Advertisement
Guest User

tim

a guest
Sep 9th, 2012
31
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.00 KB | None | 0 0
  1. *filter
  2. :INPUT DROP [0:0]
  3. :FORWARD ACCEPT [4038487:3114149919]
  4. :OUTPUT ACCEPT [161741:31953053]
  5. -A INPUT -i lo -j ACCEPT
  6. -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  7. -A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
  8. -A INPUT -s 172.168.2.0/255.255.255.0 -j ACCEPT
  9. -A INPUT -j DROP
  10.  
  11. COMMIT
  12. *nat
  13. :PREROUTING ACCEPT [57491:5055636]
  14. :POSTROUTING ACCEPT [4975:340111]
  15. :OUTPUT ACCEPT [4729:328699]
  16. -A PREROUTING -i eth0 -p tcp -m tcp --dport 3389 -j DNAT --to-destination 172.168.2.120
  17. -A PREROUTING -i eth0 -p tcp -m tcp --dport 3388 -j DNAT --to-destination 172.168.2.121
  18. -A POSTROUTING -d 172.168.2.120 -p tcp -m tcp --dport 3389 -j SNAT --to-source 192.168.0.15
  19. -A POSTROUTING -d 172.168.2.121 -p tcp -m tcp --dport 3388 -j SNAT --to-source 192.168.0.15
  20. -A POSTROUTING -s 172.168.2.0/24 -p tcp -m tcp -m multiport --dports 22,25,53,995,587,443,465 -j SNAT --to-source 192.168.0.15
  21. -A POSTROUTING -s 172.168.2.0/24 -p udp -m udp -m multiport --dports 53,123 -j SNAT --to-source 192.168.0.15
  22. COMMIT
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement