> tcpdump на wlp2s5 смотрите При шлюза с планшета-
[root@old-server adapter]# tcpdump -i wlp2s5 -nv
tcpdump: listening on wlp2s5, link-type EN10MB (Ethernet), capture size 65535 bytes
16:58:15.790277 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto UDP (17), length 354)
172.16.249.3.68 > 172.16.249.1.67: BOOTP/DHCP, Request from 00:3a:05:a1:fa:75, length 326, xid 0xd2913cd0, secs 290, Flags [none]
Client-IP 172.16.249.3
Client-Ethernet-Address 00:3a:05:a1:fa:75
Vendor-rfc1048 Extensions
Magic Cookie 0x63825363
DHCP-Message Option 53, length 1: Request
MSZ Option 57, length 2: 1500
Vendor-Class Option 60, length 39: "dhcpcd-5.2.10:Linux-3.0.8+:armv7l:sun5i"
Hostname Option 12, length 24: "android-27547da37548c169"
Parameter-Request Option 55, length 9:
Subnet-Mask, Static-Route, Default-Gateway, Domain-Name-Server
Domain-Name, BR, Lease-Time, RN
RB
16:58:15.829317 IP (tos 0x0, ttl 64, id 21152, offset 0, flags [DF], proto UDP (17), length 328)
172.16.249.1.67 > 172.16.249.3.68: BOOTP/DHCP, Reply, length 300, xid 0xd2913cd0, secs 290, Flags [none]
Client-IP 172.16.249.3
Your-IP 172.16.249.3
Client-Ethernet-Address 00:3a:05:a1:fa:75
Vendor-rfc1048 Extensions
Magic Cookie 0x63825363
DHCP-Message Option 53, length 1: ACK
Server-ID Option 54, length 4: 172.16.249.1
Lease-Time Option 51, length 4: 600
Subnet-Mask Option 1, length 4: 255.255.255.0
Default-Gateway Option 3, length 4: 172.16.249.1
Domain-Name-Server Option 6, length 4: 192.168.0.6
Domain-Name Option 15, length 15: "bsm_TestHostapd"
BR Option 28, length 4: 172.16.249.255
16:58:20.315136 EAPOL key (3) v2, len 143
16:58:20.345382 EAPOL key (3) v1, len 95
16:58:36.770420 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto ICMP (1), length 84)
172.16.249.3 > 192.168.0.6: ICMP echo request, id 29957, seq 1, length 64
16:58:36.770751 IP (tos 0x0, ttl 63, id 57756, offset 0, flags [none], proto ICMP (1), length 84)
192.168.0.6 > 172.16.249.3: ICMP echo reply, id 29957, seq 1, length 64
16:58:37.773170 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto ICMP (1), length 84)
172.16.249.3 > 192.168.0.6: ICMP echo request, id 29957, seq 2, length 64
16:58:37.773490 IP (tos 0x0, ttl 63, id 57757, offset 0, flags [none], proto ICMP (1), length 84)
192.168.0.6 > 172.16.249.3: ICMP echo reply, id 29957, seq 2, length 64
16:58:38.773465 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto ICMP (1), length 84)
172.16.249.3 > 192.168.0.6: ICMP echo request, id 29957, seq 3, length 64
16:58:38.773792 IP (tos 0x0, ttl 63, id 57758, offset 0, flags [none], proto ICMP (1), length 84)
192.168.0.6 > 172.16.249.3: ICMP echo reply, id 29957, seq 3, length 64
16:58:41.774241 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 172.16.249.3 tell 172.16.249.1, length 28
16:58:41.847806 ARP, Ethernet (len 6), IPv4 (len 4), Reply 172.16.249.3 is-at 00:3a:05:a1:fa:75, length 28
16:59:09.852753 IP (tos 0x0, ttl 64, id 7323, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.20023 > 192.168.0.6.53: 37834+ A? ya.ru. (23)
16:59:09.853085 IP (tos 0xc0, ttl 63, id 57759, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7323, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.20023 > 192.168.0.6.53: 37834+ A? ya.ru. (23)
16:59:09.860916 IP (tos 0x0, ttl 64, id 7324, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.44856 > 192.168.0.6.53: 37834+ A? ya.ru. (23)
16:59:09.861212 IP (tos 0xc0, ttl 63, id 57760, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7324, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.44856 > 192.168.0.6.53: 37834+ A? ya.ru. (23)
16:59:09.869265 IP (tos 0x0, ttl 64, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.3379 > 192.168.0.6.53: 2007+ A? ya.ru. (23)
16:59:09.869550 IP (tos 0xc0, ttl 63, id 57761, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.3379 > 192.168.0.6.53: 2007+ A? ya.ru. (23)
16:59:09.871797 IP (tos 0x0, ttl 64, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.14604 > 192.168.0.6.53: 2007+ A? ya.ru. (23)
16:59:09.872092 IP (tos 0xc0, ttl 63, id 57762, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.14604 > 192.168.0.6.53: 2007+ A? ya.ru. (23)
16:59:09.874138 IP (tos 0x0, ttl 64, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.61203 > 192.168.0.6.53: 50544+ A? ya.ru. (23)
16:59:09.874424 IP (tos 0xc0, ttl 63, id 57763, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.61203 > 192.168.0.6.53: 50544+ A? ya.ru. (23)
16:59:09.876147 IP (tos 0x0, ttl 64, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.7269 > 192.168.0.6.53: 50544+ A? ya.ru. (23)
16:59:09.876432 IP (tos 0xc0, ttl 63, id 57764, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.7269 > 192.168.0.6.53: 50544+ A? ya.ru. (23)
16:59:09.878399 IP (tos 0x0, ttl 64, id 7325, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.23865 > 192.168.0.6.53: 54321+ A? ya.ru. (23)
16:59:14.867572 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 172.16.249.3 tell 172.16.249.1, length 28
16:59:14.883434 IP (tos 0x0, ttl 64, id 7326, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.23865 > 192.168.0.6.53: 54321+ A? ya.ru. (23)
16:59:14.883756 IP (tos 0xc0, ttl 63, id 57765, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7326, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.23865 > 192.168.0.6.53: 54321+ A? ya.ru. (23)
16:59:14.886158 ARP, Ethernet (len 6), IPv4 (len 4), Reply 172.16.249.3 is-at 00:3a:05:a1:fa:75, length 28
16:59:14.886219 IP (tos 0x0, ttl 64, id 7826, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.7252 > 192.168.0.6.53: 55958+ A? ya.ru. (23)
16:59:14.886494 IP (tos 0xc0, ttl 63, id 57766, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7826, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.7252 > 192.168.0.6.53: 55958+ A? ya.ru. (23)
16:59:14.887964 IP (tos 0x0, ttl 64, id 7826, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.35554 > 192.168.0.6.53: 55958+ A? ya.ru. (23)
16:59:14.888244 IP (tos 0xc0, ttl 63, id 57767, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7826, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.35554 > 192.168.0.6.53: 55958+ A? ya.ru. (23)
16:59:14.889848 IP (tos 0x0, ttl 64, id 7827, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.35667 > 192.168.0.6.53: 39+ A? ya.ru. (23)
16:59:14.890138 IP (tos 0xc0, ttl 63, id 57768, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7827, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.35667 > 192.168.0.6.53: 39+ A? ya.ru. (23)
16:59:14.891616 IP (tos 0x0, ttl 64, id 7827, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.19908 > 192.168.0.6.53: 39+ A? ya.ru. (23)
16:59:14.891902 IP (tos 0xc0, ttl 63, id 57769, offset 0, flags [none], proto ICMP (1), length 79)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 59
IP (tos 0x0, ttl 63, id 7827, offset 0, flags [DF], proto UDP (17), length 51)
172.16.249.3.19908 > 192.168.0.6.53: 39+ A? ya.ru. (23)
16:59:21.266517 IP (tos 0x0, ttl 64, id 8464, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.16623 > 192.168.0.6.53: 5984+ A? play.googleapis.com. (37)
16:59:21.266845 IP (tos 0xc0, ttl 63, id 57770, offset 0, flags [none], proto ICMP (1), length 93)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 73
IP (tos 0x0, ttl 63, id 8464, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.16623 > 192.168.0.6.53: 5984+ A? play.googleapis.com. (37)
16:59:21.269835 IP (tos 0x0, ttl 64, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.20943 > 192.168.0.6.53: 5984+ A? play.googleapis.com. (37)
16:59:21.270127 IP (tos 0xc0, ttl 63, id 57771, offset 0, flags [none], proto ICMP (1), length 93)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 73
IP (tos 0x0, ttl 63, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.20943 > 192.168.0.6.53: 5984+ A? play.googleapis.com. (37)
16:59:21.271667 IP (tos 0x0, ttl 64, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.5821 > 192.168.0.6.53: 50097+ A? play.googleapis.com. (37)
16:59:21.271981 IP (tos 0xc0, ttl 63, id 57772, offset 0, flags [none], proto ICMP (1), length 93)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 73
IP (tos 0x0, ttl 63, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.5821 > 192.168.0.6.53: 50097+ A? play.googleapis.com. (37)
16:59:21.273423 IP (tos 0x0, ttl 64, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.32916 > 192.168.0.6.53: 50097+ A? play.googleapis.com. (37)
16:59:21.273726 IP (tos 0xc0, ttl 63, id 57773, offset 0, flags [none], proto ICMP (1), length 93)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 73
IP (tos 0x0, ttl 63, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.32916 > 192.168.0.6.53: 50097+ A? play.googleapis.com. (37)
16:59:21.276173 IP (tos 0x0, ttl 64, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.38982 > 192.168.0.6.53: 1085+ A? play.googleapis.com. (37)
16:59:21.276472 IP (tos 0xc0, ttl 63, id 57774, offset 0, flags [none], proto ICMP (1), length 93)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 73
IP (tos 0x0, ttl 63, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.38982 > 192.168.0.6.53: 1085+ A? play.googleapis.com. (37)
16:59:21.278065 IP (tos 0x0, ttl 64, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.47614 > 192.168.0.6.53: 1085+ A? play.googleapis.com. (37)
16:59:21.278352 IP (tos 0xc0, ttl 63, id 57775, offset 0, flags [none], proto ICMP (1), length 93)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 73
IP (tos 0x0, ttl 63, id 8465, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.47614 > 192.168.0.6.53: 1085+ A? play.googleapis.com. (37)
16:59:21.279917 IP (tos 0x0, ttl 64, id 8466, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.3169 > 192.168.0.6.53: 18090+ A? play.googleapis.com. (37)
16:59:26.268964 ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 172.16.249.1 tell 172.16.249.3, length 28
16:59:26.269022 ARP, Ethernet (len 6), IPv4 (len 4), Reply 172.16.249.1 is-at 10:fe:ed:5e:92:80, length 28
16:59:26.298231 IP (tos 0x0, ttl 64, id 8467, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.3169 > 192.168.0.6.53: 18090+ A? play.googleapis.com. (37)
16:59:26.298544 IP (tos 0xc0, ttl 63, id 57776, offset 0, flags [none], proto ICMP (1), length 93)
192.168.0.6 > 172.16.249.3: ICMP 192.168.0.6 udp port 53 unreachable, length 73
IP (tos 0x0, ttl 63, id 8467, offset 0, flags [DF], proto UDP (17), length 65)
172.16.249.3.3169 > 192.168.0.6.53: 18090+ A? play.googleapis.com. (37)
^C
54 packets captured
54 packets received by filter
0 packets dropped by kernel
[root@old-server adapter]#
> после
> 53 3333 SNAT all
> -- * enp2s4
> 0.0.0.0/0
> 0.0.0.0/0
> to:192.168.0.12
Сейчас так и выполняется.
> шлюз (192.168.0.6) не будет видеть 172.16.249.3, будет 192.168.0.12.
> поэтому на шлюзе в FORWARD не 172.16.249.0/24 , а 192.168.0.0/24.
> а на 192.168.0.12 что DNS ?
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
0.0.0.0 192.168.0.6 0.0.0.0 UG 0 0 0 enp2s4
172.16.249.0 0.0.0.0 255.255.255.0 U 0 0 0 wlp2s5
192.168.0.0 0.0.0.0 255.255.255.0 U 0 0 0 enp2s4