|
@@ -7006,6 +7006,13 @@ function route_outgoing_traffic_through_tor {
|
7006
|
7006
|
iptables -t nat -F
|
7007
|
7007
|
iptables -t nat -A PREROUTING -i $WIFI_INTERFACE -p tcp --dport $SSH_PORT -j REDIRECT --to-ports $SSH_PORT
|
7008
|
7008
|
iptables -t nat -A PREROUTING -i $WIFI_INTERFACE -p udp --dport 53 -j REDIRECT --to-ports 53
|
|
7009
|
+
|
|
7010
|
+ # allow clearnet access for hosts in $_non_tor
|
|
7011
|
+ NON_TOR="192.168.1.0/24 192.168.0.0/24 192.168.2.0/24 192.168.10.0/24 192.168.4.0/24"
|
|
7012
|
+ for _clearnet in $NON_TOR 127.0.0.0/9 127.128.0.0/10; do
|
|
7013
|
+ iptables -t nat -A PREROUTING -d $_clearnet -j RETURN
|
|
7014
|
+ done
|
|
7015
|
+
|
7009
|
7016
|
iptables -t nat -A PREROUTING -i $WIFI_INTERFACE -p tcp --syn -j REDIRECT --to-ports 9040
|
7010
|
7017
|
|
7011
|
7018
|
save_firewall_settings
|