Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- 01000 41956739 34062911324 reass ip from any to any in
- 01050 1049 136561 divert 8866 tcp from 192.168.0.10 6901 to any
- 01100 305 14544 deny ip from any to any not antispoof in
- 01200 51282 6756902 allow ip from any to any via lo0
- 01210 103591 11958105 allow ip from 172.17.0.0/16 to 172.17.0.0/16
- 01230 45878 51934810 allow ip from 192.168.0.10 to 172.17.0.2
- 01240 0 0 allow ip from 192.168.0.10 to 172.17.0.5 dst-port 80 keep-state
- 01310 9301665 13186636016 divert 8868 ip from any to any in via re1
- 01320 8613532 12132593514 divert 8869 ip from any to any in via re2
- 01330 7233350 6481459170 divert 8870 ip from any to any in via re3
- 02000 118965 128053765 queue 1 ip from any to 192.168.10.0/24 via re3
- 02010 6806006 6331629750 queue 2 ip from any to 172.17.128.0/18,172.17.0.0/17 via re3
- 02100 9286555 13185265662 queue 5 ip from any to 172.17.128.0/18,172.17.0.0/17 via re1
- 02110 8597808 12131348392 queue 6 ip from any to 172.17.128.0/18,172.17.0.0/17 via re2
- 03000 21137 1733518 allow icmp from any to me
- 03005 8432 703854 skipto 31000 icmp from 192.168.1.10 to any
- 03015 9991 803536 skipto 32000 icmp from 192.168.2.10 to any
- 03025 2829 237636 skipto 33000 icmp from 192.168.3.10 to any
- 03040 0 0 check-state
- 03045 4975 466262 skipto 50000 tcp from 172.17.192.0/18 to not 192.168.0.10 dst-port 80,443 keep-state
- 03046 0 0 deny tcp from 172.17.192.0/18 to not 192.168.0.10 dst-port 80
- 03050 0 0 deny log logamount 5 tcp from any to any in tcpflags syn,fin recv re1
- 03060 0 0 deny log logamount 5 tcp from any to any in tcpflags syn,fin recv re2
- 03070 0 0 deny log logamount 5 tcp from any to any in tcpflags syn,fin recv re3
- 03080 11636 3192786 deny log logamount 5 tcp from any to any in via re1 established
- 03090 8361 2015677 deny log logamount 5 tcp from any to any in via re2 established
- 03100 12843 2744187 deny log logamount 5 tcp from any to any in via re3 established
- 03155 101622 5959696 allow ip from 192.168.0.10 to 192.168.0.1 dst-port 4949 keep-state
- 04000 0 0 allow tcp from 192.168.0.10 to 172.17.0.5 dst-port 80 keep-state
- 04010 3269 354380 deny ip from 192.168.0.10 to 192.168.10.0/24,172.17.0.0/16
- 04020 0 0 deny ip from 192.168.10.0/24 to 172.17.0.0/16
- 04030 33 2359 deny ip from 172.17.0.0/16 to 192.168.10.0/24
- 04500 155523 19448980 allow ip from 172.17.0.0/16,192.168.10.0/24 to 192.168.0.10 keep-state
- 10000 0 0 skipto 33000 gre from any to 192.168.10.0/24 keep-state
- 10010 0 0 skipto 33000 tcp from any to 192.168.10.0/24 dst-port 5500,5800,5900 keep-state
- 11000 17990 3412412 skipto 33000 tcp from any to 192.168.0.10 dst-port 25,80,5222,5223,5269,9090,9091 keep-state
- 12000 70437 47124168 allow tcp from any to me dst-port 113,8080,8081,62288,40785,22 keep-state
- 12010 0 0 allow icmp from any to me keep-state
- 13000 0 0 skipto 33000 tcp from any to 172.17.0.5 dst-port 8080 keep-state
- 19910 5662 289088 deny log logamount 5 tcp from any to any in recv re1
- 19920 4889 251308 deny log logamount 5 tcp from any to any in recv re2
- 19930 123568 6436824 deny log logamount 5 tcp from any to any in recv re3
- 20000 199586 120800546 skipto 31000 tcp from 172.17.128.0/18 to table(1) dst-port 80,25,3128 setup keep-state
- 20010 29100886 26946048246 prob 0.500000 skipto 31000 tcp from 172.17.128.0/18,172.17.0.0/17 to any dst-port 80,25,3128 setup keep-state
- 20020 27199442 24967306576 skipto 32000 tcp from 172.17.128.0/18,172.17.0.0/17 to any dst-port 80,25,3128 setup keep-state
- 20030 18027199 13877983782 skipto 33000 tcp from 172.17.128.0/18,172.17.0.0/17 to any dst-port 21,22,53,23,43,113,110,143,123,443,462,465,587,873,990,993,995,1025-65535 setup limit src-addr 10
- 20039 613254 89056432 skipto 33000 udp from 172.17.0.2 to any dst-port 53,110,123,143,995,1025-65535 keep-state
- 20040 6037713 1489498397 skipto 33000 udp from 172.17.128.0/18,172.17.0.0/17 to any dst-port 53,110,123,143,995,1025-65535 limit src-addr 10
- 22000 415286 287093790 skipto 33000 tcp from 192.168.10.0/24 to any dst-port 21,22,53,23,43,113,110,143,123,443,462,465,587,873,990,993,995,1025-65535,80,25,3128 setup keep-state
- 22010 8778 1012560 skipto 33000 udp from 192.168.10.0/24 to any dst-port 53,110,123,143,995,1025-65535 keep-state
- 23000 6084 5166090 skipto 33000 tcp from 192.168.0.10 to any dst-port 25,43,53,80,113,123,443,465,995 setup keep-state
- 23010 1174 90204 skipto 33000 udp from 192.168.0.10 to any dst-port 53,123,465,995 keep-state
- 24000 2360 473082 prob 0.330000 skipto 31000 icmp from 172.17.128.0/18,172.17.0.0/17 to any keep-state
- 24010 2370 417470 prob 0.500000 skipto 32000 icmp from 172.17.128.0/18,172.17.0.0/17 to any keep-state
- 24020 2361 458896 skipto 33000 icmp from 172.17.128.0/18,172.17.0.0/17 to any keep-state
- 24030 0 0 skipto 33000 icmp from 192.168.10.0/24,192.168.0.10 to any keep-state
- 25000 0 0 skipto 31000 ip from 192.168.1.10 to any keep-state
- 25010 0 0 skipto 32000 ip from 192.168.2.10 to any keep-state
- 25020 562 70480 skipto 33000 ip from me to any keep-state
- 29999 313422 21284849 deny ip from any to any
- 31010 5390407 371555029 divert 8868 ip from 172.17.128.0/18,172.17.0.0/17 to any out
- 32010 5020181 366381369 divert 8869 ip from 172.17.128.0/18,172.17.0.0/17 to any out
- 33010 94199 16409523 queue 3 ip from 192.168.10.0/24 to any via re3
- 33020 5272436 1405351863 queue 4 ip from 172.17.128.0/18,172.17.0.0/17 to any via re3
- 33030 5397757 1421872505 divert 8870 ip from 172.17.128.0/18,172.17.0.0/17,192.168.0.10,192.168.10.0/24 to any out
- 34010 5398124 372049140 fwd 192.168.1.1 ip from 192.168.1.10 to any
- 34020 5028878 366801695 fwd 192.168.2.1 ip from 192.168.2.10 to any
- 34030 5400843 1422140573 fwd 192.168.3.1 ip from 192.168.3.10 to any
- 34100 65285579 65594758507 allow ip from any to any
- 50000 4975 466262 divert 8867 ip from any to any
- 50010 4975 466262 allow ip from any to any
- 65535 48231 10024080 allow ip from any to any
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement