|
|
[root@vpnserver firewalld]# firewall-cmd --reload 3 K" B- I& L8 h% O. m: M# V5 ~
Error: COMMAND_FAILED: Direct: '/usr/sbin/iptables-restore -w -n' failed: iptables-restore v1.4.21: unknown option "-O"% G# {6 ?$ w. _7 f' o
Error occurred at line: 2
{' k2 H2 f4 nTry `iptables-restore -h' or 'iptables-restore --help' for more information.
/ |) ~5 c! q) Z. D
7 _- U7 W; ?6 F# U. e7 \0 |上面报错
/ Q6 j: x, y3 F4 Z* v5 S& D解决办法:
: X4 O) q+ ]- [- Y0 w! q e4 S4 Q, H! _/ Z4 J( f/ D0 l
到/etc/firewalld目录下:; J$ E K' w5 j1 k2 Z
" i& m4 D: u6 m5 E; v) I
[root@vpnserver firewalld]# vim direct.xml
. V$ X* B3 [8 z9 h" V2 `注释掉前两行即可:
( @2 D5 z! ?# J5 E+ `6 L/ n" w* J& l" B; v7 ~
<?xml version="1.0" encoding="utf-8"?>
0 T9 I; q' J, x9 S& R4 h<direct>
6 I' w* Y4 P6 D: g$ E0 D/ [ <passthrough ipv="ipv4">-t nat -A POSTROUTING -s 10.10.10.0/24 -O ens33 -j MASQUERADE</passthrough>( d$ V0 [) `$ a# D
<passthrough ipv="ipv4">-t nat -A POSTROUTING -s 10.10.10.0/24 -0 ens33 -j MASQUERADE</passthrough>
8 \' }- k) P5 C P O- z <passthrough ipv="ipv4">-t nat -A POSTROUTING -s 10.10.10.0/24 -o ens33 -j MASQUERADE</passthrough>
; @' h/ X* G5 n6 z% Q& A7 f</direct>
9 c6 F* M0 k) c1 @) u: r1 y4 c8 P4 \# y* w' \; n
改后的文件内容:
" u, s, c5 m w9 ~ Z+ x5 P5 d" Y3 x/ c% u. H4 n. J% l
<?xml version="1.0" encoding="utf-8"?>& m- Q, T9 p0 }+ n8 f8 C F( ~
<direct>, d6 K* G! P2 d2 f; l% V! o! l
<!--<passthrough ipv="ipv4">-t nat -A POSTROUTING -s 10.10.10.0/24 -O ens33 -j MASQUERADE</passthrough> -->/ S6 p# E& B1 z6 K6 B
<!--<passthrough ipv="ipv4">-t nat -A POSTROUTING -s 10.10.10.0/24 -0 ens33 -j MASQUERADE</passthrough> -->8 ], I) s2 K0 j$ G0 e
<passthrough ipv="ipv4">-t nat -A POSTROUTING -s 10.10.10.0/24 -o ens33 -j MASQUERADE</passthrough># S1 c4 Q3 }+ R& o- r! t( g
</direct>
* l, Z- i6 R2 w5 Q( G4 u' M7 d$ G( X3 h0 f
# \4 G; K# ?; z8 b# N
]2 B% E" t" Y$ I+ i% {& h[root@vpnserver firewalld]# firewall-cmd --reload # D8 z$ |# B9 ]% u: Y; |# v+ ?
success
6 a( `% t9 }* R3 `' }1 b不再报错。
& ^- {6 Y( O! F0 [0 b. e$ l: t% P) \' t* c9 ^* I |
, y+ K4 {1 o7 R, E
问题解决。/ l$ C5 m U/ f# T( w0 a' d
|
|