Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # Generated by iptables-save v1.4.8 on Mon Aug 1 14:43:42 2011
- *raw
- :PREROUTING ACCEPT [74236:54146656]
- :OUTPUT ACCEPT [66588:10380757]
- COMMIT
- # Completed on Mon Aug 1 14:43:42 2011
- # Generated by iptables-save v1.4.8 on Mon Aug 1 14:43:42 2011
- *nat
- :PREROUTING ACCEPT [8091:609257]
- :INPUT ACCEPT [3993:325664]
- :OUTPUT ACCEPT [23854:4801280]
- :POSTROUTING ACCEPT [6082:1144231]
- COMMIT
- # Completed on Mon Aug 1 14:43:42 2011
- # Generated by iptables-save v1.4.8 on Mon Aug 1 14:43:42 2011
- *mangle
- :PREROUTING ACCEPT [74236:54146656]
- :INPUT ACCEPT [74236:54146656]
- :FORWARD ACCEPT [0:0]
- :OUTPUT ACCEPT [66588:10380757]
- :POSTROUTING ACCEPT [48740:6714837]
- COMMIT
- # Completed on Mon Aug 1 14:43:42 2011
- # Generated by iptables-save v1.4.8 on Mon Aug 1 14:43:42 2011
- *filter
- :INPUT DROP [0:0]
- :FORWARD DROP [0:0]
- :OUTPUT DROP [0:0]
- -A INPUT -i lo -j ACCEPT
- -A INPUT -d $SERVER_IP -p icmp -m icmp --icmp-type 8 -m state --state NEW,RELATED,ESTABLISHED -j ACCEPT
- -A INPUT -d $SERVER_IP -p tcp -m tcp --sport 513:65535 --dport 1338 -m state --state NEW,ESTABLISHED -j ACCEPT
- -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A INPUT -d $SERVER_IP -p tcp -m tcp --sport 513:65535 --dport 1200 -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A INPUT -d $SERVER_IP -p tcp -m tcp --sport 513:65535 --dport 1201 -m state --state NEW,ESTABLISHED -j ACCEPT
- -A INPUT -d $SERVER_IP -p tcp -m tcp --sport 513:65535 --dport 5000:5100 -j ACCEPT
- -A INPUT -j DROP
- -A OUTPUT -o lo -j ACCEPT
- -A OUTPUT -s $SERVER_IP -p icmp -m icmp --icmp-type 0 -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A OUTPUT -s $SERVER_IP -p tcp -m tcp --sport 1338 --dport 513:65535 -m state --state ESTABLISHED -j ACCEPT
- -A OUTPUT -p udp -m udp --dport 20 -j ACCEPT
- -A OUTPUT -p udp -m udp --dport 53 -j ACCEPT
- -A OUTPUT -d $IP1 -p tcp -m tcp --dport 80 -j ACCEPT
- -A OUTPUT -d $IP2 -p tcp -m tcp --dport 80 -j ACCEPT
- -A OUTPUT -d $IP3 -p tcp -m tcp --dport 80 -j ACCEPT
- -A OUTPUT -d $IP4 -p tcp -m tcp --dport 80 -j ACCEPT
- -A OUTPUT -d $IP5 -p tcp -m tcp --dport 80 -j ACCEPT
- -A OUTPUT -s $SERVER_IP -p tcp -m tcp --sport 1200 --dport 513:65535 -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A OUTPUT -s $SERVER_IP -p tcp -m tcp --sport 1201 --dport 513:65535 -m state --state NEW,ESTABLISHED -j ACCEPT
- -A OUTPUT -s $SERVER_IP -p tcp -m tcp --sport 5000:5100 --dport 513:65535 -j ACCEPT
- -A OUTPUT -j DROP
- COMMIT
- # Completed on Mon Aug 1 14:43:42 2011
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement