Advertisement
k3NGuru

Untitled

Apr 4th, 2017
468
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 14.48 KB | None | 0 0
  1. [root@localhost ~]# iptables -nv -L
  2. Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
  3. pkts bytes target prot opt in out source destination
  4. 1892 157K fpbxfirewall all -- * * 0.0.0.0/0 0.0.0.0/0
  5.  
  6. Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
  7. pkts bytes target prot opt in out source destination
  8.  
  9. Chain OUTPUT (policy ACCEPT 431 packets, 76833 bytes)
  10. pkts bytes target prot opt in out source destination
  11.  
  12. Chain fpbx-rtp (1 references)
  13. pkts bytes target prot opt in out source destination
  14. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:10000:20000
  15. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:4000:4999
  16.  
  17. Chain fpbxattacker (3 references)
  18. pkts bytes target prot opt in out source destination
  19. 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: ATTACKER side: source
  20. 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  21.  
  22. Chain fpbxblacklist (1 references)
  23. pkts bytes target prot opt in out source destination
  24.  
  25. Chain fpbxfirewall (1 references)
  26. pkts bytes target prot opt in out source destination
  27. 314 27821 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
  28. 157 14737 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
  29. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
  30. 9 2982 ACCEPT all -- * * 0.0.0.0/0 255.255.255.255
  31. 5 341 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 PKTTYPE = multicast
  32. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spts:67:68 dpts:67:68
  33. 1407 112K fpbx-rtp all -- * * 0.0.0.0/0 0.0.0.0/0
  34. 1407 112K fpbxblacklist all -- * * 0.0.0.0/0 0.0.0.0/0
  35. 1407 112K fpbxsignalling all -- * * 0.0.0.0/0 0.0.0.0/0
  36. 1407 112K fpbxsmarthosts all -- * * 0.0.0.0/0 0.0.0.0/0
  37. 1407 112K fpbxregistrations all -- * * 0.0.0.0/0 0.0.0.0/0
  38. 1407 112K fpbxnets all -- * * 0.0.0.0/0 0.0.0.0/0
  39. 1244 97016 fpbxhosts all -- * * 0.0.0.0/0 0.0.0.0/0
  40. 1244 97016 fpbxinterfaces all -- * * 0.0.0.0/0 0.0.0.0/0
  41. 2 156 fpbxreject all -- * * 0.0.0.0/0 0.0.0.0/0
  42. 0 0 fpbxrfw all -- * * 0.0.0.0/0 0.0.0.0/0 mark match 0x2/0x2
  43. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
  44. 2 156 fpbxlogdrop all -- * * 0.0.0.0/0 0.0.0.0/0
  45.  
  46. Chain fpbxhosts (1 references)
  47. pkts bytes target prot opt in out source destination
  48. 0 0 zone-trusted all -- * * 127.0.0.1 0.0.0.0/0
  49.  
  50. Chain fpbxinterfaces (1 references)
  51. pkts bytes target prot opt in out source destination
  52. 1242 96860 zone-trusted all -- eth0 * 0.0.0.0/0 0.0.0.0/0
  53. 0 0 zone-trusted all -- eth1 * 0.0.0.0/0 0.0.0.0/0
  54.  
  55. Chain fpbxknownreg (0 references)
  56. pkts bytes target prot opt in out source destination
  57. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 mark match 0x1/0x1
  58. 0 0 fpbxsvc-ucp all -- * * 0.0.0.0/0 0.0.0.0/0
  59. 0 0 fpbxsvc-zulu all -- * * 0.0.0.0/0 0.0.0.0/0
  60. 0 0 fpbxsvc-restapps all -- * * 0.0.0.0/0 0.0.0.0/0
  61. 0 0 fpbxsvc-restapps_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
  62. 0 0 fpbxsvc-provis all -- * * 0.0.0.0/0 0.0.0.0/0
  63. 0 0 fpbxsvc-provis_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
  64.  
  65. Chain fpbxlogdrop (1 references)
  66. pkts bytes target prot opt in out source destination
  67. 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  68.  
  69. Chain fpbxnets (1 references)
  70. pkts bytes target prot opt in out source destination
  71. 13 988 zone-trusted all -- * * 192.168.92.122 0.0.0.0/0
  72. 150 13601 zone-trusted all -- * * 192.168.92.0/24 0.0.0.0/0
  73.  
  74. Chain fpbxregistrations (1 references)
  75. pkts bytes target prot opt in out source destination
  76.  
  77. Chain fpbxreject (1 references)
  78. pkts bytes target prot opt in out source destination
  79. 1 78 rejsvc-webrtc all -- * * 0.0.0.0/0 0.0.0.0/0
  80. 0 0 rejsvc-nfs all -- * * 0.0.0.0/0 0.0.0.0/0
  81. 0 0 rejsvc-smb all -- * * 0.0.0.0/0 0.0.0.0/0
  82.  
  83. Chain fpbxrfw (1 references)
  84. pkts bytes target prot opt in out source destination
  85. 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: REPEAT side: source
  86. 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: DISCOVERED side: source
  87. 0 0 fpbxattacker all -- * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 10 hit_count: 50 name: REPEAT side: source
  88. 0 0 fpbxattacker all -- * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 86400 hit_count: 1 name: ATTACKER side: source
  89. 0 0 fpbxshortblock all -- * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 60 hit_count: 10 name: SIGNALLING side: source
  90. 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: SIGNALLING side: source
  91. 0 0 fpbxattacker all -- * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 86400 hit_count: 100 name: REPEAT side: source
  92. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  93.  
  94. Chain fpbxshortblock (1 references)
  95. pkts bytes target prot opt in out source destination
  96. 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: CLAMPED side: source
  97. 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
  98.  
  99. Chain fpbxsignalling (1 references)
  100. pkts bytes target prot opt in out source destination
  101. 0 0 MARK udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5160 MARK set 0x1
  102. 0 0 MARK udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5060 MARK set 0x1
  103.  
  104. Chain fpbxsmarthosts (1 references)
  105. pkts bytes target prot opt in out source destination
  106.  
  107. Chain fpbxsvc-chansip (1 references)
  108. pkts bytes target prot opt in out source destination
  109. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5160
  110.  
  111. Chain fpbxsvc-ftp (1 references)
  112. pkts bytes target prot opt in out source destination
  113. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21
  114.  
  115. Chain fpbxsvc-http (1 references)
  116. pkts bytes target prot opt in out source destination
  117. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
  118.  
  119. Chain fpbxsvc-https (1 references)
  120. pkts bytes target prot opt in out source destination
  121. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
  122.  
  123. Chain fpbxsvc-iax (1 references)
  124. pkts bytes target prot opt in out source destination
  125. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:4569
  126.  
  127. Chain fpbxsvc-isymphony (1 references)
  128. pkts bytes target prot opt in out source destination
  129. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:58080
  130. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:55050
  131.  
  132. Chain fpbxsvc-nfs (0 references)
  133. pkts bytes target prot opt in out source destination
  134.  
  135. Chain fpbxsvc-pjsip (2 references)
  136. pkts bytes target prot opt in out source destination
  137. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5060
  138.  
  139. Chain fpbxsvc-provis (3 references)
  140. pkts bytes target prot opt in out source destination
  141. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:84
  142.  
  143. Chain fpbxsvc-provis_ssl (3 references)
  144. pkts bytes target prot opt in out source destination
  145. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:1443
  146.  
  147. Chain fpbxsvc-restapps (2 references)
  148. pkts bytes target prot opt in out source destination
  149. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:82
  150.  
  151. Chain fpbxsvc-restapps_ssl (2 references)
  152. pkts bytes target prot opt in out source destination
  153. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:3443
  154.  
  155. Chain fpbxsvc-smb (0 references)
  156. pkts bytes target prot opt in out source destination
  157.  
  158. Chain fpbxsvc-ssh (1 references)
  159. pkts bytes target prot opt in out source destination
  160. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
  161.  
  162. Chain fpbxsvc-tftp (1 references)
  163. pkts bytes target prot opt in out source destination
  164. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:69
  165.  
  166. Chain fpbxsvc-ucp (4 references)
  167. pkts bytes target prot opt in out source destination
  168.  
  169. Chain fpbxsvc-vpn (3 references)
  170. pkts bytes target prot opt in out source destination
  171. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1194
  172.  
  173. Chain fpbxsvc-webrtc (0 references)
  174. pkts bytes target prot opt in out source destination
  175. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8088
  176. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8089
  177.  
  178. Chain fpbxsvc-xmpp (3 references)
  179. pkts bytes target prot opt in out source destination
  180. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5222
  181.  
  182. Chain fpbxsvc-zulu (2 references)
  183. pkts bytes target prot opt in out source destination
  184.  
  185. Chain rejsvc-nfs (1 references)
  186. pkts bytes target prot opt in out source destination
  187.  
  188. Chain rejsvc-smb (1 references)
  189. pkts bytes target prot opt in out source destination
  190.  
  191. Chain rejsvc-webrtc (1 references)
  192. pkts bytes target prot opt in out source destination
  193. 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8088 reject-with icmp-port-unreachable
  194. 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8089 reject-with icmp-port-unreachable
  195.  
  196. Chain zone-external (0 references)
  197. pkts bytes target prot opt in out source destination
  198. 0 0 fpbxsvc-ucp all -- * * 0.0.0.0/0 0.0.0.0/0
  199. 0 0 fpbxsvc-vpn all -- * * 0.0.0.0/0 0.0.0.0/0
  200. 0 0 fpbxsvc-xmpp all -- * * 0.0.0.0/0 0.0.0.0/0
  201.  
  202. Chain zone-internal (0 references)
  203. pkts bytes target prot opt in out source destination
  204. 0 0 fpbxsvc-ssh all -- * * 0.0.0.0/0 0.0.0.0/0
  205. 0 0 fpbxsvc-http all -- * * 0.0.0.0/0 0.0.0.0/0
  206. 0 0 fpbxsvc-https all -- * * 0.0.0.0/0 0.0.0.0/0
  207. 0 0 fpbxsvc-ucp all -- * * 0.0.0.0/0 0.0.0.0/0
  208. 0 0 fpbxsvc-pjsip all -- * * 0.0.0.0/0 0.0.0.0/0
  209. 0 0 fpbxsvc-chansip all -- * * 0.0.0.0/0 0.0.0.0/0
  210. 0 0 fpbxsvc-iax all -- * * 0.0.0.0/0 0.0.0.0/0
  211. 0 0 fpbxsvc-zulu all -- * * 0.0.0.0/0 0.0.0.0/0
  212. 0 0 fpbxsvc-isymphony all -- * * 0.0.0.0/0 0.0.0.0/0
  213. 0 0 fpbxsvc-provis all -- * * 0.0.0.0/0 0.0.0.0/0
  214. 0 0 fpbxsvc-provis_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
  215. 0 0 fpbxsvc-vpn all -- * * 0.0.0.0/0 0.0.0.0/0
  216. 0 0 fpbxsvc-restapps all -- * * 0.0.0.0/0 0.0.0.0/0
  217. 0 0 fpbxsvc-restapps_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
  218. 0 0 fpbxsvc-xmpp all -- * * 0.0.0.0/0 0.0.0.0/0
  219. 0 0 fpbxsvc-ftp all -- * * 0.0.0.0/0 0.0.0.0/0
  220. 0 0 fpbxsvc-tftp all -- * * 0.0.0.0/0 0.0.0.0/0
  221.  
  222. Chain zone-other (0 references)
  223. pkts bytes target prot opt in out source destination
  224. 0 0 fpbxsvc-ucp all -- * * 0.0.0.0/0 0.0.0.0/0
  225. 0 0 fpbxsvc-pjsip all -- * * 0.0.0.0/0 0.0.0.0/0
  226. 0 0 fpbxsvc-provis all -- * * 0.0.0.0/0 0.0.0.0/0
  227. 0 0 fpbxsvc-provis_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
  228. 0 0 fpbxsvc-vpn all -- * * 0.0.0.0/0 0.0.0.0/0
  229. 0 0 fpbxsvc-xmpp all -- * * 0.0.0.0/0 0.0.0.0/0
  230.  
  231. Chain zone-trusted (5 references)
  232. pkts bytes target prot opt in out source destination
  233. 1405 111K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement