{"id":527,"date":"2012-11-30T20:00:23","date_gmt":"2012-11-30T18:00:23","guid":{"rendered":"http:\/\/www.netexpertise.eu\/fr\/?p=527"},"modified":"2021-05-05T21:59:20","modified_gmt":"2021-05-05T20:59:20","slug":"redirection-du-trafic-avec-iptables","status":"publish","type":"post","link":"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html","title":{"rendered":"Redirection du Trafic avec IPTables"},"content":{"rendered":"\n<p>Que vous souhaitiez rediriger les connexions telnet ou SSH via un serveur car vous n&rsquo;avez pas d&rsquo;acc\u00e8s direct au serveur final ou que vous planifiiez la migration d&rsquo;un serveur web, la redirection du trafic s&rsquo;av\u00e8re int\u00e9ressante dans bien des situations.<br>Ceci est tr\u00e8s facilement r\u00e9alisable avec des distributions Linux g\u00e9n\u00e9ralement livr\u00e9es avec <a href=\"\/fr\/tag\/iptables\">iptables<\/a>. Oui, iptables ne fait pas seulement office de filtre, mais inclut des fonctionnalit\u00e9s comme le nat.<br>\u00a0<br>Pour commencer, autorisez l&rsquo;IP forwarding. Cela permet aux paquets de traverser le serveur.<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code lang=\"bash\" class=\"language-bash\">serveur_linux$ echo 1 >\/proc\/sys\/net\/ipv4\/ip_forward<\/code><\/pre>\n\n\n\n<p>&nbsp;<br>L&rsquo;\u00e9tape suivante est d&rsquo;indiquer \u00e0 IPTables de rediriger le trafic vers le nouveau serveur (http, port 80 dans ce cas-ci):<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code lang=\"bash\" class=\"language-bash\">serveur_linux$ iptables -t nat -A PREROUTING -p tcp -m tcp --dport 80 -j DNAT --to-destination dst_srv_IP<\/code><\/pre>\n\n\n\n<p>\u00a0<br>A l&rsquo;\u00e9tape finale, c&rsquo;est l\u00e0 qu&rsquo;iptables r\u00e9cup\u00e8re les paquets renvoy\u00e9s par la machine de destination. Le trafic est alors retourn\u00e9 au client d&rsquo;origine.<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code lang=\"bash\" class=\"language-bash\">serveur_linux$ iptables -t nat -A POSTROUTING -d dst_srv_IP -p tcp -m tcp --dport 80 -j MASQUERADE\n<\/code><\/pre>\n\n\n\n<p><br>De cette fa\u00e7on, vous pouvez simplement rediriger le trafic vers un nouveau serveur web. Les clients ne subissent aucune interruption de service pendant que les entr\u00e9es DNS sont mises \u00e0 jour et propag\u00e9es aux clients.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Que vous souhaitiez rediriger les connexions telnet ou SSH via un serveur car vous n&rsquo;avez pas d&rsquo;acc\u00e8s direct au serveur final ou que vous planifiiez la migration d&rsquo;un serveur web, la redirection du trafic s&rsquo;av\u00e8re int\u00e9ressante dans bien des situations.Ceci est tr\u00e8s facilement r\u00e9alisable avec des distributions Linux g\u00e9n\u00e9ralement livr\u00e9es avec iptables. Oui, iptables ne [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_mi_skip_tracking":false},"categories":[10],"tags":[324,325,407,107],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v19.13 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Netexpertise - Redirection du Trafic avec IPTables<\/title>\n<meta name=\"description\" content=\"Transf\u00e9rez le trafic r\u00e9seau sur Linux vers un autre serveur avec IPtables\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Netexpertise - Redirection du Trafic avec IPTables\" \/>\n<meta property=\"og:description\" content=\"Transf\u00e9rez le trafic r\u00e9seau sur Linux vers un autre serveur avec IPtables\" \/>\n<meta property=\"og:url\" content=\"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html\" \/>\n<meta property=\"og:site_name\" content=\"Netexpertise\" \/>\n<meta property=\"article:published_time\" content=\"2012-11-30T18:00:23+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-05-05T20:59:20+00:00\" \/>\n<meta name=\"author\" content=\"dave\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@netexpertise\" \/>\n<meta name=\"twitter:site\" content=\"@netexpertise\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html\",\"url\":\"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html\",\"name\":\"Netexpertise - Redirection du Trafic avec IPTables\",\"isPartOf\":{\"@id\":\"https:\/\/www.netexpertise.eu\/fr\/#website\"},\"datePublished\":\"2012-11-30T18:00:23+00:00\",\"dateModified\":\"2021-05-05T20:59:20+00:00\",\"author\":{\"@id\":\"https:\/\/www.netexpertise.eu\/fr\/#\/schema\/person\/e398f0307e2b167f6b884c4953be2632\"},\"description\":\"Transf\u00e9rez le trafic r\u00e9seau sur Linux vers un autre serveur avec IPtables\",\"breadcrumb\":{\"@id\":\"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Accueil\",\"item\":\"https:\/\/www.netexpertise.eu\/fr\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Redirection du Trafic avec IPTables\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.netexpertise.eu\/fr\/#website\",\"url\":\"https:\/\/www.netexpertise.eu\/fr\/\",\"name\":\"Netexpertise\",\"description\":\"Syst\u00e8mes \/ R\u00e9seaux \/ DevOps\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.netexpertise.eu\/fr\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.netexpertise.eu\/fr\/#\/schema\/person\/e398f0307e2b167f6b884c4953be2632\",\"name\":\"dave\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\/\/www.netexpertise.eu\/fr\/#\/schema\/person\/image\/\",\"url\":\"http:\/\/1.gravatar.com\/avatar\/1129916e1f4955bd632f27f836f64e55?s=96&d=mm&r=g\",\"contentUrl\":\"http:\/\/1.gravatar.com\/avatar\/1129916e1f4955bd632f27f836f64e55?s=96&d=mm&r=g\",\"caption\":\"dave\"},\"sameAs\":[\"http:\/\/www.netexpertise.eu\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Netexpertise - Redirection du Trafic avec IPTables","description":"Transf\u00e9rez le trafic r\u00e9seau sur Linux vers un autre serveur avec IPtables","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html","og_locale":"fr_FR","og_type":"article","og_title":"Netexpertise - Redirection du Trafic avec IPTables","og_description":"Transf\u00e9rez le trafic r\u00e9seau sur Linux vers un autre serveur avec IPtables","og_url":"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html","og_site_name":"Netexpertise","article_published_time":"2012-11-30T18:00:23+00:00","article_modified_time":"2021-05-05T20:59:20+00:00","author":"dave","twitter_card":"summary_large_image","twitter_creator":"@netexpertise","twitter_site":"@netexpertise","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html","url":"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html","name":"Netexpertise - Redirection du Trafic avec IPTables","isPartOf":{"@id":"https:\/\/www.netexpertise.eu\/fr\/#website"},"datePublished":"2012-11-30T18:00:23+00:00","dateModified":"2021-05-05T20:59:20+00:00","author":{"@id":"https:\/\/www.netexpertise.eu\/fr\/#\/schema\/person\/e398f0307e2b167f6b884c4953be2632"},"description":"Transf\u00e9rez le trafic r\u00e9seau sur Linux vers un autre serveur avec IPtables","breadcrumb":{"@id":"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html"]}]},{"@type":"BreadcrumbList","@id":"http:\/\/www.netexpertise.eu\/fr\/systeme\/linux\/redirection-du-trafic-avec-iptables.html#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Accueil","item":"https:\/\/www.netexpertise.eu\/fr"},{"@type":"ListItem","position":2,"name":"Redirection du Trafic avec IPTables"}]},{"@type":"WebSite","@id":"https:\/\/www.netexpertise.eu\/fr\/#website","url":"https:\/\/www.netexpertise.eu\/fr\/","name":"Netexpertise","description":"Syst\u00e8mes \/ R\u00e9seaux \/ DevOps","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.netexpertise.eu\/fr\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"fr-FR"},{"@type":"Person","@id":"https:\/\/www.netexpertise.eu\/fr\/#\/schema\/person\/e398f0307e2b167f6b884c4953be2632","name":"dave","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/www.netexpertise.eu\/fr\/#\/schema\/person\/image\/","url":"http:\/\/1.gravatar.com\/avatar\/1129916e1f4955bd632f27f836f64e55?s=96&d=mm&r=g","contentUrl":"http:\/\/1.gravatar.com\/avatar\/1129916e1f4955bd632f27f836f64e55?s=96&d=mm&r=g","caption":"dave"},"sameAs":["http:\/\/www.netexpertise.eu"]}]}},"_links":{"self":[{"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/posts\/527"}],"collection":[{"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/comments?post=527"}],"version-history":[{"count":0,"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/posts\/527\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/media?parent=527"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/categories?post=527"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.netexpertise.eu\/fr\/wp-json\/wp\/v2\/tags?post=527"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}