Advertisement
Guest User

Untitled

a guest
Jun 18th, 2013
241
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.68 KB | None | 0 0
  1. -P INPUT DROP
  2. -P FORWARD DROP
  3. -P OUTPUT ACCEPT
  4. -A INPUT -s 172.16.254.0/24 -p tcp -m tcp --dport 53 -j ACCEPT
  5. -A INPUT -s 172.16.254.0/24 -p udp -m udp --dport 53 -j ACCEPT
  6. -A INPUT -i lo -j ACCEPT
  7. -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  8. -A INPUT -d 172.16.254.1/32 -p icmp -m icmp --icmp-type 8 -m state --state NEW,RELATED,ESTABLISHED -j ACCEPT
  9. -A INPUT -s 172.16.254.0/24 -p tcp -m state --state NEW -m multiport --dports 65001,65010 -j ACCEPT
  10. -A INPUT -p tcp -m multiport --dports 65001,65010 -j ACCEPT
  11. -A INPUT -s 172.16.254.0/24 -p tcp -m state --state NEW -m multiport --dports 137,138,139,445 -j ACCEPT
  12. -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
  13. -A FORWARD -i eth1 -j ACCEPT
  14. -A FORWARD -d 172.16.254.10/32 -i eth0 -p tcp -m tcp --dport 65010 -j ACCEPT
  15. -A OUTPUT -s 172.16.254.1/32 -p icmp -m icmp --icmp-type 0 -m state --state RELATED,ESTABLISHED -j ACCEPT
  16. Chain INPUT (policy DROP 26 packets, 7344 bytes)
  17. pkts bytes target prot opt in out source destination
  18. 0 0 ACCEPT tcp -- * * 172.16.254.0/24 0.0.0.0/0 tcp dpt:53
  19. 8 548 ACCEPT udp -- * * 172.16.254.0/24 0.0.0.0/0 udp dpt:53
  20. 2 100 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
  21. 307 32054 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
  22. 1 84 ACCEPT icmp -- * * 0.0.0.0/0 172.16.254.1 icmptype 8 state NEW,RELATED,ESTABLISHED
  23. 0 0 ACCEPT tcp -- * * 172.16.254.0/24 0.0.0.0/0 state NEW multiport dports 65001,65010
  24. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 65001,65010
  25. 0 0 ACCEPT tcp -- * * 172.16.254.0/24 0.0.0.0/0 state NEW multiport dports 137,138,139,445
  26.  
  27. Chain FORWARD (policy DROP 0 packets, 0 bytes)
  28. pkts bytes target prot opt in out source destination
  29. 28106 29520155 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
  30. 1 84 ACCEPT all -- eth1 * 0.0.0.0/0 0.0.0.0/0
  31. 0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0 172.16.254.10 tcp dpt:65010
  32.  
  33. Chain OUTPUT (policy ACCEPT 230 packets, 23564 bytes)
  34. pkts bytes target prot opt in out source destination
  35. 44 8816 ACCEPT icmp -- * * 172.16.254.1 0.0.0.0/0 icmptype 0 state RELATED,ESTABLISHED
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement