Don't like ads? PRO users don't see any ads ;-)
Guest

Untitled

By: a guest on Apr 1st, 2011  |  syntax: None  |  size: 10.82 KB  |  hits: 205  |  expires: Never
download  |  raw  |  embed  |  report abuse  |  print
Text below is selected. Please press Ctrl+C to copy to your clipboard. (⌘+C on Mac)
  1. * Core Netfilter Configuration
  2. *
  3. Netfilter NFQUEUE over NFNETLINK interface (NETFILTER_NETLINK_QUEUE) [N/m/y/?] (NEW) y
  4. Netfilter LOG over NFNETLINK interface (NETFILTER_NETLINK_LOG) [N/m/y/?] n
  5. Netfilter connection tracking support (NF_CONNTRACK) [Y/n/m/?] y
  6.   Connection tracking flow accounting (NF_CT_ACCT) [N/y/?] (NEW) y
  7.   Connection mark tracking support (NF_CONNTRACK_MARK) [N/y/?] (NEW) y
  8.   Connection tracking events (NF_CONNTRACK_EVENTS) [N/y/?] (NEW) y
  9.   DCCP protocol connection tracking support (EXPERIMENTAL) (NF_CT_PROTO_DCCP) [N/m/y/?] (NEW) y
  10.   SCTP protocol connection tracking support (EXPERIMENTAL) (NF_CT_PROTO_SCTP) [N/m/y/?] (NEW) y
  11.   UDP-Lite protocol connection tracking support (NF_CT_PROTO_UDPLITE) [N/m/y/?] (NEW) y
  12.   Amanda backup protocol support (NF_CONNTRACK_AMANDA) [N/m/y/?] (NEW) y
  13.   FTP protocol support (NF_CONNTRACK_FTP) [Y/n/m/?] y
  14.   H.323 protocol support (NF_CONNTRACK_H323) [Y/n/m/?] y
  15.   IRC protocol support (NF_CONNTRACK_IRC) [N/m/y/?] n
  16.   NetBIOS name service protocol support (NF_CONNTRACK_NETBIOS_NS) [N/m/y/?] (NEW) y
  17.   PPtP protocol support (NF_CONNTRACK_PPTP) [N/m/y/?] (NEW) y
  18.   SANE protocol support (EXPERIMENTAL) (NF_CONNTRACK_SANE) [N/m/y/?] (NEW) y
  19.   SIP protocol support (NF_CONNTRACK_SIP) [Y/n/m/?] y
  20.   TFTP protocol support (NF_CONNTRACK_TFTP) [Y/n/m/?] y
  21.   Connection tracking netlink interface (NF_CT_NETLINK) [N/m/y/?] n
  22.   Transparent proxying support (EXPERIMENTAL) (NETFILTER_TPROXY) [N/m/y/?] (NEW) y
  23. Netfilter Xtables support (required for ip_tables) (NETFILTER_XTABLES) [Y/?] y
  24.   "CLASSIFY" target support (NETFILTER_XT_TARGET_CLASSIFY) [N/m/y/?] (NEW) y
  25.   "CONNMARK" target support (NETFILTER_XT_TARGET_CONNMARK) [N/m/y/?] (NEW) y
  26.   "DSCP" and "TOS" target support (NETFILTER_XT_TARGET_DSCP) [N/m/y/?] (NEW) y
  27.   "MARK" target support (NETFILTER_XT_TARGET_MARK) [N/m/y/?] n
  28.   "NFLOG" target support (NETFILTER_XT_TARGET_NFLOG) [N/m/y/?] n
  29.   "NFQUEUE" target Support (NETFILTER_XT_TARGET_NFQUEUE) [N/m/y/?] (NEW) y
  30.   "RATEEST" target support (NETFILTER_XT_TARGET_RATEEST) [N/m/y/?] (NEW) y
  31.   "TPROXY" target support (EXPERIMENTAL) (NETFILTER_XT_TARGET_TPROXY) [N/m/y/?] (NEW) y
  32.   "TCPMSS" target support (NETFILTER_XT_TARGET_TCPMSS) [N/m/y/?] n
  33.   "TCPOPTSTRIP" target support (EXPERIMENTAL) (NETFILTER_XT_TARGET_TCPOPTSTRIP) [N/m/y/?] (NEW) y
  34.   "comment" match support (NETFILTER_XT_MATCH_COMMENT) [N/m/y/?] (NEW) y
  35.   "connbytes" per-connection counter match support (NETFILTER_XT_MATCH_CONNBYTES) [N/m/y/?] (NEW) y
  36.   "connlimit" match support" (NETFILTER_XT_MATCH_CONNLIMIT) [N/m/y/?] (NEW) y
  37.   "connmark" connection mark match support (NETFILTER_XT_MATCH_CONNMARK) [N/m/y/?] (NEW) y
  38.   "conntrack" connection tracking match support (NETFILTER_XT_MATCH_CONNTRACK) [Y/n/m/?] y
  39.   "dccp" protocol match support (NETFILTER_XT_MATCH_DCCP) [N/m/y/?] (NEW) y
  40.   "dscp" and "tos" match support (NETFILTER_XT_MATCH_DSCP) [N/m/y/?] (NEW) y
  41.   "esp" match support (NETFILTER_XT_MATCH_ESP) [N/m/y/?] (NEW) y
  42.   "hashlimit" match support (NETFILTER_XT_MATCH_HASHLIMIT) [N/m/y/?] (NEW) y
  43.   "helper" match support (NETFILTER_XT_MATCH_HELPER) [N/m/y/?] (NEW) y
  44.   "iprange" address range match support (NETFILTER_XT_MATCH_IPRANGE) [N/m/y/?] (NEW) y
  45.   "length" match support (NETFILTER_XT_MATCH_LENGTH) [Y/n/m/?] y
  46.   "limit" match support (NETFILTER_XT_MATCH_LIMIT) [N/m/y/?] (NEW) y
  47.   "mac" address match support (NETFILTER_XT_MATCH_MAC) [N/m/y/?] (NEW) y
  48.   "mark" match support (NETFILTER_XT_MATCH_MARK) [N/m/y/?] n
  49.   "multiport" Multiple port match support (NETFILTER_XT_MATCH_MULTIPORT) [N/m/y/?] (NEW) y
  50.   "owner" match support (NETFILTER_XT_MATCH_OWNER) [N/m/y/?] (NEW) y
  51.   IPsec "policy" match support (NETFILTER_XT_MATCH_POLICY) [N/m/y/?] n
  52.   "pkttype" packet type match support (NETFILTER_XT_MATCH_PKTTYPE) [N/m/y/?] (NEW) y
  53.   "quota" match support (NETFILTER_XT_MATCH_QUOTA) [N/m/y/?] (NEW) y
  54.   "rateest" match support (NETFILTER_XT_MATCH_RATEEST) [N/m/y/?] (NEW) y
  55.   "realm" match support (NETFILTER_XT_MATCH_REALM) [N/m/y/?] (NEW) y
  56.   "recent" match support (NETFILTER_XT_MATCH_RECENT) [N/m/y/?] (NEW) y
  57.     Enable obsolete /proc/net/ipt_recent (NETFILTER_XT_MATCH_RECENT_PROC_COMPAT) [N/y/?] (NEW) y
  58.   "sctp" protocol match support (EXPERIMENTAL) (NETFILTER_XT_MATCH_SCTP) [N/m/y/?] (NEW) y
  59.   "socket" match support (EXPERIMENTAL) (NETFILTER_XT_MATCH_SOCKET) [N/m/y/?] (NEW) y
  60.   "state" match support (NETFILTER_XT_MATCH_STATE) [Y/n/m/?] y
  61.   "statistic" match support (NETFILTER_XT_MATCH_STATISTIC) [N/m/y/?] (NEW) y
  62.   "string" match support (NETFILTER_XT_MATCH_STRING) [N/m/y/?] (NEW) y
  63.   "tcpmss" match support (NETFILTER_XT_MATCH_TCPMSS) [N/m/y/?] (NEW) y
  64.   "time" match support (NETFILTER_XT_MATCH_TIME) [N/m/y/?] (NEW) y
  65.   "u32" match support (NETFILTER_XT_MATCH_U32) [N/m/y/?] (NEW) y
  66. *
  67. * IP: Netfilter Configuration
  68. *
  69. IPv4 connection tracking support (required for NAT) (NF_CONNTRACK_IPV4) [Y/n/m/?] y
  70.   proc/sysctl compatibility with old connection tracking (NF_CONNTRACK_PROC_COMPAT) [N/y/?] n
  71. IP Userspace queueing via NETLINK (OBSOLETE) (IP_NF_QUEUE) [N/m/y/?] (NEW) y
  72. IP tables support (required for filtering/masq/NAT) (IP_NF_IPTABLES) [Y/n/m/?] y
  73.   "addrtype" address type match support (IP_NF_MATCH_ADDRTYPE) [N/m/y/?] (NEW) y
  74.   "ah" match support (IP_NF_MATCH_AH) [N/m/y/?] (NEW) y
  75.   "ecn" match support (IP_NF_MATCH_ECN) [N/m/y/?] (NEW) y
  76.   "ttl" match support (IP_NF_MATCH_TTL) [N/m/y/?] (NEW) y
  77.   Packet filtering (IP_NF_FILTER) [Y/n/m/?] y
  78.     REJECT target support (IP_NF_TARGET_REJECT) [Y/n/m/?] y
  79.   LOG target support (IP_NF_TARGET_LOG) [N/m/y/?] n
  80.   ULOG target support (IP_NF_TARGET_ULOG) [N/m/y/?] n
  81.   Full NAT (NF_NAT) [Y/n/m/?] y
  82.     MASQUERADE target support (IP_NF_TARGET_MASQUERADE) [Y/n/m/?] y
  83.     NETMAP target support (IP_NF_TARGET_NETMAP) [N/m/y/?] (NEW) y
  84.     REDIRECT target support (IP_NF_TARGET_REDIRECT) [N/m/y/?] (NEW) y
  85.     Basic SNMP-ALG support (NF_NAT_SNMP_BASIC) [N/m/y/?] (NEW) y
  86.   Packet mangling (IP_NF_MANGLE) [Y/n/m/?] y
  87.     CLUSTERIP target support (EXPERIMENTAL) (IP_NF_TARGET_CLUSTERIP) [N/m/y/?] (NEW) y
  88.     ECN target support (IP_NF_TARGET_ECN) [N/m/y/?] (NEW) y
  89.     TTL target support (IP_NF_TARGET_TTL) [N/m/y/?] (NEW) y
  90.   raw table support (required for NOTRACK/TRACE) (IP_NF_RAW) [N/m/y/?] (NEW) y
  91.   Security table (IP_NF_SECURITY) [N/m/y/?] (NEW) y
  92. ARP tables support (IP_NF_ARPTABLES) [N/m/y/?] (NEW) y
  93.   ARP packet filtering (IP_NF_ARPFILTER) [N/m/y/?] (NEW) y
  94.   ARP payload mangling (IP_NF_ARP_MANGLE) [N/m/y/?] (NEW) y
  95. *
  96. * Restart config...
  97. *
  98. *
  99. * Core Netfilter Configuration
  100. *
  101. Netfilter NFQUEUE over NFNETLINK interface (NETFILTER_NETLINK_QUEUE) [Y/n/m/?] y
  102. Netfilter LOG over NFNETLINK interface (NETFILTER_NETLINK_LOG) [N/m/y/?] n
  103. Netfilter connection tracking support (NF_CONNTRACK) [Y/n/m/?] y
  104.   Connection tracking flow accounting (NF_CT_ACCT) [Y/?] y
  105.   Connection mark tracking support (NF_CONNTRACK_MARK) [Y/?] y
  106.   Connection tracking events (NF_CONNTRACK_EVENTS) [Y/n/?] y
  107.   DCCP protocol connection tracking support (EXPERIMENTAL) (NF_CT_PROTO_DCCP) [Y/n/m/?] y
  108.   SCTP protocol connection tracking support (EXPERIMENTAL) (NF_CT_PROTO_SCTP) [Y/n/m/?] y
  109.   UDP-Lite protocol connection tracking support (NF_CT_PROTO_UDPLITE) [Y/n/m/?] y
  110.   Amanda backup protocol support (NF_CONNTRACK_AMANDA) [Y/n/m/?] y
  111.   FTP protocol support (NF_CONNTRACK_FTP) [Y/n/m/?] y
  112.   H.323 protocol support (NF_CONNTRACK_H323) [Y/n/m/?] y
  113.   IRC protocol support (NF_CONNTRACK_IRC) [N/m/y/?] n
  114.   NetBIOS name service protocol support (NF_CONNTRACK_NETBIOS_NS) [Y/n/m/?] y
  115.   PPtP protocol support (NF_CONNTRACK_PPTP) [Y/n/m/?] y
  116.   SANE protocol support (EXPERIMENTAL) (NF_CONNTRACK_SANE) [Y/n/m/?] y
  117.   SIP protocol support (NF_CONNTRACK_SIP) [Y/n/m/?] y
  118.   TFTP protocol support (NF_CONNTRACK_TFTP) [Y/n/m/?] y
  119.   Connection tracking netlink interface (NF_CT_NETLINK) [N/m/y/?] n
  120.   Transparent proxying support (EXPERIMENTAL) (NETFILTER_TPROXY) [Y/n/m/?] y
  121. Netfilter Xtables support (required for ip_tables) (NETFILTER_XTABLES) [Y/?] y
  122.   "CLASSIFY" target support (NETFILTER_XT_TARGET_CLASSIFY) [Y/n/m/?] y
  123.   "CONNMARK" target support (NETFILTER_XT_TARGET_CONNMARK) [Y/n/m/?] y
  124.   "DSCP" and "TOS" target support (NETFILTER_XT_TARGET_DSCP) [Y/n/m/?] y
  125.   "MARK" target support (NETFILTER_XT_TARGET_MARK) [N/m/y/?] n
  126.   "NFLOG" target support (NETFILTER_XT_TARGET_NFLOG) [N/m/y/?] n
  127.   "NFQUEUE" target Support (NETFILTER_XT_TARGET_NFQUEUE) [Y/n/m/?] y
  128.   "NOTRACK" target support (NETFILTER_XT_TARGET_NOTRACK) [N/m/y/?] (NEW) y
  129.   "RATEEST" target support (NETFILTER_XT_TARGET_RATEEST) [Y/?] y
  130.   "TPROXY" target support (EXPERIMENTAL) (NETFILTER_XT_TARGET_TPROXY) [Y/n/m/?] y
  131.   "TRACE" target support (NETFILTER_XT_TARGET_TRACE) [N/m/y/?] (NEW) y
  132.   "TCPMSS" target support (NETFILTER_XT_TARGET_TCPMSS) [N/m/y/?] n
  133.   "TCPOPTSTRIP" target support (EXPERIMENTAL) (NETFILTER_XT_TARGET_TCPOPTSTRIP) [Y/n/m/?] y
  134.   "comment" match support (NETFILTER_XT_MATCH_COMMENT) [Y/n/m/?] y
  135.   "connbytes" per-connection counter match support (NETFILTER_XT_MATCH_CONNBYTES) [Y/n/m/?] y
  136.   "connlimit" match support" (NETFILTER_XT_MATCH_CONNLIMIT) [Y/n/m/?] y
  137.   "connmark" connection mark match support (NETFILTER_XT_MATCH_CONNMARK) [Y/n/m/?] y
  138.   "conntrack" connection tracking match support (NETFILTER_XT_MATCH_CONNTRACK) [Y/n/m/?] y
  139.   "dccp" protocol match support (NETFILTER_XT_MATCH_DCCP) [Y/n/m/?] y
  140.   "dscp" and "tos" match support (NETFILTER_XT_MATCH_DSCP) [Y/n/m/?] y
  141.   "esp" match support (NETFILTER_XT_MATCH_ESP) [Y/n/m/?] y
  142.   "hashlimit" match support (NETFILTER_XT_MATCH_HASHLIMIT) [Y/n/m/?] y
  143.   "helper" match support (NETFILTER_XT_MATCH_HELPER) [Y/n/m/?] y
  144.   "iprange" address range match support (NETFILTER_XT_MATCH_IPRANGE) [Y/n/m/?] y
  145.   "length" match support (NETFILTER_XT_MATCH_LENGTH) [Y/n/m/?] y
  146.   "limit" match support (NETFILTER_XT_MATCH_LIMIT) [Y/n/m/?] y
  147.   "mac" address match support (NETFILTER_XT_MATCH_MAC) [Y/n/m/?] y
  148.   "mark" match support (NETFILTER_XT_MATCH_MARK) [N/m/y/?] n
  149.   "multiport" Multiple port match support (NETFILTER_XT_MATCH_MULTIPORT) [Y/n/m/?] y
  150.   "owner" match support (NETFILTER_XT_MATCH_OWNER) [Y/n/m/?] y
  151.   IPsec "policy" match support (NETFILTER_XT_MATCH_POLICY) [N/m/y/?] n
  152.   "pkttype" packet type match support (NETFILTER_XT_MATCH_PKTTYPE) [Y/n/m/?] y
  153.   "quota" match support (NETFILTER_XT_MATCH_QUOTA) [Y/n/m/?] y
  154.   "rateest" match support (NETFILTER_XT_MATCH_RATEEST) [Y/n/m/?] y
  155.   "realm" match support (NETFILTER_XT_MATCH_REALM) [Y/n/m/?] y
  156.   "recent" match support (NETFILTER_XT_MATCH_RECENT) [Y/n/m/?] y
  157.     Enable obsolete /proc/net/ipt_recent (NETFILTER_XT_MATCH_RECENT_PROC_COMPAT) [Y/n/?] y
  158.   "sctp" protocol match support (EXPERIMENTAL) (NETFILTER_XT_MATCH_SCTP) [Y/n/m/?] y
  159.   "socket" match support (EXPERIMENTAL) (NETFILTER_XT_MATCH_SOCKET) [Y/n/m/?] y
  160.   "state" match support (NETFILTER_XT_MATCH_STATE) [Y/n/m/?] y
  161.   "statistic" match support (NETFILTER_XT_MATCH_STATISTIC) [Y/n/m/?] y
  162.   "string" match support (NETFILTER_XT_MATCH_STRING) [Y/n/m/?] y
  163.   "tcpmss" match support (NETFILTER_XT_MATCH_TCPMSS) [Y/n/m/?] y
  164.   "time" match support (NETFILTER_XT_MATCH_TIME) [Y/n/m/?] y
  165.   "u32" match support (NETFILTER_XT_MATCH_U32) [Y/n/m/?] y