captive portal does not popup when this iptable rule is applied [on hold]











up vote
0
down vote

favorite












iptables -F
iptables -t mangle -N internet
iptables -t mangle -A PREROUTING -j internet
iptables -t mangle -A internet -j MARK --set-mark 99


the iptables entry below blocks all traffic but captive portal does not popup



iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


if ommitted captive portal does popup but some online games like mobile legends are able to pass. im guessing that if i add that -p all im also blocking the ckecking of the portal. I just dont know what it is.



iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 443 -j DNAT --to-destination 10.10.10.1:443
iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 80 -j DNAT --to-destination 10.10.10.1:80

iptables -A FORWARD -i eth0 -o eth1 -m state --state RELATED,ESTABLISHED -j ACCEPT
iptables -A FORWARD -i eth1 -o eth0 -j ACCEPT
iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE









share|improve this question









New contributor




user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.











put on hold as too broad by Rui F Ribeiro, RalfFriedl, G-Man, Christopher, msp9011 23 hours ago


Please edit the question to limit it to a specific problem with enough detail to identify an adequate answer. Avoid asking multiple distinct questions at once. See the How to Ask page for help clarifying this question. If this question can be reworded to fit the rules in the help center, please edit the question.















  • The captive portal activation is activated upon tests for the absence of a direct Internet connection. If you create a route for that it wont happen.
    – Rui F Ribeiro
    Dec 3 at 12:39

















up vote
0
down vote

favorite












iptables -F
iptables -t mangle -N internet
iptables -t mangle -A PREROUTING -j internet
iptables -t mangle -A internet -j MARK --set-mark 99


the iptables entry below blocks all traffic but captive portal does not popup



iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


if ommitted captive portal does popup but some online games like mobile legends are able to pass. im guessing that if i add that -p all im also blocking the ckecking of the portal. I just dont know what it is.



iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 443 -j DNAT --to-destination 10.10.10.1:443
iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 80 -j DNAT --to-destination 10.10.10.1:80

iptables -A FORWARD -i eth0 -o eth1 -m state --state RELATED,ESTABLISHED -j ACCEPT
iptables -A FORWARD -i eth1 -o eth0 -j ACCEPT
iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE









share|improve this question









New contributor




user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.











put on hold as too broad by Rui F Ribeiro, RalfFriedl, G-Man, Christopher, msp9011 23 hours ago


Please edit the question to limit it to a specific problem with enough detail to identify an adequate answer. Avoid asking multiple distinct questions at once. See the How to Ask page for help clarifying this question. If this question can be reworded to fit the rules in the help center, please edit the question.















  • The captive portal activation is activated upon tests for the absence of a direct Internet connection. If you create a route for that it wont happen.
    – Rui F Ribeiro
    Dec 3 at 12:39















up vote
0
down vote

favorite









up vote
0
down vote

favorite











iptables -F
iptables -t mangle -N internet
iptables -t mangle -A PREROUTING -j internet
iptables -t mangle -A internet -j MARK --set-mark 99


the iptables entry below blocks all traffic but captive portal does not popup



iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


if ommitted captive portal does popup but some online games like mobile legends are able to pass. im guessing that if i add that -p all im also blocking the ckecking of the portal. I just dont know what it is.



iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 443 -j DNAT --to-destination 10.10.10.1:443
iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 80 -j DNAT --to-destination 10.10.10.1:80

iptables -A FORWARD -i eth0 -o eth1 -m state --state RELATED,ESTABLISHED -j ACCEPT
iptables -A FORWARD -i eth1 -o eth0 -j ACCEPT
iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE









share|improve this question









New contributor




user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.











iptables -F
iptables -t mangle -N internet
iptables -t mangle -A PREROUTING -j internet
iptables -t mangle -A internet -j MARK --set-mark 99


the iptables entry below blocks all traffic but captive portal does not popup



iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


if ommitted captive portal does popup but some online games like mobile legends are able to pass. im guessing that if i add that -p all im also blocking the ckecking of the portal. I just dont know what it is.



iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 443 -j DNAT --to-destination 10.10.10.1:443
iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 80 -j DNAT --to-destination 10.10.10.1:80

iptables -A FORWARD -i eth0 -o eth1 -m state --state RELATED,ESTABLISHED -j ACCEPT
iptables -A FORWARD -i eth1 -o eth0 -j ACCEPT
iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE






iptables raspberry-pi captive-portal






share|improve this question









New contributor




user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.











share|improve this question









New contributor




user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.









share|improve this question




share|improve this question








edited Dec 3 at 12:27









Rui F Ribeiro

38.4k1478127




38.4k1478127






New contributor




user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.









asked Dec 3 at 12:23









user323996

1




1




New contributor




user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.





New contributor





user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.






user323996 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.




put on hold as too broad by Rui F Ribeiro, RalfFriedl, G-Man, Christopher, msp9011 23 hours ago


Please edit the question to limit it to a specific problem with enough detail to identify an adequate answer. Avoid asking multiple distinct questions at once. See the How to Ask page for help clarifying this question. If this question can be reworded to fit the rules in the help center, please edit the question.






put on hold as too broad by Rui F Ribeiro, RalfFriedl, G-Man, Christopher, msp9011 23 hours ago


Please edit the question to limit it to a specific problem with enough detail to identify an adequate answer. Avoid asking multiple distinct questions at once. See the How to Ask page for help clarifying this question. If this question can be reworded to fit the rules in the help center, please edit the question.














  • The captive portal activation is activated upon tests for the absence of a direct Internet connection. If you create a route for that it wont happen.
    – Rui F Ribeiro
    Dec 3 at 12:39




















  • The captive portal activation is activated upon tests for the absence of a direct Internet connection. If you create a route for that it wont happen.
    – Rui F Ribeiro
    Dec 3 at 12:39


















The captive portal activation is activated upon tests for the absence of a direct Internet connection. If you create a route for that it wont happen.
– Rui F Ribeiro
Dec 3 at 12:39






The captive portal activation is activated upon tests for the absence of a direct Internet connection. If you create a route for that it wont happen.
– Rui F Ribeiro
Dec 3 at 12:39












1 Answer
1






active

oldest

votes

















up vote
0
down vote













to answer my own question. this is what i did and it is now working well



iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


replaced with the code below



iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 444:65535 -j DNAT --to-destination 10.10.10.1





share|improve this answer








New contributor




Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.

























    1 Answer
    1






    active

    oldest

    votes








    1 Answer
    1






    active

    oldest

    votes









    active

    oldest

    votes






    active

    oldest

    votes








    up vote
    0
    down vote













    to answer my own question. this is what i did and it is now working well



    iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


    replaced with the code below



    iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 444:65535 -j DNAT --to-destination 10.10.10.1





    share|improve this answer








    New contributor




    Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
    Check out our Code of Conduct.






















      up vote
      0
      down vote













      to answer my own question. this is what i did and it is now working well



      iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


      replaced with the code below



      iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 444:65535 -j DNAT --to-destination 10.10.10.1





      share|improve this answer








      New contributor




      Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.




















        up vote
        0
        down vote










        up vote
        0
        down vote









        to answer my own question. this is what i did and it is now working well



        iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


        replaced with the code below



        iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 444:65535 -j DNAT --to-destination 10.10.10.1





        share|improve this answer








        New contributor




        Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
        Check out our Code of Conduct.









        to answer my own question. this is what i did and it is now working well



        iptables -t nat -A PREROUTING -m mark --mark 99 -p all -j DNAT --to-destination 10.10.10.1


        replaced with the code below



        iptables -t nat -A PREROUTING -m mark --mark 99 -p tcp --dport 444:65535 -j DNAT --to-destination 10.10.10.1






        share|improve this answer








        New contributor




        Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
        Check out our Code of Conduct.









        share|improve this answer



        share|improve this answer






        New contributor




        Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
        Check out our Code of Conduct.









        answered 2 days ago









        Ragnar2018

        1




        1




        New contributor




        Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
        Check out our Code of Conduct.





        New contributor





        Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
        Check out our Code of Conduct.






        Ragnar2018 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
        Check out our Code of Conduct.















            Popular posts from this blog

            サソリ

            広島県道265号伴広島線

            Accessing regular linux commands in Huawei's Dopra Linux