aboutsummaryrefslogtreecommitdiffstats
path: root/docs
diff options
context:
space:
mode:
authorAniket Panjwani <aniketpanjwani2018@u.northwestern.edu>2018-02-04 10:42:03 -0600
committerAniket Panjwani <aniketpanjwani2018@u.northwestern.edu>2018-02-04 10:42:03 -0600
commitbb3e7ee86c63eaab72127073dc581fff9dbc9c73 (patch)
tree49475dc412fcd596cb91f887e9b01e13a25faba9 /docs
parent91834f98ccb1e586dabb9c269c369a094a00f2f0 (diff)
downloadmitmproxy-bb3e7ee86c63eaab72127073dc581fff9dbc9c73.tar.gz
mitmproxy-bb3e7ee86c63eaab72127073dc581fff9dbc9c73.tar.bz2
mitmproxy-bb3e7ee86c63eaab72127073dc581fff9dbc9c73.zip
Modify Linux transparent proxy docs to include ipv6 configuration.
Diffstat (limited to 'docs')
-rw-r--r--docs/transparent/linux.rst4
1 files changed, 4 insertions, 0 deletions
diff --git a/docs/transparent/linux.rst b/docs/transparent/linux.rst
index ab3fd707..285b5737 100644
--- a/docs/transparent/linux.rst
+++ b/docs/transparent/linux.rst
@@ -11,6 +11,7 @@ achieve transparent mode.
2. Enable IP forwarding:
>>> sysctl -w net.ipv4.ip_forward=1
+ >>> sysctl -w net.ipv6.conf.all.forwarding=1
You may also want to consider enabling this permanently in ``/etc/sysctl.conf`` or newly created ``/etc/sysctl.d/mitmproxy.conf``, see `here <https://superuser.com/a/625852>`__.
@@ -18,6 +19,7 @@ achieve transparent mode.
gateway, disable ICMP redirects:
>>> sysctl -w net.ipv4.conf.all.accept_redirects=0
+ >>> sysctl -w net.ipv6.conf.all.accept_redirects=0
>>> sysctl -w net.ipv4.conf.all.send_redirects=0
   You may also want to consider enabling this permanently in ``/etc/sysctl.conf`` or a newly created ``/etc/sysctl.d/mitmproxy.conf``, see `here <https://superuser.com/a/625852>`__.
@@ -30,6 +32,8 @@ achieve transparent mode.
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 8080
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 443 -j REDIRECT --to-port 8080
+ ip6tables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 8080
+ ip6tables -t nat -A PREROUTING -i eth0 -p tcp --dport 443 -j REDIRECT --to-port 8080
   You may also want to consider enabling this permanently with the ``iptables-persistent`` package, see `here <http://www.microhowto.info/howto/make_the_configuration_of_iptables_persistent_on_debian.html>`__.