Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- firewall-cmd --get-active-zones
- public
- interfaces: ens32
- firewall-cmd --list-all
- public (default, active)
- interfaces: ens32
- sources:
- services: dhcpv6-client ssh
- ports: 10050/tcp 8080/tcp
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- rule family="ipv4" source address="10.54.208.94" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.212.86" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.108" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.212.92" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.208.109" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.212.86" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.208.111" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.95" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.208.109" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.208.110" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.212.96" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.212.92" port port="4646" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.93" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.208.94" port port="4646" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.112" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.208.112" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.94" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.212.95" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.212.94" port port="4646" protocol="tcp" accept
- rule family="ipv4" source address="10.54.212.96" port port="4646" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.111" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.212.92" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.110" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.108" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.93" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.212.95" port port="4646" protocol="tcp" accept
- rule family="ipv4" source address="10.54.212.94" port port="8301" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.92" port port="8301" protocol="udp" accept
- rule family="ipv4" source address="10.54.208.93" port port="4646" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.92" port port="4646" protocol="tcp" accept
- rule family="ipv4" source address="10.54.208.92" port port="8301" protocol="tcp" accept
- Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 215K 177M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 1668 101K ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
- 7390 603K INPUT_direct all -- * * 0.0.0.0/0 0.0.0.0/0
- 7390 603K INPUT_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0
- 7390 603K INPUT_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0
- 1 60 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
- 836 210K REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
- Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 182K 185M DOCKER-ISOLATION all -- * * 0.0.0.0/0 0.0.0.0/0
- 137K 183M DOCKER all -- * docker0 0.0.0.0/0 0.0.0.0/0
- 137K 183M ACCEPT all -- * docker0 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 45185 2376K ACCEPT all -- docker0 !docker0 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- docker0 docker0 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_direct all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_IN_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_IN_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_OUT_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_OUT_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
- Chain OUTPUT (policy ACCEPT 222K packets, 140M bytes)
- pkts bytes target prot opt in out source destination
- 222K 140M OUTPUT_direct all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain DOCKER (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT udp -- !docker0 docker0 0.0.0.0/0 172.17.0.2 udp dpt:8080
- 0 0 ACCEPT tcp -- !docker0 docker0 0.0.0.0/0 172.17.0.2 tcp dpt:31870
- 0 0 ACCEPT tcp -- !docker0 docker0 0.0.0.0/0 172.17.0.3 tcp dpt:51747
- 0 0 ACCEPT tcp -- !docker0 docker0 0.0.0.0/0 172.17.0.2 tcp dpt:8080
- 0 0 ACCEPT tcp -- !docker0 docker0 0.0.0.0/0 172.17.0.5 tcp dpt:8080
- 0 0 ACCEPT udp -- !docker0 docker0 0.0.0.0/0 172.17.0.3 udp dpt:4004
- 0 0 ACCEPT tcp -- !docker0 docker0 0.0.0.0/0 172.17.0.5 tcp dpt:34595
- 0 0 ACCEPT udp -- !docker0 docker0 0.0.0.0/0 172.17.0.5 udp dpt:34595
- 0 0 ACCEPT udp -- !docker0 docker0 0.0.0.0/0 172.17.0.5 udp dpt:8080
- 0 0 ACCEPT udp -- !docker0 docker0 0.0.0.0/0 172.17.0.2 udp dpt:31870
- 0 0 ACCEPT udp -- !docker0 docker0 0.0.0.0/0 172.17.0.3 udp dpt:51747
- 0 0 ACCEPT tcp -- !docker0 docker0 0.0.0.0/0 172.17.0.3 tcp dpt:4004
- Chain DOCKER-ISOLATION (1 references)
- pkts bytes target prot opt in out source destination
- 182K 185M RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FORWARD_IN_ZONES (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 FWDI_public all -- + * 0.0.0.0/0 0.0.0.0/0 [goto]
- Chain FORWARD_IN_ZONES_SOURCE (1 references)
- pkts bytes target prot opt in out source destination
- Chain FORWARD_OUT_ZONES (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 FWDO_public all -- * + 0.0.0.0/0 0.0.0.0/0 [goto]
- Chain FORWARD_OUT_ZONES_SOURCE (1 references)
- pkts bytes target prot opt in out source destination
- Chain FORWARD_direct (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDI_public (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 FWDI_public_log all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FWDI_public_deny all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FWDI_public_allow all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FWDI_public_allow (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDI_public_deny (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDI_public_log (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDO_public (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 FWDO_public_log all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FWDO_public_deny all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FWDO_public_allow all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FWDO_public_allow (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDO_public_deny (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDO_public_log (1 references)
- pkts bytes target prot opt in out source destination
- Chain INPUT_ZONES (1 references)
- pkts bytes target prot opt in out source destination
- 7385 603K IN_public all -- + * 0.0.0.0/0 0.0.0.0/0 [goto]
- Chain INPUT_ZONES_SOURCE (1 references)
- pkts bytes target prot opt in out source destination
- Chain INPUT_direct (1 references)
- pkts bytes target prot opt in out source destination
- Chain IN_public (1 references)
- pkts bytes target prot opt in out source destination
- 7385 603K IN_public_log all -- * * 0.0.0.0/0 0.0.0.0/0
- 7385 603K IN_public_deny all -- * * 0.0.0.0/0 0.0.0.0/0
- 7385 603K IN_public_allow all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain IN_public_allow (1 references)
- pkts bytes target prot opt in out source destination
- 28 1680 ACCEPT tcp -- * * 10.54.208.94 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.212.86 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.108 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.212.92 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 29 1740 ACCEPT tcp -- * * 10.54.208.109 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.212.86 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 45 2700 ACCEPT tcp -- * * 10.54.208.111 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.95 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.109 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.110 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.212.96 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.212.92 0.0.0.0/0 tcp dpt:4646 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.93 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.208.94 0.0.0.0/0 tcp dpt:4646 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.112 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.208.112 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.208.95 0.0.0.0/0 tcp dpt:4646 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.94 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.212.95 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.212.94 0.0.0.0/0 tcp dpt:4646 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.212.96 0.0.0.0/0 tcp dpt:4646 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.111 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 33 1980 ACCEPT tcp -- * * 10.54.212.92 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 34 2040 ACCEPT tcp -- * * 10.54.208.95 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 33 1980 ACCEPT tcp -- * * 10.54.208.110 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 30 1800 ACCEPT tcp -- * * 10.54.208.108 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 41 2460 ACCEPT tcp -- * * 10.54.208.93 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.212.95 0.0.0.0/0 tcp dpt:4646 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.212.94 0.0.0.0/0 tcp dpt:8301 ctstate NEW
- 0 0 ACCEPT udp -- * * 10.54.208.92 0.0.0.0/0 udp dpt:8301 ctstate NEW
- 0 0 ACCEPT tcp -- * * 10.54.208.93 0.0.0.0/0 tcp dpt:4646 ctstate NEW
- 1 120 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22 ctstate NEW
- 6229 374K ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:10050 ctstate NEW
- 50 3000 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8080 ctstate NEW
- Chain IN_public_deny (1 references)
- pkts bytes target prot opt in out source destination
- Chain IN_public_log (1 references)
- pkts bytes target prot opt in out source destination
- Chain OUTPUT_direct (1 references)
- pkts bytes target prot opt in out source destination
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement