Advertisement
Guest User

Untitled

a guest
Aug 1st, 2011
170
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.44 KB | None | 0 0
  1. # Generated by iptables-save v1.4.8 on Mon Aug 1 14:43:42 2011
  2. *raw
  3. :PREROUTING ACCEPT [74236:54146656]
  4. :OUTPUT ACCEPT [66588:10380757]
  5. COMMIT
  6. # Completed on Mon Aug 1 14:43:42 2011
  7. # Generated by iptables-save v1.4.8 on Mon Aug 1 14:43:42 2011
  8. *nat
  9. :PREROUTING ACCEPT [8091:609257]
  10. :INPUT ACCEPT [3993:325664]
  11. :OUTPUT ACCEPT [23854:4801280]
  12. :POSTROUTING ACCEPT [6082:1144231]
  13. COMMIT
  14. # Completed on Mon Aug 1 14:43:42 2011
  15. # Generated by iptables-save v1.4.8 on Mon Aug 1 14:43:42 2011
  16. *mangle
  17. :PREROUTING ACCEPT [74236:54146656]
  18. :INPUT ACCEPT [74236:54146656]
  19. :FORWARD ACCEPT [0:0]
  20. :OUTPUT ACCEPT [66588:10380757]
  21. :POSTROUTING ACCEPT [48740:6714837]
  22. COMMIT
  23. # Completed on Mon Aug 1 14:43:42 2011
  24. # Generated by iptables-save v1.4.8 on Mon Aug 1 14:43:42 2011
  25. *filter
  26. :INPUT DROP [0:0]
  27. :FORWARD DROP [0:0]
  28. :OUTPUT DROP [0:0]
  29. -A INPUT -i lo -j ACCEPT
  30. -A INPUT -d $SERVER_IP -p icmp -m icmp --icmp-type 8 -m state --state NEW,RELATED,ESTABLISHED -j ACCEPT
  31. -A INPUT -d $SERVER_IP -p tcp -m tcp --sport 513:65535 --dport 1338 -m state --state NEW,ESTABLISHED -j ACCEPT
  32. -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  33. -A INPUT -d $SERVER_IP -p tcp -m tcp --sport 513:65535 --dport 1200 -m state --state RELATED,ESTABLISHED -j ACCEPT
  34. -A INPUT -d $SERVER_IP -p tcp -m tcp --sport 513:65535 --dport 1201 -m state --state NEW,ESTABLISHED -j ACCEPT
  35. -A INPUT -d $SERVER_IP -p tcp -m tcp --sport 513:65535 --dport 5000:5100 -j ACCEPT
  36. -A INPUT -j DROP
  37. -A OUTPUT -o lo -j ACCEPT
  38. -A OUTPUT -s $SERVER_IP -p icmp -m icmp --icmp-type 0 -m state --state RELATED,ESTABLISHED -j ACCEPT
  39. -A OUTPUT -s $SERVER_IP -p tcp -m tcp --sport 1338 --dport 513:65535 -m state --state ESTABLISHED -j ACCEPT
  40. -A OUTPUT -p udp -m udp --dport 20 -j ACCEPT
  41. -A OUTPUT -p udp -m udp --dport 53 -j ACCEPT
  42. -A OUTPUT -d $IP1 -p tcp -m tcp --dport 80 -j ACCEPT
  43. -A OUTPUT -d $IP2 -p tcp -m tcp --dport 80 -j ACCEPT
  44. -A OUTPUT -d $IP3 -p tcp -m tcp --dport 80 -j ACCEPT
  45. -A OUTPUT -d $IP4 -p tcp -m tcp --dport 80 -j ACCEPT
  46. -A OUTPUT -d $IP5 -p tcp -m tcp --dport 80 -j ACCEPT
  47. -A OUTPUT -s $SERVER_IP -p tcp -m tcp --sport 1200 --dport 513:65535 -m state --state RELATED,ESTABLISHED -j ACCEPT
  48. -A OUTPUT -s $SERVER_IP -p tcp -m tcp --sport 1201 --dport 513:65535 -m state --state NEW,ESTABLISHED -j ACCEPT
  49. -A OUTPUT -s $SERVER_IP -p tcp -m tcp --sport 5000:5100 --dport 513:65535 -j ACCEPT
  50. -A OUTPUT -j DROP
  51. COMMIT
  52. # Completed on Mon Aug 1 14:43:42 2011
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement