Advertisement
Guest User

Untitled

a guest
Oct 22nd, 2014
198
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.32 KB | None | 0 0
  1. *filter
  2. :INPUT DROP [0:0]
  3. :FORWARD DROP [0:0]
  4. :OUTPUT ACCEPT [0:0]
  5. -A INPUT -i lo -j ACCEPT
  6. -A FORWARD -i lo -j ACCEPT
  7. -A INPUT -m state --state INVALID -j DROP
  8. -A INPUT -p icmp -m icmp --icmp-type 0 -m length --length 30:1100 -m limit --limit 4/sec -j ACCEPT
  9. -A INPUT -p icmp -m icmp --icmp-type 0 -j DROP
  10. -A INPUT -p icmp -m icmp --icmp-type 8 -m length --length 30:1100 -m limit --limit 4/sec -j ACCEPT
  11. -A INPUT -p icmp -m icmp --icmp-type 8 -j DROP
  12. -A INPUT -p icmp -j ACCEPT
  13. -A INPUT -p tcp --dport 2250 -j ACCEPT
  14. -A INPUT -p tcp -m multiport --dports 53,67,80,3128,953,443 -j ACCEPT
  15. -A INPUT -p udp -m multiport --dports 53,67,80,3128,953,443 -j ACCEPT
  16. -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  17. -A INPUT -p tcp --dport 22 -j ACCEPT
  18.  
  19.  
  20.  
  21. -N ALTECNOLOGIC
  22. -A FORWARD -j ALTECNOLOGIC
  23. -A ALTECNOLOGIC -s 186.202.119.188 -j ACCEPT
  24. -A ALTECNOLOGIC -d 186.202.119.188 -j ACCEPT
  25.  
  26. -A ALTECNOLOGIC -j DROP
  27.  
  28.  
  29. COMMIT
  30. *nat
  31. :PREROUTING ACCEPT [0:0]
  32. :POSTROUTING ACCEPT [0:0]
  33. :OUTPUT ACCEPT [0:0]
  34. -A POSTROUTING -o eth0 -j MASQUERADE
  35. -N ALTECNOLOGIC
  36.  
  37. -A PREROUTING -i eth1 -j ALTECNOLOGIC
  38. -A ALTECNOLOGIC -d 186.202.119.188 -j ACCEPT
  39.  
  40.  
  41. # Captura pacotes DNS e HTTP
  42. -A ALTECNOLOGIC -p tcp -m multiport --dports 53,80,443 -j REDIRECT
  43. -A ALTECNOLOGIC -p udp -m multiport --dports 53,80,443 -j REDIRECT
  44.  
  45. COMMIT
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement