diff options
author | Aniket Panjwani <aniketpanjwani2018@u.northwestern.edu> | 2018-02-04 10:42:03 -0600 |
---|---|---|
committer | Aniket Panjwani <aniketpanjwani2018@u.northwestern.edu> | 2018-02-04 10:42:03 -0600 |
commit | bb3e7ee86c63eaab72127073dc581fff9dbc9c73 (patch) | |
tree | 49475dc412fcd596cb91f887e9b01e13a25faba9 | |
parent | 91834f98ccb1e586dabb9c269c369a094a00f2f0 (diff) | |
download | mitmproxy-bb3e7ee86c63eaab72127073dc581fff9dbc9c73.tar.gz mitmproxy-bb3e7ee86c63eaab72127073dc581fff9dbc9c73.tar.bz2 mitmproxy-bb3e7ee86c63eaab72127073dc581fff9dbc9c73.zip |
Modify Linux transparent proxy docs to include ipv6 configuration.
-rw-r--r-- | docs/transparent/linux.rst | 4 |
1 files changed, 4 insertions, 0 deletions
diff --git a/docs/transparent/linux.rst b/docs/transparent/linux.rst index ab3fd707..285b5737 100644 --- a/docs/transparent/linux.rst +++ b/docs/transparent/linux.rst @@ -11,6 +11,7 @@ achieve transparent mode. 2. Enable IP forwarding: >>> sysctl -w net.ipv4.ip_forward=1 + >>> sysctl -w net.ipv6.conf.all.forwarding=1 You may also want to consider enabling this permanently in ``/etc/sysctl.conf`` or newly created ``/etc/sysctl.d/mitmproxy.conf``, see `here <https://superuser.com/a/625852>`__. @@ -18,6 +19,7 @@ achieve transparent mode. gateway, disable ICMP redirects: >>> sysctl -w net.ipv4.conf.all.accept_redirects=0 + >>> sysctl -w net.ipv6.conf.all.accept_redirects=0 >>> sysctl -w net.ipv4.conf.all.send_redirects=0 You may also want to consider enabling this permanently in ``/etc/sysctl.conf`` or a newly created ``/etc/sysctl.d/mitmproxy.conf``, see `here <https://superuser.com/a/625852>`__. @@ -30,6 +32,8 @@ achieve transparent mode. iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 8080 iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 443 -j REDIRECT --to-port 8080 + ip6tables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 8080 + ip6tables -t nat -A PREROUTING -i eth0 -p tcp --dport 443 -j REDIRECT --to-port 8080 You may also want to consider enabling this permanently with the ``iptables-persistent`` package, see `here <http://www.microhowto.info/howto/make_the_configuration_of_iptables_persistent_on_debian.html>`__. |