2019-12-21 - Coovachilli IPTABLES + VLAN Help Me

Header Data

From: Sergen Çolak <se***7@gmail.com>
Message Hash: 2b4800f0a6c5903b3607f9285476a687e5f3c03e161c762db0dfa9fea8347809
Message ID: <d0b020b2-c97b-460f-9cb2-7ed9d48f1414@grasehotspot.org>
Reply To: N/A
UTC Datetime: 2019-12-21 00:58:03 UTC
Raw Date: Fri, 20 Dec 2019 23:58:03 -0800

Raw message

Hello to everyone,
I created 2 VLANs with newmulti.sh file on Coovachilli. I made the 8021q 
adjustments. Both vlans are running smoothly. However, the VLAN10 user can 
access the VLAN20 network. I couldn't stop it. How do I do this in IPTABLES?

eth0 Link encap: Ethernet HWaddr 00: 30: 18: cb: mm: 7b
          inet addr: 192.168.1.23 Bcast: 192.168.1.255 Mask: 255.255.255.0
          inet6 addr: fe80 :: 230: 18ff: fecb: aa7b / 64 Scope: Link
          UP BROADCAST RUNNING MULTICAST MTU: 1500 Metric: 1
          RX packets: 168316 errors: 0 dropped: 0 overruns: 0 frame: 0
          TX packets: 117889 errors: 0 dropped: 0 overruns: 0 carrier: 0
          collisions: 0 txqueuelen: 1000
          RX bytes: 135638967 (129.3 MiB) TX bytes: 19413356 (18.5 MiB)
          Memory: d0900000-d091ffff

eth1 Link encap: Ethernet HWaddr 00: 30: 18: cb: mm: 78
          inet6 addr: fe80 :: 230: 18ff: fecb: aa78 / 64 Scope: Link
          UP BROADCAST RUNNING MULTICAST MTU: 1500 Metric: 1
          RX packets: 145514 errors: 0 dropped: 298 overruns: 0 frame: 0
          TX packets: 217427 errors: 0 dropped: 0 overruns: 0 carrier: 0
          collisions: 0 txqueuelen: 1000
          RX bytes: 21721432 (20.7 MiB) TX bytes: 148460893 (141.5 MiB)
          Memory: d0800000-d081ffff

eth1.10 Link encap: Ethernet HWaddr 00: 30: 18: cb: mm: 78
          inet6 addr: fe80 :: 230: 18ff: fecb: aa78 / 64 Scope: Link
          UP BROADCAST RUNNING PROMISC MTU: 1500 Metric: 1
          RX packets: 137080 errors: 0 dropped: 0 overruns: 0 frame: 0
          TX packets: 210448 errors: 0 dropped: 0 overruns: 0 carrier: 0
          collisions: 0 txqueuelen: 0
          RX bytes: 18633403 (17.7 MiB) TX bytes: 147376028 (140.5 MiB)

eth1.20 Link encap: Ethernet HWaddr 00: 30: 18: cb: mm: 78
          inet6 addr: fe80 :: 230: 18ff: fecb: aa78 / 64 Scope: Link
          UP BROADCAST RUNNING PROMISC MULTICAST MTU: 1500 Metric: 1
          RX packets: 7135 errors: 0 dropped: 0 overruns: 0 frame: 0
          TX packets: 6971 errors: 0 dropped: 0 overruns: 0 carrier: 0
          collisions: 0 txqueuelen: 0
          RX bytes: 538545 (525.9 KiB) TX bytes: 1084217 (1.0 MiB)

lo Link encap: Local Loopback
          inet addr: 127.0.0.1 Mask: 255.0.0.0
          inet6 addr: :: 1/128 Scope: Host
          UP LOOPBACK RUNNING MTU: 65536 Metric: 1
          RX packets: 2057 errors: 0 dropped: 0 overruns: 0 frame: 0
          TX packets: 2057 errors: 0 dropped: 0 overruns: 0 carrier: 0
          collisions: 0 txqueuelen: 0
          RX bytes: 1301858 (1.2 MiB) TX bytes: 1301858 (1.2 MiB)

tun0 Link encap: UNSPEC HWaddr 
00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
          inet addr: 192.168.10.1 P-t-P: 192.168.10.1 Mask: 255.255.240.0
          UP POINTOPOINT RUNNING MTU: 1500 Metric: 1
          RX packets: 126246 errors: 0 dropped: 0 overruns: 0 frame: 0
          TX packets: 207072 errors: 0 dropped: 0 overruns: 0 carrier: 0
          collisions: 0 txqueuelen: 100
          RX bytes: 17230421 (16.4 MiB) TX bytes: 144296073 (137.6 MiB)

tun1 Link encap: UNSPEC HWaddr 
00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
          inet addr: 192.168.20.1 P-t-P: 192.168.20.1 Mask: 255.255.255.0
          UP POINTOPOINT RUNNING MTU: 1500 Metric: 1
          RX packets: 2424 errors: 0 dropped: 0 overruns: 0 frame: 0
          TX packets: 2377 errors: 0 dropped: 0 overruns: 0 carrier: 0
          collisions: 0 txqueuelen: 100
          RX bytes: 246725 (240.9 KiB) TX bytes: 823412 (804.1 KiB)
ifconfig is output like this.
In addition, how can I switch directly to Tun1 without a Login page? The 
traffic will still be on the SQUID but there will be no Authentication.

Thank you

Thread