ื™ืกื•ื“ื•ืช ืฉืœ ืคืจื•ืงืกื™ ืฉืงื•ืฃ ื‘ืืžืฆืขื•ืช 3proxy ื•-iptables/netfilter ืื• ื›ื™ืฆื“ "ืœื”ืขื‘ื™ืจ ื”ื›ืœ ื“ืจืš ืคืจื•ืงืกื™"

ื‘ืžืืžืจ ื–ื” ื‘ืจืฆื•ื ื™ ืœื—ืฉื•ืฃ ืืช ื”ืืคืฉืจื•ื™ื•ืช ืฉืœ ืคืจื•ืงืกื™ ืฉืงื•ืฃ, ื”ืžืืคืฉืจ ืœืš ืœื”ืคื ื•ืช ืืช ื”ืชืขื‘ื•ืจื” ื›ื•ืœื” ืื• ื—ืœืงื” ื“ืจืš ืฉืจืชื™ ืคืจื•ืงืกื™ ื—ื™ืฆื•ื ื™ื™ื ืœืœื ืชืฉื•ืžืช ืœื‘ ืฉืœ ืœืงื•ื—ื•ืช.

ื›ืฉื”ืชื—ืœืชื™ ืœืคืชื•ืจ ื‘ืขื™ื” ื–ื•, ืขืžื“ืชื™ ื‘ืคื ื™ ื”ืขื•ื‘ื“ื” ืฉืœื™ื™ืฉื•ื ืฉืœื” ื”ื™ื™ืชื” ื‘ืขื™ื” ืื—ืช ืžืฉืžืขื•ืชื™ืช โ€“ ืคืจื•ื˜ื•ืงื•ืœ ื”-HTTPS. ื‘ื™ืžื™ื ื”ื˜ื•ื‘ื™ื, ืœื ื”ื™ื• ื‘ืขื™ื•ืช ืžื™ื•ื—ื“ื•ืช ืขื ืคืจื•ืงืกื™ HTTP ืฉืงื•ืฃ, ืื‘ืœ ืขื ืคืจื•ืงืกื™ HTTPS, ื“ืคื“ืคื ื™ื ืžื“ื•ื•ื—ื™ื ืขืœ ื”ืคืจืขื” ื‘ืคืจื•ื˜ื•ืงื•ืœ ื•ืฉื ื ื’ืžืจ ื”ืื•ืฉืจ.

ื‘ื”ื•ืจืื•ืช ื”ื ืคื•ืฆื•ืช ืœืฉืจืช ื”-proxy Squid, ื”ื ืืคื™ืœื• ืžืฆื™ืขื™ื ืœื™ืฆื•ืจ ืื™ืฉื•ืจ ืžืฉืœืš ื•ืœื”ืชืงื™ืŸ ืื•ืชื• ืขืœ ืœืงื•ื—ื•ืช, ื•ื–ื” ืฉื˜ื•ืช ืžื•ื—ืœื˜ืช ืœื›ืœ ื”ืคื—ื•ืช, ืœื ืจืฆื™ื•ื ืœื™ืช ื•ื ืจืื™ืช ื›ืžื• ื”ืชืงืคืช MITM. ืื ื™ ื™ื•ื“ืข ืฉSquid ื›ื‘ืจ ื™ื›ื•ืœ ืœืขืฉื•ืช ืžืฉื”ื• ื“ื•ืžื”, ืื‘ืœ ืžืืžืจ ื–ื” ืขื•ืกืง ื‘ืฉื™ื˜ืช ืขื‘ื•ื“ื” ืžื•ื›ื—ืช ื‘ืืžืฆืขื•ืช 3proxy ืž-3APA3A ื”ืžื›ื•ื‘ื“.

ื‘ื”ืžืฉืš, ื ื‘ื—ืŸ ื‘ืคื™ืจื•ื˜ ืืช ืชื”ืœื™ืš ื‘ื ื™ื™ืช 3proxy ืžืžืงื•ืจ, ืชืฆื•ืจืชื•, ืคืจื•ืงืกื™ ืžืœื ื•ืกืœืงื˜ื™ื‘ื™ ื‘ืืžืฆืขื•ืช NAT, ื”ืคืฆืช ืขืจื•ืฆื™ื ืœืžืกืคืจ ืฉืจืชื™ ืคืจื•ืงืกื™ ื—ื™ืฆื•ื ื™ื™ื ื•ื›ืŸ ืฉื™ืžื•ืฉ ื‘ื ืชื‘ ื•ื‘ืžืกืœื•ืœื™ื ืกื˜ื˜ื™ื™ื. ืื ื• ืžืฉืชืžืฉื™ื ื‘ื“ื‘ื™ืืŸ 9 x64 ื›ืžืขืจื›ืช ื”ื”ืคืขืœื”. ื”ืชื—ืœ!

ื”ืชืงื ืช 3proxy ื•ื”ืคืขืœืช ืฉืจืช ืคืจื•ืงืกื™ ืจื’ื™ืœ

1. ื”ืชืงืŸ ifconfig (ืžื—ื‘ื™ืœืช net-tools)
apt-get install net-tools
2. ื”ืชืงืŸ ืืช Midnight Commander
apt-get install mc
3. ื™ืฉ ืœื ื• ื›ืขืช 2 ืžืžืฉืงื™ื:
enp0s3 - ื—ื™ืฆื•ื ื™, ืžืกืชื›ืœ ืขืœ ื”ืื™ื ื˜ืจื ื˜
enp0s8 - ืคื ื™ืžื™, ื—ื™ื™ื‘ ืœื”ืกืชื›ืœ ืœืชื•ืš ื”ืจืฉืช ื”ืžืงื•ืžื™ืช
ื‘ื”ืคืฆื•ืช ืื—ืจื•ืช ื”ืžื‘ื•ืกืกื•ืช ืขืœ ื“ื‘ื™ืืŸ, ื”ืžืžืฉืงื™ื ื ืงืจืื™ื ื‘ื“ืจืš ื›ืœืœ eth0 ื•-eth1.
ifconfig -a

ืžืžืฉืงื™ืenp0s3: flags=4163 mtu 1500
inet 192.168.23.11 ืžืกื™ื›ืช ืจืฉืช 255.255.255.0 ืฉื™ื“ื•ืจ 192.168.23.255
inet6 fe80::a00:27ff:fec2:bae4 prefixlen 64 scopeid 0x20 ether 08:00:27:c2:ba:e4 txqueuelen 1000 (Ethernet)
ืžื ื•ืช RX 6412 ื‘ืชื™ื 8676619 (8.2 MiB)
ืฉื’ื™ืื•ืช RX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืžืกื’ืจืช 0
ืžื ื•ืช TX 1726 ื‘ืชื™ื 289128 (282.3 KiB)
ืฉื’ื™ืื•ืช TX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืกืคืง 0 ื”ืชื ื’ืฉื•ื™ื•ืช 0

enp0s8: flags=4098 mtu 1500
ether 08:00:27:79:a7:e3 txqueuelen 1000 (Ethernet)
ืžื ื•ืช RX 0 ื‘ืชื™ื 0 (0.0 B)
ืฉื’ื™ืื•ืช RX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืžืกื’ืจืช 0
ืžื ื•ืช TX 0 ื‘ืชื™ื 0 (0.0 B)
ืฉื’ื™ืื•ืช TX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืกืคืง 0 ื”ืชื ื’ืฉื•ื™ื•ืช 0

ื”ื ื”: ื“ื’ืœื™ื=73 mtu 65536
inet 127.0.0.1 ืžืกื™ื›ืช ืจืฉืช 255.0.0.0
inet6 ::1 prefixlen 128 scopeid 0x10 loop txqueuelen 1 (Loopback ืžืงื•ืžื™)
ืžื ื•ืช RX 0 ื‘ืชื™ื 0 (0.0 B)
ืฉื’ื™ืื•ืช RX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืžืกื’ืจืช 0
ืžื ื•ืช TX 0 ื‘ืชื™ื 0 (0.0 B)
ืฉื’ื™ืื•ืช TX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืกืคืง 0 ื”ืชื ื’ืฉื•ื™ื•ืช 0

ืžืžืฉืง enp0s8 ืื™ื ื• ื‘ืฉื™ืžื•ืฉ ื›ืขืช, ืื ื• ื ืคืขื™ืœ ืื•ืชื• ื›ืืฉืจ ื ืจืฆื” ืœื”ืฉืชืžืฉ ื‘ืชืฆื•ืจืช Proxy NAT ืื• NAT. ืื– ื–ื” ื™ื”ื™ื” ื”ื’ื™ื•ื ื™ ืœื”ืงืฆื•ืช ืœื• IP ืกื˜ื˜ื™.

4. ื‘ื•ืื• ื ืชื—ื™ืœ ืœื”ืชืงื™ืŸ ืืช 3proxy

4.1 ื”ืชืงื ืช ื—ื‘ื™ืœื•ืช ื‘ืกื™ืกื™ื•ืช ืœื”ื™ื“ื•ืจ 3proxy ืžืžืงื•ืจื•ืช

root@debian9:~# apt-get install build-essential libevent-dev libssl-dev -y

4.2. ื‘ื•ืื• ื ื™ืฆื•ืจ ืชื™ืงื™ื” ืœื”ื•ืจื“ืช ื”ืืจื›ื™ื•ืŸ ืขื ืžืงื•ืจื•ืช

root@debian9:~# mkdir -p /opt/proxy

4.3. ื‘ื•ื ื ืœืš ืœืชื™ืงื™ื” ื”ื–ื•

root@debian9:~# cd /opt/proxy

4.4. ืขื›ืฉื™ื• ื‘ื•ืื• ื ื•ืจื™ื“ ืืช ื—ื‘ื™ืœืช ื”-3proxy ื”ืขื“ื›ื ื™ืช ื‘ื™ื•ืชืจ. ื‘ื–ืžืŸ ื›ืชื™ื‘ืช ืฉื•ืจื•ืช ืืœื”, ื”ื’ืจืกื” ื”ื™ืฆื™ื‘ื” ื”ืื—ืจื•ื ื” ื”ื™ื™ืชื” 0.8.12 (18/04/2018) ื”ื•ืจื“ ืื•ืชื” ืžื”ืืชืจ ื”ืจืฉืžื™ ืฉืœ 3proxy

root@debian9:/opt/proxy# wget https://github.com/z3APA3A/3proxy/archive/0.8.12.tar.gz

4.5. ื‘ื•ื ื ืคืจืง ืืช ื”ืืจื›ื™ื•ืŸ ืฉื”ื•ืจื“ืช

root@debian9:/opt/proxy# tar zxvf 0.8.12.tar.gz

4.6. ืขื‘ื•ืจ ืืœ ื”ืกืคืจื™ื™ื” ื”ืคืจื•ืžื” ื›ื“ื™ ืœื‘ื ื•ืช ืืช ื”ืชื•ื›ื ื™ืช

root@debian9:/opt/proxy# cd 3proxy-0.8.12

4.7. ืœืื—ืจ ืžื›ืŸ, ืขืœื™ื ื• ืœื”ื•ืกื™ืฃ ืฉื•ืจื” ืœืงื•ื‘ืฅ ื”ื›ื•ืชืจืช ื›ืš ืฉื”ืฉืจืช ืฉืœื ื• ื™ื”ื™ื” ืื ื•ื ื™ืžื™ ืœื—ืœื•ื˜ื™ืŸ (ื–ื” ื‘ืืžืช ืขื•ื‘ื“, ื”ื›ืœ ื ื‘ื“ืง, ื›ืชื•ื‘ื•ืช ื”-IP ืฉืœ ื”ืœืงื•ื— ืžื•ืกืชืจื•ืช)

root@debian9:/opt/proxy/3proxy-0.8.12# nano +29 src/proxy.h

ื”ื•ืกืฃ ืฉื•ืจื”

#define ANONYMOUS 1

ื”ืงืฉ Ctrl+x ื•-Enter ื›ื“ื™ ืœืฉืžื•ืจ ืืช ื”ืฉื™ื ื•ื™ื™ื.

4.8. ื‘ื•ืื• ื ืชื—ื™ืœ ืœื”ืจื›ื™ื‘ ืืช ื”ืชื•ื›ื ื™ืช

root@debian9:/opt/proxy/3proxy-0.8.12# make -f Makefile.Linux

Makelogmake[2]: ืขื–ื™ื‘ืช ื”ืกืคืจื™ื™ื” '/opt/proxy/3proxy-0.8.12/src/plugins/TransparentPlugin'
make[1]: ื™ืฆื™ืื” ืžื”ืกืคืจื™ื™ื” '/opt/proxy/3proxy-0.8.12/src'

ืื™ืŸ ืฉื’ื™ืื•ืช, ื‘ื•ืื• ื ืžืฉื™ืš.

4.9. ื”ืชืงืŸ ืืช ื”ืชื•ื›ื ื™ืช ื‘ืžืขืจื›ืช

root@debian9:/opt/proxy/3proxy-0.8.12# make -f Makefile.Linux install

4.10. ืขื‘ื•ืจ ืืœ ืกืคืจื™ื™ืช ื”ืฉื•ืจืฉ ื•ื‘ื“ื•ืง ื”ื™ื›ืŸ ื”ื•ืชืงื ื” ื”ืชื•ื›ื ื”

root@debian9:/opt/proxy/3proxy-0.8.12# cd ~/
root@debian9:~# whereis 3proxy

3proxy: /usr/local/bin/3proxy /usr/local/etc/3proxy

4.11. ื‘ื•ืื• ื ื™ืฆื•ืจ ืชื™ืงื™ื” ืœืงื•ื‘ืฆื™ ืชืฆื•ืจื” ื•ื™ื•ืžื ื™ื ื‘ืกืคืจื™ื™ืช ื”ื‘ื™ืช ืฉืœ ื”ืžืฉืชืžืฉ

root@debian9:~# mkdir -p /home/joke/proxy/logs

4.12. ืขื‘ื•ืจ ืืœ ื”ืกืคืจื™ื™ื” ืฉื‘ื” ืฆืจื™ื›ื” ืœื”ื™ื•ืช ื”ืชืฆื•ืจื”

root@debian9:~# cd /home/joke/proxy/

4.13. ืฆื•ืจ ืงื•ื‘ืฅ ืจื™ืง ื•ื”ืขืชืง ืืช ื”ืชืฆื•ืจื” ืœืฉื

root@debian9:/home/joke/proxy# cat > 3proxy.conf

3proxy.confื“ืžื•ืŸ
pidfile /home/joke/proxy/3proxy.pid
nserver 8.8.8.8
nscache 65536
ื‘ื•ื“ืง ืžืฉืชืžืฉื™ื: CL:1234
ืคืกืง ื–ืžืŸ 1 5 30 60 180 1800 16 60
log /home/joke/proxy/logs/3proxy.log D
logformat "- +_L%t.%. %N.%p %E %U %C:%c %R:%r %O %I %h %T"
ืกื•ื‘ื‘ 3
ืื•ืช ื—ื–ืง
ืกื•ืžืง
ืœืืคืฉืจ ื‘ื•ื“ืง
ื’ืจื‘ื™ื™ื -p3128
proxy -p8080

ื›ื“ื™ ืœืฉืžื•ืจ, ื”ืงืฉ Ctrl + Z

4.14. ื‘ื•ืื• ื ื™ืฆื•ืจ ืงื•ื‘ืฅ pid ื›ื“ื™ ืฉืœื ื™ื”ื™ื• ืฉื’ื™ืื•ืช ื‘ืžื”ืœืš ื”ืืชื—ื•ืœ.

root@debian9:/home/joke/proxy# cat > 3proxy.pid

ื›ื“ื™ ืœืฉืžื•ืจ, ื”ืงืฉ Ctrl + Z

4.15. ื‘ื•ืื• ืœื”ืคืขื™ืœ ืืช ืฉืจืช ื”-proxy!

root@debian9:/home/joke/proxy# 3proxy /home/joke/proxy/3proxy.conf

4.16. ื‘ื•ื ื ืจืื” ืื โ€‹โ€‹ื”ืฉืจืช ืžืื–ื™ืŸ ื‘ืคื•ืจื˜ื™ื

root@debian9:~/home/joke/proxy# netstat -nlp

ื™ื•ืžืŸ netstatื—ื™ื‘ื•ืจื™ ืื™ื ื˜ืจื ื˜ ืคืขื™ืœื™ื (ืฉืจืชื™ื ื‘ืœื‘ื“)
Proto Recv-Q Send-Q ื›ืชื•ื‘ืช ืžืงื•ืžื™ืช ื›ืชื•ื‘ืช ื–ืจื” ืžื“ื™ื ื” PID/ืฉื ืชื•ื›ื ื™ืช
tcp 0 0 0.0.0.0:8080 0.0.0.0:* LISTEN 504/3proxy
tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 338/sshd
tcp 0 0 0.0.0.0:3128 0.0.0.0:* LISTEN 504/3proxy
tcp6 0 0 :::22 :::* LISTEN 338/sshd
udp 0 0 0.0.0.0:68 0.0.0.0:* 352/dhclient

ื›ืคื™ ืฉื ื›ืชื‘ ื‘ืชืฆื•ืจื”, ืคืจื•ืงืกื™ ื”ืื™ื ื˜ืจื ื˜ ืฉืœื ื• ืžืงืฉื™ื‘ ืœื™ืฆื™ืื” 8080, Proxy Socks5 ืžืงืฉื™ื‘ ืœื™ืฆื™ืื” 3128.

4.17. ื›ื“ื™ ืœื”ืคืขื™ืœ ืื•ื˜ื•ืžื˜ื™ืช ืืช ืฉื™ืจื•ืช ื”-proxy ืœืื—ืจ ืืชื—ื•ืœ ืžื—ื“ืฉ, ืขืœื™ืš ืœื”ื•ืกื™ืฃ ืื•ืชื• ืœ-cron.

root@debian9:/home/joke/proxy# crontab -e

ื”ื•ืกืฃ ืฉื•ืจื”

@reboot /usr/local/bin/3proxy /home/joke/proxy/3proxy.conf

ืื ื• ืœื•ื—ืฆื™ื ืขืœ Enter, ืžื›ื™ื•ื•ืŸ ืฉ-cron ืืžื•ืจ ืœืจืื•ืช ืืช ืชื• ืกื•ืฃ ื”ืฉื•ืจื”, ื•ืœืฉืžื•ืจ ืืช ื”ืงื•ื‘ืฅ.

ืืžื•ืจื” ืœื”ื™ื•ืช ื”ื•ื“ืขื” ืขืœ ื”ืชืงื ืช crontab ื—ื“ืฉ.

crontab: ื”ืชืงื ืช crontab ื—ื“ืฉ

4.18. ื‘ื•ื ื ืืชื—ืœ ืืช ื”ืžืขืจื›ืช ื•ื ื ืกื” ืœื”ืชื—ื‘ืจ ื“ืจืš ื”ื“ืคื“ืคืŸ ืœ-proxy. ื›ื“ื™ ืœื‘ื“ื•ืง, ืื ื• ืžืฉืชืžืฉื™ื ื‘ื“ืคื“ืคืŸ Firefox (ืขื‘ื•ืจ ืคืจื•ืงืกื™ ืื™ื ื˜ืจื ื˜) ื•ื‘ืชื•ืกืฃ FoxyProxy ืขื‘ื•ืจ socks5 ืขื ืื™ืžื•ืช.

root@debian9:/home/joke/proxy# reboot

4.19. ืœืื—ืจ ื‘ื“ื™ืงืช ืคืขื•ืœืช ื”-proxy ืœืื—ืจ ืืชื—ื•ืœ ืžื—ื“ืฉ, ืชื•ื›ืœ ืœื”ืฆื™ื’ ืืช ื”ื™ื•ืžื ื™ื. ื–ื” ืžืฉืœื™ื ืืช ื”ื’ื“ืจืช ืฉืจืช ื”-proxy.

ื™ื•ืžืŸ 3 ืคืจื•ืงืกื™1542573996.018 PROXY.8080 00000 ื‘ื•ื“ืง 192.168.23.10:50915 217.12.15.54:443 1193 6939 0 CONNECT_ads.yahoo.com:443_HTTP
1542574289.634 SOCK5.3128 00000 ื‘ื•ื“ืง 192.168.23.10:51193 54.192.13.69:443 0 0 0 CONNECT_normandy.cdn.mozilla.net:443

ื”ื’ื“ืจื” ื•ื”ืจืฆื” ืฉืœ ืชืฆื•ืจืช NAT ืฉืœ ืคืจื•ืงืกื™ ืฉืงื•ืฃ

ื‘ืชืฆื•ืจื” ื–ื•, ื›ืœ ื”ืžื›ืฉื™ืจื™ื ื‘ืจืฉืช ื”ืคื ื™ืžื™ืช ื™ืคืขืœื• ื‘ืฉืงื™ืคื•ืช ื‘ืื™ื ื˜ืจื ื˜ ื‘ืืžืฆืขื•ืช ืฉืจืช ืคืจื•ืงืกื™ ืžืจื•ื—ืง. ืœื—ืœื•ื˜ื™ืŸ ื›ืœ ื—ื™ื‘ื•ืจื™ ื”-TCP ื™ื•ืคื ื• ืœืฉืจืช ืคืจื•ืงืกื™ ืื—ื“ ืื• ื™ื•ืชืจ (ื‘ืืžืช ืžืจื—ื™ื‘ ืืช ืจื•ื—ื‘ ื”ืขืจื•ืฅ, ื“ื•ื’ืžื” ืœืชืฆื•ืจื” ืžืก' 2!). ืฉื™ืจื•ืช ื”-DNS ื™ืฉืชืžืฉ ื‘ื™ื›ื•ืœื•ืช 3proxy (dnspr). UDP ืœื "ื™ืฆื" ื”ื—ื•ืฆื”, ืžื›ื™ื•ื•ืŸ ืฉืื ื—ื ื• ืขื“ื™ื™ืŸ ืœื ืžืฉืชืžืฉื™ื ื‘ืžื ื’ื ื•ืŸ ื”ืขื‘ืจื” (ืžื•ืฉื‘ืช ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ื‘ืœื™ื‘ืช ืœื™ื ื•ืงืก).

1. ื”ื’ื™ืข ื”ื–ืžืŸ ืœื”ืคืขื™ืœ ืืช ืžืžืฉืง enp0s8

root@debian9:~# nano /etc/network/interfaces

ืงื•ื‘ืฅ /etc/network/interfaces# ืงื•ื‘ืฅ ื–ื” ืžืชืืจ ืืช ืžืžืฉืงื™ ื”ืจืฉืช ื–ืžื™ื ื™ื ื‘ืžืขืจื›ืช
# ื”ื•ืคืขืœ ื•ืื™ืš ืืœื™ื”ื. ืœืงื‘ืœืช ืžื™ื“ืข ื ื•ืกืฃ, ืจืื” ืžืžืฉืงื™ื (5).

ืžืงื•ืจ /etc/network/interfaces.d/*

# ืžืžืฉืง ืจืฉืช loopback
ื”ืื•ื˜ื•ืžื˜ื™ lo
iface lo inet loopback

# ืžืžืฉืง ื”ืจืฉืช ื”ืจืืฉื™
ืืคืฉืจ-hotplug enp0s3
iface enp0s3 inet dhcp

# ืžืžืฉืง ื”ืจืฉืช ื”ืžืฉื ื™
ืืคืฉืจ-hotplug enp0s8
iface enp0s8 inet ืกื˜ื˜ื™
ื›ืชื•ื‘ืช 192.168.201.254
ืžืกื™ื›ืช ืจืฉืช 255.255.255.0

ื›ืืŸ ื”ืงืฆื™ื ื• ืœืžืžืฉืง enp0s8 ื›ืชื•ื‘ืช ืกื˜ื˜ื™ืช 192.168.201.254 ื•ืžืกื™ื›ื” 255.255.255.0
ืฉืžื•ืจ ืืช ื”ืชืฆื•ืจื” Ctrl+X ื•ื”ืคืขืœ ืžื—ื“ืฉ

root@debian9:~# reboot

2. ื‘ื“ื™ืงืช ื”ืžืžืฉืงื™ื

root@debian9:~# ifconfig

ื™ื•ืžืŸ ifconfigenp0s3: flags=4163 mtu 1500
inet 192.168.23.11 ืžืกื™ื›ืช ืจืฉืช 255.255.255.0 ืฉื™ื“ื•ืจ 192.168.23.255
inet6 fe80::a00:27ff:fec2:bae4 prefixlen 64 scopeid 0x20 ether 08:00:27:c2:ba:e4 txqueuelen 1000 (Ethernet)
RX ืžื ื•ืช 61 ื‘ืชื™ื 7873 (7.6 KiB)
ืฉื’ื™ืื•ืช RX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืžืกื’ืจืช 0
ืžื ื•ืช TX 65 ื‘ืชื™ื 10917 (10.6 KiB)
ืฉื’ื™ืื•ืช TX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืกืคืง 0 ื”ืชื ื’ืฉื•ื™ื•ืช 0

enp0s8: flags=4163 mtu 1500
inet 192.168.201.254 ืžืกื™ื›ืช ืจืฉืช 255.255.255.0 ืฉื™ื“ื•ืจ 192.168.201.255
inet6 fe80::a00:27ff:fe79:a7e3 prefixlen 64 scopeid 0x20 ether 08:00:27:79:a7:e3 txqueuelen 1000 (Ethernet)
ืžื ื•ืช RX 0 ื‘ืชื™ื 0 (0.0 B)
ืฉื’ื™ืื•ืช RX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืžืกื’ืจืช 0
ืžื ื•ืช TX 8 ื‘ืชื™ื 648 (648.0 B)
ืฉื’ื™ืื•ืช TX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืกืคืง 0 ื”ืชื ื’ืฉื•ื™ื•ืช 0

ื”ื ื”: ื“ื’ืœื™ื=73 mtu 65536
inet 127.0.0.1 ืžืกื™ื›ืช ืจืฉืช 255.0.0.0
inet6 ::1 prefixlen 128 scopeid 0x10 loop txqueuelen 1 (Loopback ืžืงื•ืžื™)
ืžื ื•ืช RX 0 ื‘ืชื™ื 0 (0.0 B)
ืฉื’ื™ืื•ืช RX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืžืกื’ืจืช 0
ืžื ื•ืช TX 0 ื‘ืชื™ื 0 (0.0 B)
ืฉื’ื™ืื•ืช TX 0 ื ืคืœื• 0 ื—ืจื™ืคื•ืช 0 ืกืคืง 0 ื”ืชื ื’ืฉื•ื™ื•ืช 0

3. ื”ื›ืœ ื”ืกืชื“ืจ, ืขื›ืฉื™ื• ืืชื” ืฆืจื™ืš ืœื”ื’ื“ื™ืจ ืืช 3proxy ืขื‘ื•ืจ ืคืจื•ืงืกื™ ืฉืงื•ืฃ.

root@debian9:~# cd /home/joke/proxy/
root@debian9:/home/joke/proxy# cat > 3proxytransp.conf

ื“ื•ื’ืžื” ืœืชืฆื•ืจื” ืฉืœ ืฉืจืช ืคืจื•ืงืกื™ ืฉืงื•ืฃ ืžืก' 1ื“ืžื•ืŸ
pidfile /home/joke/proxy/3proxy.pid
nserver 8.8.8.8
nscache 65536
ืคืกืง ื–ืžืŸ 1 5 30 60 180 1800 16 60
log /home/joke/proxy/logs/3proxy.log D
logformat "- +_L%t.%. %N.%p %E %U %C:%c %R:%r %O %I %h %T"
ืกื•ื‘ื‘ 3
ืกื•ืžืง
Auth iponly
dnspr
ืœื”ืชื™ืจ *
ืื‘ 1000 ื’ืจื‘ื™ื™ื5 IP_ADDRESS ืฉืœ EXTERNAL_PROXY 3128 ื‘ื•ื“ืง 1234
plugin /opt/proxy/3proxy-0.8.12/src/TransparentPlugin.ld.so transparent_plugin
tcppm -i0.0.0.0 888 127.0.0.1 11111

4. ื›ืขืช ืื ื• ืžืฉื™ืงื™ื ืืช 3proxy ืขื ื”ืชืฆื•ืจื” ื”ื—ื“ืฉื”
root@debian9:/home/joke/proxy# /usr/local/bin/3proxy /home/joke/proxy/3proxytransp.conf

5. ื”ื•ืกืฃ ืฉื•ื‘ ืœ-crontab
root@debian9:/home/joke/proxy# crontab -e
@reboot /usr/local/bin/3proxy /home/joke/proxy/3proxytransp.conf

6. ื‘ื•ื ื ืจืื” ืœืžื” ื”-proxy ืฉืœื ื• ืžืื–ื™ืŸ ืขื›ืฉื™ื•
root@debian9:~# netstat -nlp

ื™ื•ืžืŸ netstatื—ื™ื‘ื•ืจื™ ืื™ื ื˜ืจื ื˜ ืคืขื™ืœื™ื (ืฉืจืชื™ื ื‘ืœื‘ื“)
Proto Recv-Q Send-Q ื›ืชื•ื‘ืช ืžืงื•ืžื™ืช ื›ืชื•ื‘ืช ื–ืจื” ืžื“ื™ื ื” PID/ืฉื ืชื•ื›ื ื™ืช
tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 349/sshd
tcp 0 0 0.0.0.0:888 0.0.0.0:* LISTEN 354/3proxy
tcp6 0 0 :::22 :::* LISTEN 349/sshd
udp 0 0 0.0.0.0:53 0.0.0.0:* 354/3proxy
udp 0 0 0.0.0.0:68 0.0.0.0:* 367/dhclient

7. ื›ืขืช ื”-proxy ืžื•ื›ืŸ ืœืงื‘ืœ ื›ืœ ื—ื™ื‘ื•ืจื™ TCP ื‘ื™ืฆื™ืื” 888, DNS ื‘ื™ืฆื™ืื” 53, ื›ืš ืฉื ื™ืชืŸ ื™ื”ื™ื” ืœื”ืคื ื•ืช ืื•ืชื ืœ-proxy socks5 ื”ืžืจื•ื—ืง ื•ืœ-DNS Google 8.8.8.8. ื›ืœ ืžื” ืฉืขืœื™ื ื• ืœืขืฉื•ืช ื”ื•ื ืœื”ื’ื“ื™ืจ ื ื˜ืคื™ืœื˜ืจ (iptables) ื•ื›ืœืœื™ DHCP ืœื”ื ืคืงืช ื›ืชื•ื‘ื•ืช.

8. ื”ืชืงืŸ ืืช ื”ื—ื‘ื™ืœื” iptables-persistent ื•-dhcpd

root@debian9:~# apt-get install iptables-persistent isc-dhcp-server

9. ืขืจื•ืš ืืช ืงื•ื‘ืฅ ื”ืืชื—ื•ืœ ืฉืœ dhcpd
root@debian9:~# nano /etc/dhcp/dhcpd.conf

dhcpd.conf# dhcpd.conf
#
# ืงื•ื‘ืฅ ืชืฆื•ืจื” ืœื“ื•ื’ืžื” ืขื‘ื•ืจ ISC dhcpd
#

# ื”ื’ื“ืจื•ืช ืืคืฉืจื•ื™ื•ืช ืžืฉื•ืชืคื•ืช ืœื›ืœ ื”ืจืฉืชื•ืช ื”ื ืชืžื›ื•ืช...
ืืคืฉืจื•ืช ืฉื ื“ื•ืžื™ื™ืŸ "example.org";
ืืคืฉืจื•ืช ืฉืจืชื™ ื“ื•ืžื™ื™ืŸ ns1.example.org, ns2.example.org;

ื–ืžืŸ ื‘ืจื™ืจืช ืžื—ื“ืœ ืœื—ื›ื™ืจื” 600;
ืžืงืกื™ืžื•ื-ื–ืžืŸ ื—ื›ื™ืจื” 7200;

ddns-update-style none;

# ืื ืฉืจืช DHCP ื–ื” ื”ื•ื ืฉืจืช ื”-DHCP ื”ืจืฉืžื™ ืขื‘ื•ืจ ื”ืžืงื•ืžื™
# ืจืฉืช, ื”ื”ื ื—ื™ื” ื”ืกืžื›ื•ืชื™ืช ืฆืจื™ื›ื” ืœื”ื™ื•ืช ืœืœื ื”ืขืจื•ืช.

ืžื•ึผืกืžึธืš;

# ืชืฆื•ืจื” ืžืขื˜ ืฉื•ื ื” ืขื‘ื•ืจ ืชืช ืจืฉืช ืคื ื™ืžื™ืช.
ืจืฉืช ืžืฉื ื” 192.168.201.0 ืžืกื™ื›ืช ืจืฉืช 255.255.255.0 {
ื˜ื•ื•ื— 192.168.201.10 192.168.201.250;
ืืคืฉืจื•ืช ืฉืจืชื™ ื“ื•ืžื™ื™ืŸ ืฉืžื•ืช 192.168.201.254;
ื ืชื‘ื™ ืื•ืคืฆื™ื•ืช 192.168.201.254;
ืืคืฉืจื•ืช ืฉื™ื“ื•ืจ ืืคืฉืจื•ืช 192.168.201.255;
ื–ืžืŸ ื‘ืจื™ืจืช ืžื—ื“ืœ ืœื—ื›ื™ืจื” 600;
ืžืงืกื™ืžื•ื-ื–ืžืŸ ื—ื›ื™ืจื” 7200;
}

11. ื”ืคืขืœ ืžื—ื“ืฉ ื•ื‘ื“ื•ืง ืืช ื”ืฉื™ืจื•ืช ื‘ื™ืฆื™ืื” 67
root@debian9:~# reboot
root@debian9:~# netstat -nlp

ื™ื•ืžืŸ netstatื—ื™ื‘ื•ืจื™ ืื™ื ื˜ืจื ื˜ ืคืขื™ืœื™ื (ืฉืจืชื™ื ื‘ืœื‘ื“)
Proto Recv-Q Send-Q ื›ืชื•ื‘ืช ืžืงื•ืžื™ืช ื›ืชื•ื‘ืช ื–ืจื” ืžื“ื™ื ื” PID/ืฉื ืชื•ื›ื ื™ืช
tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 389/sshd
tcp 0 0 0.0.0.0:888 0.0.0.0:* LISTEN 310/3proxy
tcp6 0 0 :::22 :::* LISTEN 389/sshd
udp 0 0 0.0.0.0:20364 0.0.0.0:* 393/dhcpd
udp 0 0 0.0.0.0:53 0.0.0.0:* 310/3proxy
udp 0 0 0.0.0.0:67 0.0.0.0:* 393/dhcpd
udp 0 0 0.0.0.0:68 0.0.0.0:* 405/dhclient
udp6 0 0 :::31728 :::* 393/dhcpd
raw 0 0 0.0.0.0:1 0.0.0.0:* 393/dhcpd

12. ื›ืœ ืžื” ืฉื ื•ืชืจ ื”ื•ื ืœื”ืคื ื•ืช ืืช ื›ืœ ื‘ืงืฉื•ืช ื”-tcp ืœื™ืฆื™ืื” 888 ื•ืœืฉืžื•ืจ ืืช ื”ื›ืœืœ ื‘-iptables

root@debian9:~# iptables -t nat -A PREROUTING -s 192.168.201.0/24 -p tcp -j REDIRECT --to-ports 888

root@debian9:~# iptables-save > /etc/iptables/rules.v4

13. ื›ื“ื™ ืœื”ืจื—ื™ื‘ ืืช ืจื•ื—ื‘ ื”ืคืก ืฉืœ ื”ืขืจื•ืฅ, ืืชื” ื™ื›ื•ืœ ืœื”ืฉืชืžืฉ ื‘ืžืกืคืจ ืฉืจืชื™ ืคืจื•ืงืกื™ ื‘ื‘ืช ืื—ืช. ื”ืกื›ื•ื ื”ื›ื•ืœืœ ื—ื™ื™ื‘ ืœื”ื™ื•ืช 1000. ื—ื™ื‘ื•ืจื™ื ื—ื“ืฉื™ื ื ื•ืฆืจื™ื ื‘ื”ืกืชื‘ืจื•ืช ืฉืœ 0.2, 0.2, 0.2, 0.2, 0,1, 0,1 ืœืฉืจืชื™ ื”-proxy ืฉืฆื•ื™ื ื•.

ื”ืขืจื”: ืื ื™ืฉ ืœื ื• ืคืจื•ืงืกื™ ืื™ื ื˜ืจื ื˜, ืื– ื‘ืžืงื•ื socks5 ืื ื—ื ื• ืฆืจื™ื›ื™ื ืœื›ืชื•ื‘ connect, if socks4, ืื– socks4 (socks4 ืœื ืชื•ืžืš ื‘ื›ื ื™ืกื”/ืื™ืฉื•ืจ ืกื™ืกืžื”!)

ื“ื•ื’ืžื” ืœืชืฆื•ืจื” ืฉืœ ืฉืจืช ืคืจื•ืงืกื™ ืฉืงื•ืฃ ืžืก' 2ื“ืžื•ืŸ
pidfile /home/joke/proxy/3proxy.pid
nserver 8.8.8.8
nscache 65536
maxconn 500
ืคืกืง ื–ืžืŸ 1 5 30 60 180 1800 16 60
log /home/joke/proxy/logs/3proxy.log D
logformat "- +_L%t.%. %N.%p %E %U %C:%c %R:%r %O %I %h %T"
ืกื•ื‘ื‘ 3
ืกื•ืžืง
Auth iponly
dnspr
ืœื”ืชื™ืจ *

ืื‘ 200 ื’ืจื‘ื™ื™ื5 IP_ADDRESS_EXTERNAL_PROXY#1 3128 ื‘ื•ื“ืง 1234
ืื‘ 200 ื’ืจื‘ื™ื™ื5 IP_ADDRESS_EXTERNAL_PROXY#2 3128 ื‘ื•ื“ืง 1234
ืื‘ 200 ื’ืจื‘ื™ื™ื5 IP_ADDRESS_EXTERNAL_PROXY#3 3128 ื‘ื•ื“ืง 1234
ืื‘ 200 ื’ืจื‘ื™ื™ื5 IP_ADDRESS_EXTERNAL_PROXY#4 3128 ื‘ื•ื“ืง 1234
ืื‘ 100 ื’ืจื‘ื™ื™ื5 IP_ADDRESS_EXTERNAL_PROXY#5 3128 ื‘ื•ื“ืง 1234
ืื‘ 100 ื’ืจื‘ื™ื™ื5 IP_ADDRESS_EXTERNAL_PROXY#6 3128 ื‘ื•ื“ืง 1234

plugin /opt/proxy/3proxy-0.8.12/src/TransparentPlugin.ld.so transparent_plugin
tcppm -i0.0.0.0 888 127.0.0.1 11111

ื”ื’ื“ืจื” ื•ื”ืจืฆื” ืฉืœ ืชืฆื•ืจืช NAT + Transparent Proxy

ื‘ืชืฆื•ืจื” ื–ื•, ื ืฉืชืžืฉ ื‘ืžื ื’ื ื•ืŸ ื”-NAT ื”ืจื’ื™ืœ ืขื ืคืจื•ืงืกื™ ืกืœืงื˜ื™ื‘ื™ ืื• ืฉืงื•ืฃ ืžืœื ืฉืœ ื›ืชื•ื‘ื•ืช ื‘ื•ื“ื“ื•ืช ืื• ืจืฉืชื•ืช ืžืฉื ื”. ืžืฉืชืžืฉื™ ืจืฉืช ืคื ื™ืžื™ื™ื ื™ืขื‘ื“ื• ืขื ืฉื™ืจื•ืชื™ื/ืจืฉืชื•ืช ืžืฉื ื” ืžืกื•ื™ืžื•ืช ืžื‘ืœื™ ืœื”ื‘ื™ืŸ ืฉื”ื ืขื•ื‘ื“ื™ื ื“ืจืš ืคืจื•ืงืกื™. ื›ืœ ื—ื™ื‘ื•ืจื™ https ืขื•ื‘ื“ื™ื ื‘ืกื“ืจ, ืื™ืŸ ืฆื•ืจืš ืœื™ืฆื•ืจ/ืœื”ื—ืœื™ืฃ ืื™ืฉื•ืจื™ื.

ืจืืฉื™ืช, ื”ื‘ื” ื ื—ืœื™ื˜ ืื™ืœื• ืจืฉืชื•ืช ืžืฉื ื”/ืฉื™ืจื•ืชื™ื ืื ื• ืจื•ืฆื™ื ืœื‘ืฆืข ืคืจื•ืงืกื™. ื”ื‘ื” ื ื ื™ื— ืฉืคืจื•ืงืกื™ ื—ื™ืฆื•ื ื™ื™ื ื ืžืฆืื™ื ื‘ืžืงื•ื ืฉื‘ื• ืคื•ืขืœ ืฉื™ืจื•ืช ื›ืžื• pandora.com. ื›ืขืช ื ื•ืชืจ ืœืงื‘ื•ืข ืืช ืจืฉืชื•ืช ื”ืžืฉื ื”/ื›ืชื•ื‘ื•ืช ืฉืœื•.

1. ืคื™ื ื’

root@debian9:~# ping pandora.com
PING pandora.com (208.85.40.20) 56(84) ื‘ืชื™ื ืฉืœ ื ืชื•ื ื™ื.

2. ื”ืงืœื“ BGP 208.85.40.20 ื‘-Google

ื‘ื•ื ื ืœืš ืœืืชืจ bgp.he.net/net/208.85.40.0/24#_netinfo
ื ื™ืชืŸ ืœืจืื•ืช ืฉืจืฉืช ื”ืžืฉื ื” ืฉืื ื™ ืžื—ืคืฉ ื”ื™ื AS40428 Pandora Media, Inc

bgp.he.net/net/208.85.40.0/24#_netinfo

ืคืชื™ื—ืช ืงื™ื“ื•ืžื•ืช v4

bgp.he.net/AS40428#_prefixes

ืœื”ืœืŸ ืจืฉืชื•ืช ื”ืžืฉื ื” ื”ื ื“ืจืฉื•ืช!

199.116.161.0/24
199.116.162.0/24
199.116.164.0/23
199.116.164.0/24
199.116.165.0/24
208.85.40.0/24
208.85.41.0/24
208.85.42.0/23
208.85.42.0/24
208.85.43.0/24
208.85.44.0/24
208.85.46.0/23
208.85.46.0/24
208.85.47.0/24

3. ื›ื“ื™ ืœืฆืžืฆื ืืช ืžืกืคืจ ืจืฉืชื•ืช ื”ืžืฉื ื”, ืขืœื™ืš ืœื‘ืฆืข ืฆื‘ื™ืจื”. ื›ื ืกื• ืœืืชืจ ip-calculator.ru/aggregate ื•ืœื”ืขืชื™ืง ืืช ื”ืจืฉื™ืžื” ืฉืœื ื• ืœืฉื. ื›ืชื•ืฆืื” ืžื›ืš - 6 ืจืฉืชื•ืช ืžืฉื ื” ื‘ืžืงื•ื 14.

199.116.161.0/24
199.116.162.0/24
199.116.164.0/23
208.85.40.0/22
208.85.44.0/24
208.85.46.0/23

4. ื—ื•ืงื™ iptables ื‘ืจื•ืจื™ื

root@debian9:~# iptables -F
root@debian9:~# iptables -X
root@debian9:~# iptables -t nat -F
root@debian9:~# iptables -t nat -X

ื”ืคืขืœ ืืช ืžื ื’ื ื•ืŸ ืงื“ื™ืžื” ื•-NAT

root@debian9:~# echo 1 > /proc/sys/net/ipv4/ip_forward
root@debian9:~# iptables -A FORWARD -i enp0s3 -o enp0s8 -j ACCEPT
root@debian9:~# iptables -A FORWARD -i enp0s8 -o enp0s3 -j ACCEPT
root@debian9:~# iptables -t nat -A POSTROUTING -o enp0s3 -s 192.168.201.0/24 -j MASQUERADE

ื›ื“ื™ ืœื”ื‘ื˜ื™ื— ืฉื”ืขื‘ืจื” ืžื•ืคืขืœืช ืœืฆืžื™ืชื•ืช ืœืื—ืจ ืืชื—ื•ืœ ืžื—ื“ืฉ, ื”ื‘ื” ื ืฉื ื” ืืช ื”ืงื•ื‘ืฅ

root@debian9:~# nano /etc/sysctl.conf

ื•ื‘ื˜ืœ ืœื”ื’ื™ื‘ ืœืฉื•ืจื”

net.ipv4.ip_forward = 1

Ctrl+X ื›ื“ื™ ืœืฉืžื•ืจ ืืช ื”ืงื•ื‘ืฅ

5. ืื ื• ืขื•ื˜ืคื™ื ืจืฉืชื•ืช ืžืฉื ื” ืฉืœ pandora.com ื‘ืคืจื•ืงืกื™

root@debian9:~# iptables -t nat -A PREROUTING -s 192.168.201.0/24 -d 199.116.161.0/24,199.116.162.0/24,199.116.164.0/23,208.85.40.0/22,208.85.44.0/24,208.85.46.0/23 -p tcp -j REDIRECT --to-ports 888

6. ื‘ื•ืื• ื ืฉืžื•ืจ ืขืœ ื”ื›ืœืœื™ื

root@debian9:~# iptables-save > /etc/iptables/rules.v4

ื”ื’ื“ืจื” ื•ื”ืจืฆื” ืฉืœ Proxy Transparent ื‘ืืžืฆืขื•ืช ืชืฆื•ืจืช ื”ื ืชื‘

ื‘ืชืฆื•ืจื” ื–ื•, ืฉืจืช ื”-proxy ื”ืฉืงื•ืฃ ื™ื›ื•ืœ ืœื”ื™ื•ืช ืžื—ืฉื‘ ื ืคืจื“ ืื• ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช ืžืื—ื•ืจื™ ื ืชื‘ ื‘ื™ืชื™/ืืจื’ื•ื ื™. ืžืกืคื™ืง ืœืจืฉื•ื ืžืกืœื•ืœื™ื ืกื˜ื˜ื™ื™ื ื‘ื ืชื‘ ืื• ื‘ืžื›ืฉื™ืจื™ื ื•ื›ืœ ื”ืžืฉื ื” ืชืฉืชืžืฉ ื‘ืคืจื•ืงืกื™ ืœืœื ืฆื•ืจืš ื‘ื”ื’ื“ืจื•ืช ื ื•ืกืคื•ืช.

ื—ึธืฉืื•ึผื‘! ื™ืฉ ืฆื•ืจืš ืฉื”ืฉืขืจ ืฉืœื ื• ื™ืงื‘ืœ IP ืกื˜ื˜ื™ ืžื”ื ืชื‘, ืื• ืฉื”ื•ื ืžื•ื’ื“ืจ ืœื”ื™ื•ืช ืกื˜ื˜ื™ ื‘ืขืฆืžื•.

1. ื”ื’ื“ืจ ื›ืชื•ื‘ืช ืฉืขืจ ืกื˜ื˜ื™ืช (ืžืชืื enp0s3)

root@debian9:~# nano /etc/network/interfaces

ืงื•ื‘ืฅ /etc/network/interfaces# ืงื•ื‘ืฅ ื–ื” ืžืชืืจ ืืช ืžืžืฉืงื™ ื”ืจืฉืช ื–ืžื™ื ื™ื ื‘ืžืขืจื›ืช
# ื”ื•ืคืขืœ ื•ืื™ืš ืืœื™ื”ื. ืœืงื‘ืœืช ืžื™ื“ืข ื ื•ืกืฃ, ืจืื” ืžืžืฉืงื™ื (5).

ืžืงื•ืจ /etc/network/interfaces.d/*

# ืžืžืฉืง ืจืฉืช loopback
ื”ืื•ื˜ื•ืžื˜ื™ lo
iface lo inet loopback

# ืžืžืฉืง ื”ืจืฉืช ื”ืจืืฉื™
ืืคืฉืจ-hotplug enp0s3
iface enp0s3 inet ืกื˜ื˜ื™
ื›ืชื•ื‘ืช 192.168.23.2
ืžืกื™ื›ืช ืจืฉืช 255.255.255.0
ืฉืขืจ 192.168.23.254

# ืžืžืฉืง ื”ืจืฉืช ื”ืžืฉื ื™
ืืคืฉืจ-hotplug enp0s8
iface enp0s8 inet ืกื˜ื˜ื™
ื›ืชื•ื‘ืช 192.168.201.254
ืžืกื™ื›ืช ืจืฉืช 255.255.255.0

2. ืืคืฉืจ ืœืžื›ืฉื™ืจื™ื ืžืจืฉืช ื”ืžืฉื ื” 192.168.23.0/24 ืœื”ืฉืชืžืฉ ื‘ืฉืจืช proxy

root@debian9:~# iptables -t nat -A PREROUTING -s 192.168.23.0/24 -d 199.116.161.0/24,199.116.162.0/24,199.116.164.0/23,208.85.40.0/22,208.85.44.0/24,208.85.46.0/23 -p tcp -j REDIRECT --to-ports 888

3. ื‘ื•ืื• ื ืฉืžื•ืจ ืขืœ ื”ื›ืœืœื™ื
root@debian9:~# iptables-save > /etc/iptables/rules.v4

4. ื‘ื•ืื• ื ืจืฉื•ื ืจืฉืชื•ืช ืžืฉื ื” ื‘ื ืชื‘

ืจืฉื™ืžืช ืจืฉืชื•ืช ื”ื ืชื‘ื™ื199.116.161.0 255.255.255.0 192.168.23.2
199.116.162.0 255.255.255.0 192.168.23.2
199.116.164.0 255.255.254.0 192.168.23.2
208.85.40.0 255.255.252.0 192.168.23.2
208.85.44.0 255.255.255.0 192.168.23.2
208.85.46.0 255.255.254.0 192.168.23.2

ื—ื•ืžืจื™ื/ืžืฉืื‘ื™ื ื‘ืฉื™ืžื•ืฉ

1. ื”ืืชืจ ื”ืจืฉืžื™ ืฉืœ ืชื•ื›ื ื™ืช 3proxy 3proxy.ru

2. ื”ื•ืจืื•ืช ืœื”ืชืงื ืช 3proxy ืžืžืงื•ืจ www.ekzorchik.ru/2015/02/how-to-take-your-socks-proxy

3. ืกื ื™ืฃ ืคื™ืชื•ื— 3proxy ื‘-GitHub github.com/z3APA3A/3proxy/issues/274

ืžืงื•ืจ: www.habr.com

ื”ื•ืกืคืช ืชื’ื•ื‘ื”