Advertisement
Guest User

Anti Stanley firewall

a guest
Jul 7th, 2015
205
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.93 KB | None | 0 0
  1. *filter
  2. :INPUT DROP [7924:2914678]
  3. :FORWARD ACCEPT [0:0]
  4. :OUTPUT ACCEPT [7628:2416431]
  5. #Lokaal mag alles
  6. -A INPUT -i lo -j ACCEPT
  7. -A INPUT -s 127.0.0.1 -j ACCEPT
  8. -A INPUT -s 127.0.1.1 -j ACCEPT
  9.  
  10. #Aangevraagd verkeer ook
  11. -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  12.  
  13. #Services toelaten
  14. -A INPUT -p tcp -m tcp -m multiport --dports 21,22,80,443,8000,27950:27952,27960:27965 -j ACCEPT
  15. -A INPUT -p udp -m udp -m multiport --dports 9987,5412,6574,5856,27950:27952,27960:27965,30000 -j ACCEPT
  16.  
  17. #NTP
  18. -A INPUT -p udp -m udp -m multiport --dports 123 -j ACCEPT
  19.  
  20. #De rest droppen
  21. -A INPUT -p tcp -m tcp -m multiport --dports 80,443,6000:6020,7000:7010,8000:8020,9000:9010 -m limit --limit 3/min -j LOG --log-prefix "GFW-SERVICES " --log-tcp-options --log-ip-options
  22. -A INPUT -m limit --limit 3/min -j LOG --log-prefix "GFW-INPUT-DROPPED " --log-tcp-options --log-ip-options
  23. -A INPUT -p tcp -m tcp -j DROP
  24. -A INPUT -j REJECT
  25. COMMIT
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement