Advertisement
Guest User

Untitled

a guest
Jun 4th, 2014
270
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.63 KB | None | 0 0
  1. berlioz ~ # iptables -S FORWARD
  2. -P FORWARD ACCEPT
  3. -A FORWARD -j nova-filter-top
  4. -A FORWARD -j nova-network-FORWARD
  5. -A FORWARD -j nova-compute-FORWARD
  6. -A FORWARD -d 192.168.122.0/24 -o virbr0 -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
  7. -A FORWARD -s 192.168.122.0/24 -i virbr0 -j ACCEPT
  8. -A FORWARD -i virbr0 -o virbr0 -j ACCEPT
  9. -A FORWARD -o virbr0 -j REJECT --reject-with icmp-port-unreachable
  10. -A FORWARD -i virbr0 -j REJECT --reject-with icmp-port-unreachable
  11. -A FORWARD -o docker0 -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
  12. -A FORWARD -i docker0 ! -o docker0 -j ACCEPT
  13. -A FORWARD -i docker0 -o docker0 -j ACCEPT
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement