iptables配置文件
# Generated by iptables-save v1.4.21 on Thu Sep 12 14:59:06 2019
*filter
:INPUT ACCEPT [33:4612]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [629:169198]
:Blacklist - [0:0]
:DOCKER - [0:0]
:DOCKER-ISOLATION - [0:0]
[0:0] -A INPUT -p tcp -m tcp --dport 7080 -j ACCEPT
[54:2544] -A INPUT -p tcp -m tcp --dport 7000 -j ACCEPT
[0:0] -A INPUT -p tcp -m tcp --dport 8080 -j ACCEPT
[549:85874] -A INPUT -j Blacklist
[516:81262] -A INPUT -m state --state RELATED,ESTABLISHED -m comment --comment "允许已经建立的连接" -j ACCEPT
[0:0] -A INPUT -i lo -m comment --comment "允许lo口所有流量通过" -j ACCEPT
[0:0] -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
[0:0] -A INPUT -i lo -j ACCEPT
[0:0] -A FORWARD -j DOCKER-ISOLATION
[0:0] -A FORWARD -o docker0 -j DOCKER
[0:0] -A FORWARD -o docker0 -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
[0:0] -A FORWARD -i docker0 ! -o docker0 -j ACCEPT
[0:0] -A FORWARD -i docker0 -o docker0 -j ACCEPT
[0:0] -A DOCKER -d 172.17.0.2/32 ! -i docker0 -o docker0 -p tcp -m tcp --dport 80 -j ACCEPT
[0:0] -A DOCKER-ISOLATION -j RETURN
COMMIT
# Completed on Thu Sep 12 14:59:06 2019
# Generated by iptables-save v1.4.21 on Thu Sep 12 14:59:06 2019
*nat
:PREROUTING ACCEPT [57:5320]
:INPUT ACCEPT [19:3520]
:OUTPUT ACCEPT [25:2088]
:POSTROUTING ACCEPT [25:2088]
:DOCKER - [0:0]
[20:3068] -A PREROUTING -m addrtype --dst-type LOCAL -j DOCKER
[0:0] -A OUTPUT ! -d 127.0.0.0/8 -m addrtype --dst-type LOCAL -j DOCKER
[0:0] -A POSTROUTING -s 172.17.0.0/16 ! -o docker0 -j MASQUERADE
[0:0] -A POSTROUTING -s 172.17.0.2/32 -d 172.17.0.2/32 -p tcp -m tcp --dport 80 -j MASQUERADE
[0:0] -A DOCKER -i docker0 -j RETURN
[8:328] -A DOCKER ! -i docker0 -p tcp -m tcp --dport 8080 -j DNAT --to-destination 172.17.0.2:80
COMMIT
# Completed on Thu Sep 12 14:59:06 2019
Frps 服务端配置文件
[common]
bind_port = 7000
bind_addr = 0.0.0.0
dashboard_port = 7080
dashboard_user = admin
dashboard_pwd = admin
vhost_http_port = 8080
Frp 客户端配置 frpc.ini (windows客户端)
[common]
server_addr = 45.82.11.11
server_port = 7000
[web]
type = http
local_port = 5080
remote_port = 8080
custom_domains = 45.82.11.11
如上设置以后,访问我公网IP:8080 并不能访问本地资源,只有将防火墙关闭才能访问

但是我防火墙是放开frp所用的端口的 不知道什么情况
顺便说一下 现在论坛发帖带代码高亮真的很爽!