- swinchen@cloudy:~$ sudo iptables -vn -L -t nat
- Chain PREROUTING (policy ACCEPT 383 packets, 34741 bytes)
- pkts bytes target prot opt in out source destination
- 418 36793 nova-network-PREROUTING all -- * * 0.0.0.0/0 0.0.0.0/0
- 383 34741 nova-compute-PREROUTING all -- * * 0.0.0.0/0 0.0.0.0/0
- 383 34741 nova-api-PREROUTING all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain INPUT (policy ACCEPT 191 packets, 22953 bytes)
- pkts bytes target prot opt in out source destination
- Chain OUTPUT (policy ACCEPT 216 packets, 13971 bytes)
- pkts bytes target prot opt in out source destination
- 219 14151 nova-network-OUTPUT all -- * * 0.0.0.0/0 0.0.0.0/0
- 216 13971 nova-compute-OUTPUT all -- * * 0.0.0.0/0 0.0.0.0/0
- 216 13971 nova-api-OUTPUT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain POSTROUTING (policy ACCEPT 226 packets, 14799 bytes)
- pkts bytes target prot opt in out source destination
- 441 27699 nova-network-POSTROUTING all -- * * 0.0.0.0/0 0.0.0.0/0
- 441 27699 nova-compute-POSTROUTING all -- * * 0.0.0.0/0 0.0.0.0/0
- 441 27699 nova-api-POSTROUTING all -- * * 0.0.0.0/0 0.0.0.0/0
- 441 27699 nova-postrouting-bottom all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 MASQUERADE tcp -- * * 192.168.122.0/24 !192.168.122.0/24 masq ports: 1024-65535
- 0 0 MASQUERADE udp -- * * 192.168.122.0/24 !192.168.122.0/24 masq ports: 1024-65535
- 0 0 MASQUERADE all -- * * 192.168.122.0/24 !192.168.122.0/24
- Chain nova-api-OUTPUT (1 references)
- pkts bytes target prot opt in out source destination
- Chain nova-api-POSTROUTING (1 references)
- pkts bytes target prot opt in out source destination
- Chain nova-api-PREROUTING (1 references)
- pkts bytes target prot opt in out source destination
- Chain nova-api-float-snat (1 references)
- pkts bytes target prot opt in out source destination
- Chain nova-api-snat (1 references)
- pkts bytes target prot opt in out source destination
- 226 14799 nova-api-float-snat all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain nova-compute-OUTPUT (1 references)
- pkts bytes target prot opt in out source destination
- Chain nova-compute-POSTROUTING (1 references)
- pkts bytes target prot opt in out source destination
- Chain nova-compute-PREROUTING (1 references)
- pkts bytes target prot opt in out source destination
- Chain nova-compute-float-snat (1 references)
- pkts bytes target prot opt in out source destination
- Chain nova-compute-snat (1 references)
- pkts bytes target prot opt in out source destination
- 226 14799 nova-compute-float-snat all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain nova-network-OUTPUT (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 DNAT udp -- * * 0.0.0.0/0 10.20.0.1 udp dpt:1000 to:192.168.1.2:1194
- 3 180 DNAT all -- * * 0.0.0.0/0 x.x.x.230 to:192.168.1.3
- Chain nova-network-POSTROUTING (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- * * 192.168.0.0/24 10.20.0.1
- 0 0 ACCEPT all -- * * 192.168.0.0/24 10.128.0.0/24
- 0 0 ACCEPT all -- * * 192.168.0.0/24 192.168.0.0/24 ! ctstate DNAT
- Chain nova-network-PREROUTING (1 references)
- pkts bytes target prot opt in out source destination
- 24 1440 DNAT tcp -- * * 0.0.0.0/0 169.254.169.254 tcp dpt:80 to:10.20.0.1:8775
- 0 0 DNAT udp -- * * 0.0.0.0/0 10.20.0.1 udp dpt:1000 to:192.168.1.2:1194
- 11 612 DNAT all -- * * 0.0.0.0/0 x.x.x..230 to:192.168.1.3
- Chain nova-network-float-snat (1 references)
- pkts bytes target prot opt in out source destination
- 215 12900 SNAT all -- * * 192.168.1.3 0.0.0.0/0 to:x.x.x.230
- Chain nova-network-snat (1 references)
- pkts bytes target prot opt in out source destination
- 441 27699 nova-network-float-snat all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 SNAT all -- * * 192.168.0.0/24 0.0.0.0/0 to:x.x.x.226
- Chain nova-postrouting-bottom (1 references)
- pkts bytes target prot opt in out source destination
- 441 27699 nova-network-snat all -- * * 0.0.0.0/0 0.0.0.0/0
- 226 14799 nova-compute-snat all -- * * 0.0.0.0/0 0.0.0.0/0
- 226 14799 nova-api-snat all -- * * 0.0.0.0/0 0.0.0.0/0