000
521196Shsul@eecs.umich.edu
531196Shsul@eecs.umich.eduecho "starting bash..."
541196Shsul@eecs.umich.eduexec /bin/bash
55