File: nm-ssh-server.sh

package info (click to toggle)
network-manager-ssh 1.2.11-1.1
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid, trixie
  • size: 1,564 kB
  • sloc: ansic: 2,849; makefile: 197; sh: 30
file content (44 lines) | stat: -rwxr-xr-x 846 bytes parent folder | download | duplicates (3)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
#!/bin/bash

# return the external interface
_get_external_interface() {
	ip route get 1.1.1.1 | head -1 | cut -d' ' -f5
}

# install ifconfig
install_ifconfig() {
	yum install -y net-tools
}

# permit tunnel on server
permit_tunnel() {
	echo 'PermitTunnel=yes' >> /etc/ssh/sshd_config
	service sshd reload
}

# enable ip_forward
kernel_forwarding() {
	echo 1 > /proc/sys/net/ipv4/ip_forward
}

# firewall rules
firewall_rules() {
	local device
	for device in tun tap; do
		iptables -I FORWARD -i $device+ -j ACCEPT
		iptables -I FORWARD -o $device+ -j ACCEPT
		iptables -I INPUT   -i $device+ -j ACCEPT
	done
	local external_interface=`_get_external_interface`
	iptables -t nat -I POSTROUTING -o $external_interface -j MASQUERADE
}

# main
main() {
	install_ifconfig && \
	permit_tunnel && \
	kernel_forwarding && \
	firewall_rules
}

main "$@"