版本>1·12时会设置FORWARD的默认规则被设置为DROP iptables-nL FORWARD 修改/lib/systemd/system/docker.service ExecStartPost=/sbin/iptables - P FORWARD ACCEPTExecReIoad=/bin/kill -s HUP $MAINPID 重载配置文件,重启服务 systemctl daemon-reloadsystemctl restart docker