Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- [root@router yum.repos.d]# iptables -L
- Chain INPUT (policy DROP)
- target prot opt source destination
- ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED
- ACCEPT tcp -- 62.231.2.80 anywhere tcp dpt:ssh state NEW,ESTABLISHED
- DROP all -- anywhere anywhere state INVALID
- ACCEPT all -- anywhere anywhere state NEW
- DROP all -- AA.BB.CC.DD anywhere
- DROP all -- 192.168.14.2 anywhere
- DROP all -- AA.BB.CC.DD anywhere
- DROP all -- 192.168.14.2 anywhere
- DROP all -- AA.BB.CC.DD anywhere PHYSDEV match --physdev-in eth3
- DROP all -- 192.168.14.2 anywhere PHYSDEV match --physdev-in eth3
- ACCEPT all -- AA.BB.CC.DD anywhere state NEW
- ACCEPT all -- 192.168.14.2 anywhere state NEW
- DROP all -- 221.120.107.203 anywhere
- DROP all -- no-data anywhere
- Cid4863C9C63672.1 all -- 192.168.14.0/24 anywhere state NEW
- Cid4863C9C63672.1 all -- 192.168.1.0/24 anywhere state NEW
- ACCEPT all -- 10.0.0.0/24 192.168.14.0/24 state NEW
- DROP tcp -- anywhere anywhere tcp multiport dports netbios-ssn,microsoft-ds,commplex-main,park-agent,icslap,epmap,nameserver
- DROP udp -- anywhere anywhere udp multiport dports netbios-dgm,netbios-ns,ssdp
- ACCEPT tcp -- anywhere anywhere tcp multiport dports ftp,ftp-data,imap,pop3,smtp,https state NEW
- Cid489037E13777.0 all -- 192.168.0.0/16 anywhere state NEW
- ACCEPT icmp -- anywhere anywhere icmp ttl-zero-during-transit state NEW
- ACCEPT icmp -- anywhere anywhere icmp ttl-zero-during-reassembly state NEW
- ACCEPT icmp -- anywhere anywhere icmp type 0 code 0 state NEW
- ACCEPT icmp -- anywhere anywhere icmp destination-unreachable state NEW
- ACCEPT tcp -- anywhere anywhere tcp dpt:pptp state NEW
- ACCEPT udp -- anywhere anywhere udp dpt:pptp state NEW
- ACCEPT gre -- anywhere anywhere state NEW
- ACCEPT tcp -- 192.168.0.0/16 anywhere tcp multiport dports squid,ssh,domain,http,rockwell-csp2 state NEW
- ACCEPT udp -- 192.168.0.0/16 anywhere udp multiport dports domain,bootpc,bootps state NEW
- ACCEPT tcp -- anywhere anywhere tcp multiport dports http,websm,ms-wbt-server,ncube-lm state NEW
- DROP all -- anywhere anywhere
- Chain FORWARD (policy DROP)
- target prot opt source destination
- ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED
- DROP all -- anywhere anywhere state INVALID
- DROP all -- AA.BB.CC.DD anywhere
- DROP all -- 192.168.14.2 anywhere
- DROP all -- AA.BB.CC.DD anywhere
- DROP all -- 192.168.14.2 anywhere
- DROP all -- AA.BB.CC.DD anywhere PHYSDEV match --physdev-in eth3
- DROP all -- 192.168.14.2 anywhere PHYSDEV match --physdev-in eth3
- DROP all -- 221.120.107.203 anywhere
- DROP all -- no-data anywhere
- DROP all -- anywhere anywhere STRING match "vkontakte.ru" ALGO name kmp TO 65535
- Cid4863C9C63672.2 all -- 192.168.14.0/24 anywhere state NEW
- Cid4863C9C63672.2 all -- 192.168.1.0/24 anywhere state NEW
- ACCEPT all -- 10.0.0.0/24 192.168.14.0/24 state NEW
- DROP tcp -- anywhere anywhere tcp multiport dports netbios-ssn,microsoft-ds,commplex-main,park-agent,icslap,epmap,nameserver
- DROP udp -- anywhere anywhere udp multiport dports netbios-dgm,netbios-ns,ssdp
- DROP tcp -- anywhere anywhere tcp multiport dports netbios-ssn,microsoft-ds,commplex-main,park-agent,icslap,epmap,nameserver
- DROP udp -- anywhere anywhere udp multiport dports netbios-dgm,netbios-ns,ssdp
- ACCEPT tcp -- anywhere 192.168.14.3 tcp multiport dports ftp,ftp-data,imap,pop3,smtp,https state NEW
- ACCEPT all -- 192.168.0.0/16 anywhere state NEW
- ACCEPT tcp -- anywhere oracle.elt-poisk tcp multiport dports http state NEW
- ACCEPT tcp -- anywhere testsrv.elt-poisk tcp multiport dports websm,ms-wbt-server,ncube-lm state NEW
- DROP all -- anywhere anywhere
- Chain OUTPUT (policy DROP)
- target prot opt source destination
- ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED
- ACCEPT tcp -- anywhere 62.231.2.80 tcp spt:ssh state RELATED,ESTABLISHED
- DROP all -- anywhere anywhere state INVALID
- ACCEPT all -- anywhere anywhere state NEW
- ACCEPT all -- anywhere anywhere state NEW
- Cid4863C9C63672.0 all -- 192.168.14.0/24 anywhere state NEW
- Cid4863C9C63672.0 all -- 192.168.1.0/24 anywhere state NEW
- DROP tcp -- anywhere anywhere tcp multiport dports netbios-ssn,microsoft-ds,commplex-main,park-agent,icslap,epmap,nameserver
- DROP udp -- anywhere anywhere udp multiport dports netbios-dgm,netbios-ns,ssdp
- ACCEPT tcp -- anywhere 192.168.14.3 tcp multiport dports ftp,ftp-data,imap,pop3,smtp,https state NEW
- ACCEPT all -- 192.168.0.0/16 anywhere state NEW
- Cid486E22F617714.0 all -- anywhere AA.BB.CC.DD state NEW
- Cid486E22F617714.0 all -- anywhere 192.168.14.2 state NEW
- Cid3105X2808.0 tcp -- anywhere anywhere tcp multiport dports http,websm,ms-wbt-server,ncube-lm state NEW
- DROP all -- anywhere anywhere
- Chain Cid3105X2808.0 (1 references)
- target prot opt source destination
- ACCEPT all -- anywhere 192.168.14.2
- ACCEPT all -- anywhere AA.BB.CC.DD
- Chain Cid4863C9C63672.0 (2 references)
- target prot opt source destination
- ACCEPT all -- anywhere 192.168.1.0/24
- ACCEPT all -- anywhere 192.168.14.0/24
- Chain Cid4863C9C63672.1 (2 references)
- target prot opt source destination
- ACCEPT all -- anywhere 192.168.1.0/24
- ACCEPT all -- anywhere 192.168.14.0/24
- Chain Cid4863C9C63672.2 (2 references)
- target prot opt source destination
- ACCEPT all -- anywhere 192.168.1.0/24
- ACCEPT all -- anywhere 192.168.14.0/24
- Chain Cid486E22F617714.0 (2 references)
- target prot opt source destination
- ACCEPT icmp -- anywhere anywhere icmp ttl-zero-during-transit
- ACCEPT icmp -- anywhere anywhere icmp ttl-zero-during-reassembly
- ACCEPT icmp -- anywhere anywhere icmp type 0 code 0
- ACCEPT icmp -- anywhere anywhere icmp destination-unreachable
- ACCEPT tcp -- anywhere anywhere tcp dpt:pptp
- ACCEPT udp -- anywhere anywhere udp dpt:pptp
- ACCEPT gre -- anywhere anywhere
- Chain Cid489037E13777.0 (1 references)
- target prot opt source destination
- RETURN all -- anywhere AA.BB.CC.DD
- RETURN all -- anywhere 192.168.14.2
- ACCEPT all -- anywhere anywhere
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement