aboutsummaryrefslogtreecommitdiffstats
path: root/docs
diff options
context:
space:
mode:
authorMaximilian Hils <git@maximilianhils.com>2018-02-13 20:21:40 +0100
committerGitHub <noreply@github.com>2018-02-13 20:21:40 +0100
commitbaf4b5dc03c3b87fbef6e5df422eb7654594978f (patch)
tree3cbeb6a804d9873185e8e10e0dcb7f95922ca552 /docs
parentb689f48f7f3896414821fe617932ce4792939dc3 (diff)
parent58a54febf33d47b9aa27bd08db9483246d12ac79 (diff)
downloadmitmproxy-baf4b5dc03c3b87fbef6e5df422eb7654594978f.tar.gz
mitmproxy-baf4b5dc03c3b87fbef6e5df422eb7654594978f.tar.bz2
mitmproxy-baf4b5dc03c3b87fbef6e5df422eb7654594978f.zip
Merge pull request #2841 from aniketpanjwani/fix_linux_transparent_proxy_docs
Modify Linux transparent proxy docs to include ipv6 configuration.
Diffstat (limited to 'docs')
-rw-r--r--docs/transparent/linux.rst4
1 files changed, 3 insertions, 1 deletions
diff --git a/docs/transparent/linux.rst b/docs/transparent/linux.rst
index ab3fd707..14f6a165 100644
--- a/docs/transparent/linux.rst
+++ b/docs/transparent/linux.rst
@@ -11,13 +11,13 @@ achieve transparent mode.
2. Enable IP forwarding:
>>> sysctl -w net.ipv4.ip_forward=1
+ >>> sysctl -w net.ipv6.conf.all.forwarding=1
You may also want to consider enabling this permanently in ``/etc/sysctl.conf`` or newly created ``/etc/sysctl.d/mitmproxy.conf``, see `here <https://superuser.com/a/625852>`__.
3. If your target machine is on the same physical network and you configured it to use a custom
gateway, disable ICMP redirects:
- >>> sysctl -w net.ipv4.conf.all.accept_redirects=0
>>> sysctl -w net.ipv4.conf.all.send_redirects=0
   You may also want to consider enabling this permanently in ``/etc/sysctl.conf`` or a newly created ``/etc/sysctl.d/mitmproxy.conf``, see `here <https://superuser.com/a/625852>`__.
@@ -30,6 +30,8 @@ achieve transparent mode.
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 8080
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 443 -j REDIRECT --to-port 8080
+ ip6tables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 8080
+ ip6tables -t nat -A PREROUTING -i eth0 -p tcp --dport 443 -j REDIRECT --to-port 8080
   You may also want to consider enabling this permanently with the ``iptables-persistent`` package, see `here <http://www.microhowto.info/howto/make_the_configuration_of_iptables_persistent_on_debian.html>`__.