mirror of
https://gitlab.com/kupfer/kupferbootstrap.git
synced 2025-02-23 13:45:45 -05:00
47 lines
1 KiB
Python
47 lines
1 KiB
Python
import click
|
|
import subprocess
|
|
from logger import logging
|
|
from ssh import cmd_ssh
|
|
from wrapper import enforce_wrap
|
|
|
|
|
|
@click.command(name='forwarding')
|
|
def cmd_forwarding():
|
|
enforce_wrap()
|
|
result = subprocess.run([
|
|
'sysctl',
|
|
'net.ipv4.ip_forward=1',
|
|
])
|
|
if result.returncode != 0:
|
|
logging.fatal(f'Failed to enable ipv4 forward via sysctl')
|
|
exit(1)
|
|
|
|
result = subprocess.run([
|
|
'iptables',
|
|
'-P',
|
|
'FORWARD',
|
|
'ACCEPT',
|
|
])
|
|
if result.returncode != 0:
|
|
logging.fatal(f'Failed set iptables rule')
|
|
exit(1)
|
|
|
|
result = subprocess.run([
|
|
'iptables',
|
|
'-A',
|
|
'POSTROUTING',
|
|
'-t',
|
|
'nat',
|
|
'-j',
|
|
'MASQUERADE',
|
|
'-s',
|
|
'172.16.42.0/24',
|
|
])
|
|
if result.returncode != 0:
|
|
logging.fatal(f'Failed set iptables rule')
|
|
exit(1)
|
|
|
|
result = cmd_ssh(cmd=['sudo route add default gw 172.16.42.2'])
|
|
if result.returncode != 0:
|
|
logging.fatal(f'Failed to add gateway over ssh')
|
|
exit(1)
|