Commit f9705530 authored by nanahira's avatar nanahira

remove

parent b71c69b6
#!/usr/bin/env bash
if [ "$dev" == "mc-yangtze" ] ; then
# 初始化部分,mc-yangtze一定是第一个连接的
# 删除ipset
#iptables-save | grep "match-set mycard"
#ipset destroy mycard
# 针对网关设置mark
{% for gateway in gateways %}
{% if gateway.route_tail != "" %}
ip route del default {{gateway.route_tail}} table {{gateway.mark}}
ip rule del pref 301 fwmark {{gateway.mark}} table {{gateway.mark}}
{% endfor %}
fi
if [ "$outbound" == True ] ; then
ip rule del fwmark "$remoteMark" table "$remoteMark" pref 300
fi
#if [ -z "${mtu}" ]; then
# mtu=$(cat /sys/class/net/"$dev"/mtu)
#fi
mss=$((mtu - 40))
iptables -t mangle -D FORWARD -i "$dev" -p tcp -m tcp --tcp-flags SYN,RST SYN -m tcpmss --mss $mss:1460 -j TCPMSS --set-mss $mss
iptables -t mangle -D FORWARD -o "$dev" -p tcp -m tcp --tcp-flags SYN,RST SYN -m tcpmss --mss $mss:1460 -j TCPMSS --set-mss $mss
iptables -t mangle -D PREROUTING -i "$dev" -m set ! --match-set mycard src -j CONNMARK --set-xmark "$remoteMark"
iptables -t mangle -D PREROUTING -m connmark --mark "$remoteMark" -j CONNMARK --restore-mark
iptables -t mangle -D OUTPUT -m connmark --mark "$remoteMark" -j CONNMARK --restore-mark
# predown 始终返回成功。
true
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment