Advertisement
Guest User

Untitled

a guest
Mar 4th, 2015
187
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.88 KB | None | 0 0
  1. sudo iptables -F
  2. iptables -P INPUT DROP
  3. iptables -P OUTPUT ACCEPT
  4. iptables -A INPUT -i lo -j ACCEPT
  5. iptables -A INPUT -m conntrack --ctstate ESTABLISHED,RELATED -j ACCEPT
  6. iptables -A INPUT -s 207.253.220/22,216.113.0.0/22 -p tcp --dport 27015 -j ACCEPT
  7. iptables -A INPUT -s 207.253.220/22,216.113.0.0/22 -p tcp --dport 27016 -j ACCEPT
  8. iptables -A INPUT -p tcp --dport 27025 -j ACCEPT
  9. iptables -A INPUT -s 207.253.222.192/26,10.1.99.0/24 -p tcp --dport 22 -j ACCEPT
  10.  
  11. #ACCEPT PINGS
  12. iptables -A INPUT -p icmp -m icmp --icmp-type 3 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
  13. iptables -A INPUT -p icmp -m icmp --icmp-type 8 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
  14. iptables -A INPUT -p icmp -m icmp --icmp-type 11 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
  15. iptables -A INPUT -p icmp -m icmp --icmp-type 30 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
  16.  
  17. /sbin/iptables-save
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement