#!/bin/sh CONFIG=1 source /usr/sbin/helper.sh DNSMASQ_CONF=/tmp/etc/dnsmasq.conf if [ `cat ${DNSMASQ_CONF} | grep -c "log-dhcp"` -eq 0 ]; then pc_append "log-dhcp" ${DNSMASQ_CONF} fi cmd_log () { logger "${2}[${1}] - ${3}" } cmd_run () { ERR=`${2}` ERRCODE=$? cmd_log ${ERRCODE} "${1}" "${ERR}: ${2}" return ${ERRCODE} } assign_ip () { IFACE=${1} IFACE_NWRK_ADDR=${2} IFACE_INET_ADDR=${3} IFACE_NETMASK=${4} DHCP_START=${5} DHCP_END=${6} cmd_run "ifconfig" "ifconfig ${IFACE} ${IFACE_INET_ADDR} netmask ${IFACE_NETMASK}" if [ `iptables -L -v | grep -c ${IFACE}` -eq 0 ]; then cmd_run "iptables" "iptables -I INPUT -i ${IFACE} -j ACCEPT" cmd_run "iptables" "iptables -I FORWARD -i ${IFACE} -m state --state NEW -j ACCEPT" cmd_run "iptables" "iptables -I FORWARD -p tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu" fi if [ `ebtables -t broute -L | grep -ice "-p ipv4 -i ${IFACE} -j DROP"` -eq 0 ]; then cmd_run "ebtables" "ebtables -t broute -I BROUTING -p ipv4 -i ${IFACE} -j DROP" fi #if [ `ebtables -t broute -L | grep -ice "-p arp -i ${IFACE} - DROP"` -eq 0 ]; then # cmd_run "ebtables" "ebtables -t broute -I BROUTING -p arp -i ${IFACE} -j DROP" #fi if [ `cat ${DNSMASQ_CONF} | grep -c ${IFACE}` -eq 0 ]; then logger "dnsmasq-dhcp: Configure ${IFACE} to have special DHCP" pc_append "interface=${IFACE}" ${DNSMASQ_CONF} pc_append "dhcp-range=${IFACE},${DHCP_START},${DHCP_END},${IFACE_NETMASK},24h" ${DNSMASQ_CONF} pc_append "dhcp-option=${IFACE},3,${IFACE_INET_ADDR}" ${DNSMASQ_CONF} pc_append "dhcp-option=${IFACE},6,192.168.1.1" ${DNSMASQ_CONF} fi cmd_run "ip-route" "ip route flush cache" } killall dnsmasq #assign_ip "vlan1" "192.168.1.0" "192.168.1.1" "255.255.255.0" "192.168.1.1" "192.168.1.127" #/25 assign_ip "wl0.1" "192.168.2.0" "192.168.2.1" "255.255.255.0" "192.168.2.1" "192.168.2.128" #/25 assign_ip "wl1.1" "192.168.2.0" "192.168.2.1" "255.255.255.0" "192.168.2.1" "192.168.2.128" #/25 assign_ip "wl2.1" "192.168.2.0" "192.168.2.1" "255.255.255.0" "192.168.2.1" "192.168.2.128" #/25 assign_ip "wl0.2" "192.168.2.0" "192.168.2.1" "255.255.255.0" "192.168.2.129" "192.168.2.255" #/25 cat ${DNSMASQ_CONF} dnsmasq --log-async