Advertisement
Guest User

Untitled

a guest
Dec 27th, 2013
75
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
D 3.19 KB | None | 0 0
  1. # Generated by iptables-save v1.4.14 on Fri Dec 27 18:22:33 2013
  2. *nat
  3. :PREROUTING ACCEPT [8465:560539]
  4. :POSTROUTING ACCEPT [1528:486262]
  5. :OUTPUT ACCEPT [1528:486262]
  6. :AS0_NAT - [0:0]
  7. :AS0_NAT_POST_REL_EST - [0:0]
  8. :AS0_NAT_PRE - [0:0]
  9. :AS0_NAT_PRE_REL_EST - [0:0]
  10. :AS0_NAT_TEST - [0:0]
  11. -A PREROUTING -m state --state RELATED,ESTABLISHED -j AS0_NAT_PRE_REL_EST
  12. -A POSTROUTING -m state --state RELATED,ESTABLISHED -j AS0_NAT_POST_REL_EST
  13. -A POSTROUTING -m mark --mark 0x2000000/0x2000000 -j AS0_NAT_PRE
  14. -A AS0_NAT -j MASQUERADE
  15. -A AS0_NAT_POST_REL_EST -j ACCEPT
  16. -A AS0_NAT_PRE -d 5.5.0.0/20 -j AS0_NAT_TEST
  17. -A AS0_NAT_PRE -d 192.168.0.0/16 -j AS0_NAT_TEST
  18. -A AS0_NAT_PRE -d 172.16.0.0/12 -j AS0_NAT_TEST
  19. -A AS0_NAT_PRE -d 10.0.0.0/8 -j AS0_NAT_TEST
  20. -A AS0_NAT_PRE -j AS0_NAT
  21. -A AS0_NAT_PRE_REL_EST -j ACCEPT
  22. -A AS0_NAT_TEST -o as0t+ -j ACCEPT
  23. -A AS0_NAT_TEST -d 5.5.0.0/20 -j ACCEPT
  24. -A AS0_NAT_TEST -j AS0_NAT
  25. COMMIT
  26. # Completed on Fri Dec 27 18:22:33 2013
  27. # Generated by iptables-save v1.4.14 on Fri Dec 27 18:22:33 2013
  28. *mangle
  29. :PREROUTING ACCEPT [247:15445]
  30. :INPUT ACCEPT [359634:95251711]
  31. :FORWARD ACCEPT [766710:470179315]
  32. :OUTPUT ACCEPT [453444:449637667]
  33. :POSTROUTING ACCEPT [1219983:919771189]
  34. :AS0_MANGLE_PRE_REL_EST - [0:0]
  35. :AS0_MANGLE_TUN - [0:0]
  36. -A PREROUTING -m state --state RELATED,ESTABLISHED -j AS0_MANGLE_PRE_REL_EST
  37. -A PREROUTING -i as0t+ -j AS0_MANGLE_TUN
  38. -A AS0_MANGLE_PRE_REL_EST -j ACCEPT
  39. -A AS0_MANGLE_TUN -j MARK --set-xmark 0x2000000/0xffffffff
  40. -A AS0_MANGLE_TUN -j ACCEPT
  41. COMMIT
  42. # Completed on Fri Dec 27 18:22:33 2013
  43. # Generated by iptables-save v1.4.14 on Fri Dec 27 18:22:33 2013
  44. *filter
  45. :INPUT ACCEPT [26:1543]
  46. :FORWARD ACCEPT [0:0]
  47. :OUTPUT ACCEPT [451439:449127195]
  48. :AS0_ACCEPT - [0:0]
  49. :AS0_IN - [0:0]
  50. :AS0_IN_POST - [0:0]
  51. :AS0_IN_PRE - [0:0]
  52. :AS0_OUT - [0:0]
  53. :AS0_OUT_LOCAL - [0:0]
  54. :AS0_OUT_POST - [0:0]
  55. :AS0_OUT_S2C - [0:0]
  56. :AS0_WEBACCEPT - [0:0]
  57. -A INPUT -m state --state RELATED,ESTABLISHED -j AS0_ACCEPT
  58. -A INPUT -i lo -j AS0_ACCEPT
  59. -A INPUT -m mark --mark 0x2000000/0x2000000 -j AS0_IN_PRE
  60. -A INPUT -d 10.10.0.75/32 -p udp -m state --state NEW -m udp --dport 1194 -j AS0_ACCEPT
  61. -A INPUT -d 10.10.0.75/32 -p tcp -m state --state NEW -m tcp --dport 443 -j AS0_ACCEPT
  62. -A INPUT -m state --state RELATED,ESTABLISHED -j AS0_WEBACCEPT
  63. -A INPUT -d 10.10.0.75/32 -p tcp -m state --state NEW -m tcp --dport 943 -j AS0_WEBACCEPT
  64. -A FORWARD -m state --state RELATED,ESTABLISHED -j AS0_ACCEPT
  65. -A FORWARD -m mark --mark 0x2000000/0x2000000 -j AS0_IN_PRE
  66. -A FORWARD -o as0t+ -j AS0_OUT_S2C
  67. -A OUTPUT -o as0t+ -j AS0_OUT_LOCAL
  68. -A AS0_ACCEPT -j ACCEPT
  69. -A AS0_IN -d 5.5.0.1/32 -j ACCEPT
  70. -A AS0_IN -d 10.10.0.0/24 -j ACCEPT
  71. -A AS0_IN -d 10.10.10.0/24 -j ACCEPT
  72. -A AS0_IN -j AS0_IN_POST
  73. -A AS0_IN_POST -o as0t+ -j AS0_OUT
  74. -A AS0_IN_POST -j DROP
  75. -A AS0_IN_PRE -d 5.5.0.0/20 -j AS0_IN
  76. -A AS0_IN_PRE -d 192.168.0.0/16 -j AS0_IN
  77. -A AS0_IN_PRE -d 172.16.0.0/12 -j AS0_IN
  78. -A AS0_IN_PRE -d 10.0.0.0/8 -j AS0_IN
  79. -A AS0_IN_PRE -j ACCEPT
  80. -A AS0_OUT -j AS0_OUT_POST
  81. -A AS0_OUT_LOCAL -p icmp -m icmp --icmp-type 5 -j DROP
  82. -A AS0_OUT_LOCAL -j ACCEPT
  83. -A AS0_OUT_POST -j DROP
  84. -A AS0_OUT_S2C -j AS0_OUT
  85. -A AS0_WEBACCEPT -j ACCEPT
  86. COMMIT
  87. # Completed on Fri Dec 27 18:22:33 2013
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement