Advertisement
Guest User

Untitled

a guest
Oct 31st, 2014
169
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.94 KB | None | 0 0
  1. # Generated by iptables-save v1.4.21 on Fri Oct 31 22:36:52 2014
  2. *nat
  3. :PREROUTING ACCEPT [698:140974]
  4. :INPUT ACCEPT [208:23696]
  5. :OUTPUT ACCEPT [48:3515]
  6. :POSTROUTING ACCEPT [534:120481]
  7. :AS0_NAT - [0:0]
  8. :AS0_NAT_POST_REL_EST - [0:0]
  9. :AS0_NAT_PRE - [0:0]
  10. :AS0_NAT_PRE_REL_EST - [0:0]
  11. :AS0_NAT_TEST - [0:0]
  12. -A PREROUTING -m state --state RELATED,ESTABLISHED -j AS0_NAT_PRE_REL_EST
  13. -A POSTROUTING -m state --state RELATED,ESTABLISHED -j AS0_NAT_POST_REL_EST
  14. -A POSTROUTING -m mark --mark 0x2000000/0x2000000 -j AS0_NAT_PRE
  15. -A AS0_NAT -o eth0 -j SNAT --to-source 10.0.3.3
  16. -A AS0_NAT -o br0 -j SNAT --to-source 172.16.2.1
  17. -A AS0_NAT -o eth1 -j SNAT --to-source 172.16.2.1
  18. -A AS0_NAT -j ACCEPT
  19. -A AS0_NAT_POST_REL_EST -j ACCEPT
  20. -A AS0_NAT_PRE -m mark --mark 0x8000000/0x8000000 -j AS0_NAT
  21. -A AS0_NAT_PRE -d 192.168.0.0/16 -j AS0_NAT_TEST
  22. -A AS0_NAT_PRE -d 172.16.0.0/12 -j AS0_NAT_TEST
  23. -A AS0_NAT_PRE -d 10.0.0.0/8 -j AS0_NAT_TEST
  24. -A AS0_NAT_PRE -j AS0_NAT
  25. -A AS0_NAT_PRE_REL_EST -j ACCEPT
  26. -A AS0_NAT_TEST -o as0t+ -j ACCEPT
  27. -A AS0_NAT_TEST -m mark --mark 0x4000000/0x4000000 -j ACCEPT
  28. -A AS0_NAT_TEST -d 172.27.224.0/20 -j ACCEPT
  29. -A AS0_NAT_TEST -j AS0_NAT
  30. COMMIT
  31. # Completed on Fri Oct 31 22:36:52 2014
  32. # Generated by iptables-save v1.4.21 on Fri Oct 31 22:36:52 2014
  33. *mangle
  34. :PREROUTING ACCEPT [6115:639988]
  35. :INPUT ACCEPT [7861:1081216]
  36. :FORWARD ACCEPT [3808:508751]
  37. :OUTPUT ACCEPT [3521:1435282]
  38. :POSTROUTING ACCEPT [7329:1944033]
  39. :AS0_MANGLE_PRE_REL_EST - [0:0]
  40. :AS0_MANGLE_TUN - [0:0]
  41. -A PREROUTING -m state --state RELATED,ESTABLISHED -j AS0_MANGLE_PRE_REL_EST
  42. -A PREROUTING -i as0t+ -j AS0_MANGLE_TUN
  43. -A AS0_MANGLE_PRE_REL_EST -j ACCEPT
  44. -A AS0_MANGLE_TUN -j MARK --set-xmark 0x2000000/0xffffffff
  45. -A AS0_MANGLE_TUN -j ACCEPT
  46. COMMIT
  47. # Completed on Fri Oct 31 22:36:52 2014
  48. # Generated by iptables-save v1.4.21 on Fri Oct 31 22:36:52 2014
  49. *filter
  50. :INPUT ACCEPT [2584:207733]
  51. :FORWARD ACCEPT [92:5698]
  52. :OUTPUT ACCEPT [3525:1438498]
  53. :AS0_ACCEPT - [0:0]
  54. :AS0_IN - [0:0]
  55. :AS0_IN_NAT - [0:0]
  56. :AS0_IN_POST - [0:0]
  57. :AS0_IN_PRE - [0:0]
  58. :AS0_IN_ROUTE - [0:0]
  59. :AS0_OUT - [0:0]
  60. :AS0_OUT_LOCAL - [0:0]
  61. :AS0_OUT_POST - [0:0]
  62. :AS0_OUT_S2C - [0:0]
  63. :AS0_WEBACCEPT - [0:0]
  64. -A INPUT -m state --state RELATED,ESTABLISHED -j AS0_ACCEPT
  65. -A INPUT -i lo -j AS0_ACCEPT
  66. -A INPUT -m mark --mark 0x2000000/0x2000000 -j AS0_IN_PRE
  67. -A INPUT -d 10.0.3.3/32 -p udp -m state --state NEW -m udp --dport 1194 -j AS0_A CCEPT
  68. -A INPUT -d 10.0.3.3/32 -p tcp -m state --state NEW -m tcp --dport 443 -j AS0_AC CEPT
  69. -A INPUT -m state --state RELATED,ESTABLISHED -j AS0_WEBACCEPT
  70. -A INPUT -d 10.0.3.3/32 -p tcp -m state --state NEW -m tcp --dport 943 -j AS0_WE BACCEPT
  71. -A INPUT -i tap0 -j ACCEPT
  72. -A INPUT -i br0 -j ACCEPT
  73. -A FORWARD -m state --state RELATED,ESTABLISHED -j AS0_ACCEPT
  74. -A FORWARD -m mark --mark 0x2000000/0x2000000 -j AS0_IN_PRE
  75. -A FORWARD -o as0t+ -j AS0_OUT_S2C
  76. -A FORWARD -i br0 -j ACCEPT
  77. -A OUTPUT -o as0t+ -j AS0_OUT_LOCAL
  78. -A AS0_ACCEPT -j ACCEPT
  79. -A AS0_IN -d 172.27.224.1/32 -j ACCEPT
  80. -A AS0_IN -j AS0_IN_POST
  81. -A AS0_IN_NAT -j MARK --set-xmark 0x8000000/0x8000000
  82. -A AS0_IN_NAT -j ACCEPT
  83. -A AS0_IN_POST -d 10.0.0.0/16 -j ACCEPT
  84. -A AS0_IN_POST -d 172.16.0.0/16 -j ACCEPT
  85. -A AS0_IN_POST -o as0t+ -j AS0_OUT
  86. -A AS0_IN_POST -j DROP
  87. -A AS0_IN_PRE -d 192.168.0.0/16 -j AS0_IN
  88. -A AS0_IN_PRE -d 172.16.0.0/12 -j AS0_IN
  89. -A AS0_IN_PRE -d 10.0.0.0/8 -j AS0_IN
  90. -A AS0_IN_PRE -j ACCEPT
  91. -A AS0_IN_ROUTE -j MARK --set-xmark 0x4000000/0x4000000
  92. -A AS0_IN_ROUTE -j ACCEPT
  93. -A AS0_OUT -j AS0_OUT_POST
  94. -A AS0_OUT_LOCAL -p icmp -m icmp --icmp-type 5 -j DROP
  95. -A AS0_OUT_LOCAL -j ACCEPT
  96. -A AS0_OUT_POST -j DROP
  97. -A AS0_OUT_S2C -j AS0_OUT
  98. -A AS0_WEBACCEPT -j ACCEPT
  99. COMMIT
  100. # Completed on Fri Oct 31 22:36:52 2014
  101. administrator@galileo:~$
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement