Advertisement
Guest User

Untitled

a guest
Nov 13th, 2012
68
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.41 KB | None | 0 0
  1. # Generated by iptables-save v1.4.12.1 on Wed Nov 14 14:00:46 2012
  2. *filter
  3. :INPUT DROP [7:2651]
  4. :FORWARD ACCEPT [0:0]
  5. :OUTPUT ACCEPT [1015:329997]
  6. [142:10072] -A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
  7. [0:0] -A INPUT -d myip/32 -p tcp -m tcp --dport 3389 -j ACCEPT
  8. [0:0] -A INPUT -p udp -m udp --dport 1194 -m comment --comment "openvpn server" -j ACCEPT
  9. [0:0] -A INPUT -s 127.0.0.1/32 -d 127.0.0.1/32 -m comment --comment "Vajno loopback" -j ACCEPT
  10. [373:76200] -A INPUT -d 192.168.137.1/32 -j ACCEPT
  11. [0:0] -A INPUT -p udp -m udp --dport 1194 -m comment --comment "Virtual connection server" -j ACCEPT
  12. [0:0] -A INPUT -p tcp -m multiport --dports 25,143,110,993 -m comment --comment Mail -j ACCEPT
  13. [0:0] -A INPUT -s 192.168.137.0/24 -j ACCEPT
  14. [389:243554] -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  15. [0:0] -A FORWARD -i eth0 -p icmp -j ACCEPT
  16. [0:0] -A FORWARD -i eth0 -p tcp -m multiport --ports 3389,389 -j ACCEPT
  17. [0:0] -A FORWARD -i tun+ -p tcp -m multiport --ports 3389,389 -j ACCEPT
  18. [0:0] -A FORWARD -p tcp -m tcp --dport 445 -j DROP
  19. [0:0] -A FORWARD -s 10.20.11.0/24 -p tcp -m tcp --dport 3389 -m comment --comment "RDP for openvpn users" -j ACCEPT
  20. [488:37730] -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
  21. [1:48] -A FORWARD -s 192.168.137.0/24 -p tcp -m multiport --dports 21,20,22,23,25,110,443,995,2802,3389,5190,8108,993 -j ACCEPT
  22. [0:0] -A FORWARD -s 192.168.137.0/24 -p udp -m multiport --dports 20,21,22,23,25,87,110,443,995,2802,3389,5190,8108 -j ACCEPT
  23. [16:776] -A FORWARD -s 192.168.137.0/24 -j DROP
  24. [0:0] -A FORWARD -m state --state INVALID -j DROP
  25. [0:0] -A FORWARD -p tcp -m tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
  26. COMMIT
  27. # Completed on Wed Nov 14 14:00:46 2012
  28. # Generated by iptables-save v1.4.12.1 on Wed Nov 14 14:00:46 2012
  29. *nat
  30. :PREROUTING ACCEPT [103:7515]
  31. :INPUT ACCEPT [37:1864]
  32. :OUTPUT ACCEPT [48:3047]
  33. :POSTROUTING ACCEPT [48:3047]
  34. [1:48] -A POSTROUTING -s 192.168.137.0/24 -j MASQUERADE
  35. COMMIT
  36. # Completed on Wed Nov 14 14:00:46 2012
  37. # Generated by iptables-save v1.4.12.1 on Wed Nov 14 14:00:46 2012
  38. *raw
  39. :PREROUTING ACCEPT [1458:373207]
  40. :OUTPUT ACCEPT [1015:329997]
  41. COMMIT
  42. # Completed on Wed Nov 14 14:00:46 2012
  43. # Generated by iptables-save v1.4.12.1 on Wed Nov 14 14:00:46 2012
  44. *mangle
  45. :PREROUTING ACCEPT [0:0]
  46. :INPUT ACCEPT [0:0]
  47. :FORWARD ACCEPT [0:0]
  48. :OUTPUT ACCEPT [0:0]
  49. :POSTROUTING ACCEPT [0:0]
  50. COMMIT
  51. # Completed on Wed Nov 14 14:00:46 2012
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement