Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- -P INPUT DROP
- -P FORWARD DROP
- -P OUTPUT ACCEPT
- -A INPUT -s 172.16.254.0/24 -p tcp -m tcp --dport 53 -j ACCEPT
- -A INPUT -s 172.16.254.0/24 -p udp -m udp --dport 53 -j ACCEPT
- -A INPUT -i lo -j ACCEPT
- -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A INPUT -d 172.16.254.1/32 -p icmp -m icmp --icmp-type 8 -m state --state NEW,RELATED,ESTABLISHED -j ACCEPT
- -A INPUT -s 172.16.254.0/24 -p tcp -m state --state NEW -m multiport --dports 65001,65010 -j ACCEPT
- -A INPUT -p tcp -m multiport --dports 65001,65010 -j ACCEPT
- -A INPUT -s 172.16.254.0/24 -p tcp -m state --state NEW -m multiport --dports 137,138,139,445 -j ACCEPT
- -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A FORWARD -i eth1 -j ACCEPT
- -A FORWARD -d 172.16.254.10/32 -i eth0 -p tcp -m tcp --dport 65010 -j ACCEPT
- -A OUTPUT -s 172.16.254.1/32 -p icmp -m icmp --icmp-type 0 -m state --state RELATED,ESTABLISHED -j ACCEPT
- Chain INPUT (policy DROP 26 packets, 7344 bytes)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 172.16.254.0/24 0.0.0.0/0 tcp dpt:53
- 8 548 ACCEPT udp -- * * 172.16.254.0/24 0.0.0.0/0 udp dpt:53
- 2 100 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
- 307 32054 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
- 1 84 ACCEPT icmp -- * * 0.0.0.0/0 172.16.254.1 icmptype 8 state NEW,RELATED,ESTABLISHED
- 0 0 ACCEPT tcp -- * * 172.16.254.0/24 0.0.0.0/0 state NEW multiport dports 65001,65010
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 65001,65010
- 0 0 ACCEPT tcp -- * * 172.16.254.0/24 0.0.0.0/0 state NEW multiport dports 137,138,139,445
- Chain FORWARD (policy DROP 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 28106 29520155 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
- 1 84 ACCEPT all -- eth1 * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0 172.16.254.10 tcp dpt:65010
- Chain OUTPUT (policy ACCEPT 230 packets, 23564 bytes)
- pkts bytes target prot opt in out source destination
- 44 8816 ACCEPT icmp -- * * 172.16.254.1 0.0.0.0/0 icmptype 0 state RELATED,ESTABLISHED
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement