Advertisement
Guest User

Untitled

a guest
Nov 21st, 2014
135
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.38 KB | None | 0 0
  1. iptables -F
  2. iptables -t nat -F
  3. ip6tables -X
  4. ip6tables -F
  5.  
  6. ##abilito il forwarding
  7.  
  8. iptables -A INPUT -s TUOIP -p icmp --icmp-type echo-request -j ACCEPT
  9. iptables -A INPUT -p icmp --icmp-type echo-request -j DROP
  10.  
  11. ## ipv4 TCP permetto i servizi per determinati ip sorgenti prima di droppare tutto
  12. iptables -A INPUT -i eth0 -p tcp -m state --state ESTABLISHED,RELATED --dport 0:65535 -j ACCEPT
  13. iptables -A INPUT -i eth0 -s TUOIP -p tcp --dport 22 -j ACCEPT
  14. iptables -A INPUT -i eth0 -s TUOIP -p tcp --dport 31337 -j ACCEPT
  15. iptables -A INPUT -s ip,degli,ircd -i eth0 -p tcp --dport 113 -j ACCEPT
  16. iptables -A INPUT -i eth0 -p tcp -j DROP
  17.  
  18.  
  19.  
  20.  
  21.  
  22. ## ipv4 UDP permetto i servizi prima di droppare tutto
  23. iptables -A INPUT -i eth0 -p udp -m state --state ESTABLISHED,RELATED --dport 0:65535 -j ACCEPT
  24. #iptables -A INPUT -i eth0 -p udp --dport 1194 -j ACCEPT
  25. iptables -A INPUT -i eth0 -p udp -j DROP
  26.  
  27.  
  28.  
  29.  
  30.  
  31. ## ipv6 total closed tcp udp and icmp ping (sixxs tunnelrobot fuckoff)
  32. ip6tables -A INPUT -i eth0 -p tcp -m state --state ESTABLISHED,RELATED --dport 0:65535 -j ACCEPT
  33. ip6tables -A INPUT -s ip,degli,ircd -i eth0 -p tcp --dport 113 -j ACCEPT
  34. ip6tables -A INPUT -i eth0 -p tcp -j DROP
  35. ip6tables -A INPUT -i eth0 -p udp -j DROP
  36. ip6tables -A INPUT -s tuoipv6dicasa -p ipv6-icmp --icmpv6-type echo-request -j ACCEPT
  37. ip6tables -A INPUT -p ipv6-icmp --icmpv6-type echo-request -j DROP
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement