Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Chain INPUT (policy DROP)
- target prot opt source destination
- ACCEPT tcp -- anywhere anywhere tcp dpt:ssh ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:http ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:https ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:ssh ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:https ctstate ESTABLISHED
- ACCEPT icmp -- anywhere anywhere icmp echo-reply
- ACCEPT icmp -- anywhere anywhere icmp echo-request
- ACCEPT all -- anywhere anywhere
- ACCEPT udp -- anywhere anywhere udp spt:domain
- ACCEPT tcp -- anywhere anywhere tcp dpt:smtp ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:imap ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:imaps ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:pop3 ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:pop3s ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:http limit: avg 25/min burst 100
- LOGGING all -- anywhere anywhere
- ACCEPT tcp -- anywhere anywhere tcp dpt:smtp ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:smtp
- Chain FORWARD (policy DROP)
- target prot opt source destination
- ACCEPT all -- anywhere anywhere
- Chain OUTPUT (policy DROP)
- target prot opt source destination
- ACCEPT tcp -- anywhere anywhere tcp spt:ssh ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:http ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:https ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:ssh ctstate NEW,ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp dpt:https ctstate NEW,ESTABLISHED
- ACCEPT icmp -- anywhere anywhere icmp echo-request
- ACCEPT icmp -- anywhere anywhere icmp echo-reply
- ACCEPT all -- anywhere anywhere
- ACCEPT udp -- anywhere anywhere udp dpt:domain
- ACCEPT tcp -- anywhere anywhere tcp spt:smtp ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:imap ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:imaps ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:pop3 ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:pop3s ctstate ESTABLISHED
- ACCEPT tcp -- anywhere anywhere tcp spt:smtp ctstate ESTABLISHED
- Chain LOGGING (1 references)
- target prot opt source destination
- LOG all -- anywhere anywhere limit: avg 2/min burst 5 LOG level debug prefix "IPTables Packet Dropped: "
- DROP all -- anywhere anywhere
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement