czerwo pisze:
sprawdz czy masz plik iptables.rules w /etc/iptables
# Generated by iptables-save v1.3.1 on Sun Jan 8 21:14:17 2006
*mangle

REROUTING ACCEPT [2783369:1529243009]
:INPUT ACCEPT [21251:2439750]
:FORWARD ACCEPT [2762106:1526802287]
:OUTPUT ACCEPT [15773:3999541]

OSTROUTING ACCEPT [2777879:1530801828]
:niceshaper_dl - [0:0]
:niceshaper_ul - [0:0]
-A PREROUTING -s 10.0.0.0/255.255.255.0 -i eth1 -j niceshaper_ul
-A INPUT -d 80.244.144.126 -i eth0 -j niceshaper_dl
-A OUTPUT -s 80.244.144.126 -o eth0 -j niceshaper_ul
-A POSTROUTING -d 10.0.0.0/255.255.255.0 -o eth1 -j niceshaper_dl
-A niceshaper_dl -s 80.244.144.126 -d 10.0.0.0/255.255.255.0 -o eth1 -j RETURN
-A niceshaper_dl
-A niceshaper_dl -d 80.244.144.126 -i eth0 -j RETURN
-A niceshaper_dl -d 10.0.0.2 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.3 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.4 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.5 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.6 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.7 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.8 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.9 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.10 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.11 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.12 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.13 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.14 -o eth1 -j RETURN
-A niceshaper_dl -d 10.0.0.15 -o eth1 -j RETURN
-A niceshaper_ul -s 10.0.0.0/255.255.255.0 -d 80.244.144.126 -i eth1 -j RETURN
-A niceshaper_ul
-A niceshaper_ul -s 80.244.144.126 -o eth0 -j MARK --set-mark 0x800
-A niceshaper_ul -s 10.0.0.2 -i eth1 -j MARK --set-mark 0x801
-A niceshaper_ul -s 10.0.0.3 -i eth1 -j MARK --set-mark 0x802
-A niceshaper_ul -s 10.0.0.4 -i eth1 -j MARK --set-mark 0x803
-A niceshaper_ul -s 10.0.0.5 -i eth1 -j MARK --set-mark 0x804
-A niceshaper_ul -s 10.0.0.6 -i eth1 -j MARK --set-mark 0x805
-A niceshaper_ul -s 10.0.0.7 -i eth1 -j MARK --set-mark 0x806
-A niceshaper_ul -s 10.0.0.8 -i eth1 -j MARK --set-mark 0x807
-A niceshaper_ul -s 10.0.0.9 -i eth1 -j MARK --set-mark 0x808
-A niceshaper_ul -s 10.0.0.10 -i eth1 -j MARK --set-mark 0x809
-A niceshaper_ul -s 10.0.0.11 -i eth1 -j MARK --set-mark 0x80a
-A niceshaper_ul -s 10.0.0.12 -i eth1 -j MARK --set-mark 0x80b
-A niceshaper_ul -s 10.0.0.13 -i eth1 -j MARK --set-mark 0x80c
-A niceshaper_ul -s 10.0.0.14 -i eth1 -j MARK --set-mark 0x80d
-A niceshaper_ul -s 10.0.0.15 -i eth1 -j MARK --set-mark 0x80e
COMMIT
# Completed on Sun Jan 8 21:14:17 2006
# Generated by iptables-save v1.3.1 on Sun Jan 8 21:14:17 2006
*filter
:INPUT DROP [3770:666903]
:FORWARD DROP [0:0]
:OUTPUT ACCEPT [15773:3999541]
-A INPUT -i lo -j ACCEPT
-A INPUT -p tcp -m multiport --dports 135,445 -j DROP
-A INPUT -p tcp -m tcp --dport 113 -j REJECT --reject-with icmp-port-unreachable
-A INPUT -p tcp -m tcp --dport 1080 -j REJECT --reject-with icmp-port-unreachable
-A INPUT -i eth0 -p tcp -m tcp --dport 80 -j ACCEPT
-A INPUT -i eth0 -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -p icmp -m icmp --icmp-type 8 -m limit --limit 1/sec -j ACCEPT
-A INPUT -i ! eth0 -j ACCEPT
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A FORWARD -d 10.0.0.8 -p udp -m udp --dport 65520 -j ACCEPT
-A FORWARD -d 10.0.0.8 -p tcp -m tcp --dport 65520 -j ACCEPT
-A FORWARD -d 10.0.0.20 -p udp -m udp --dport 1212 -j ACCEPT
-A FORWARD -d 10.0.0.20 -p tcp -m tcp --dport 1212 -j ACCEPT
-A FORWARD -d 10.0.0.15 -p udp -m udp --dport 1111 -j ACCEPT
-A FORWARD -d 10.0.0.15 -p tcp -m tcp --dport 1111 -j ACCEPT
-A FORWARD -d 10.0.0.3 -p udp -m udp --dport 65528 -j ACCEPT
-A FORWARD -d 10.0.0.3 -p tcp -m tcp --dport 65528 -j ACCEPT
-A FORWARD -d 10.0.0.4 -p udp -m udp --dport 65535 -j ACCEPT
-A FORWARD -d 10.0.0.4 -p tcp -m tcp --dport 65535 -j ACCEPT
-A FORWARD -d 10.0.0.14 -p udp -m udp --dport 65100 -j ACCEPT
-A FORWARD -d 10.0.0.14 -p tcp -m tcp --dport 65100 -j ACCEPT
-A FORWARD -d 10.0.0.10 -p udp -m udp --dport 65526 -j ACCEPT
-A FORWARD -d 10.0.0.10 -p tcp -m tcp --dport 65526 -j ACCEPT
-A FORWARD -d 10.0.0.5 -p udp -m udp --dport 65530 -j ACCEPT
-A FORWARD -d 10.0.0.5 -p tcp -m tcp --dport 65530 -j ACCEPT
-A FORWARD -o lo -j ACCEPT
-A FORWARD -p tcp -m multiport --dports 135,445 -j DROP
-A FORWARD -i ! eth0 -j ACCEPT
-A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
COMMIT
# Completed on Sun Jan 8 21:14:18 2006
# Generated by iptables-save v1.3.1 on Sun Jan 8 21:14:18 2006
*nat

REROUTING ACCEPT [62733:4487219]

OSTROUTING ACCEPT [32850:2640116]
:OUTPUT ACCEPT [9:599]
-A PREROUTING -i eth0 -p tcp -m tcp --dport 65530 -j DNAT --to-destination 10.0.0.5:65530
-A PREROUTING -i eth0 -p udp -m udp --dport 65530 -j DNAT --to-destination 10.0.0.5:65530
-A PREROUTING -i eth0 -p tcp -m tcp --dport 65526 -j DNAT --to-destination 10.0.0.10:65526
-A PREROUTING -i eth0 -p udp -m udp --dport 65526 -j DNAT --to-destination 10.0.0.10:65526
-A PREROUTING -i eth0 -p tcp -m tcp --dport 65100 -j DNAT --to-destination 10.0.0.14:65100
-A PREROUTING -i eth0 -p udp -m udp --dport 65100 -j DNAT --to-destination 10.0.0.14:65100
-A PREROUTING -i eth0 -p tcp -m tcp --dport 65535 -j DNAT --to-destination 10.0.0.4:65535
-A PREROUTING -i eth0 -p udp -m udp --dport 65535 -j DNAT --to-destination 10.0.0.4:65535
-A PREROUTING -i eth0 -p tcp -m tcp --dport 65528 -j DNAT --to-destination 10.0.0.3:65528
-A PREROUTING -i eth0 -p udp -m udp --dport 65528 -j DNAT --to-destination 10.0.0.3:65528
-A PREROUTING -i eth0 -p tcp -m tcp --dport 1111 -j DNAT --to-destination 10.0.0.15:1111
-A PREROUTING -i eth0 -p udp -m udp --dport 1111 -j DNAT --to-destination 10.0.0.15:1111
-A PREROUTING -i eth0 -p tcp -m tcp --dport 1212 -j DNAT --to-destination 10.0.0.20:1212
-A PREROUTING -i eth0 -p udp -m udp --dport 1212 -j DNAT --to-destination 10.0.0.20:1212
-A PREROUTING -i eth0 -p tcp -m tcp --dport 65520 -j DNAT --to-destination 10.0.0.8:65520
-A PREROUTING -i eth0 -p udp -m udp --dport 65520 -j DNAT --to-destination 10.0.0.8:65520
-A POSTROUTING -o eth0 -j MASQUERADE
COMMIT
# Completed on Sun Jan 8 21:14:18 2006