Advertisement
unclemusclez

Untitled

Aug 2nd, 2015
191
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.82 KB | None | 0 0
  1. $ sudo iptables -S
  2. -P INPUT ACCEPT
  3. -P FORWARD ACCEPT
  4. -P OUTPUT ACCEPT
  5. -A INPUT -i virbr0 -p udp -m udp --dport 53 -j ACCEPT
  6. -A INPUT -i virbr0 -p tcp -m tcp --dport 53 -j ACCEPT
  7. -A INPUT -i virbr0 -p udp -m udp --dport 67 -j ACCEPT
  8. -A INPUT -i virbr0 -p tcp -m tcp --dport 67 -j ACCEPT
  9. -A INPUT -i virbr0 -p tcp -m tcp --dport 6969 -j ACCEPT
  10. -A INPUT -i virbr0 -p udp -m udp --dport 6969 -j ACCEPT
  11. -A INPUT -i virbr0 -p udp -m udp --dport 17 -j ACCEPT
  12. -A FORWARD -d 192.168.122.0/24 -o virbr0 -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
  13. -A FORWARD -s 192.168.122.0/24 -i virbr0 -j ACCEPT
  14. -A FORWARD -i virbr0 -o virbr0 -j ACCEPT
  15. -A FORWARD -o virbr0 -j REJECT --reject-with icmp-port-unreachable
  16. -A FORWARD -i virbr0 -j REJECT --reject-with icmp-port-unreachable
  17. -A OUTPUT -o virbr0 -p udp -m udp --dport 68 -j ACCEPT
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement