iptables -t nat -A PREROUTING -p tcp -d public_ip ...
# netmaker
q
iptables -t nat -A PREROUTING -p tcp -d public_ip --dport 53 -j DNAT --to private_ip:53 iptables -A FORWARD -p tcp -d private_ip --dport 53 -j ACCEPT