Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- [root@localhost ~]# iptables -nv -L
- Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 1892 157K fpbxfirewall all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- Chain OUTPUT (policy ACCEPT 431 packets, 76833 bytes)
- pkts bytes target prot opt in out source destination
- Chain fpbx-rtp (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:10000:20000
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:4000:4999
- Chain fpbxattacker (3 references)
- pkts bytes target prot opt in out source destination
- 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: ATTACKER side: source
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain fpbxblacklist (1 references)
- pkts bytes target prot opt in out source destination
- Chain fpbxfirewall (1 references)
- pkts bytes target prot opt in out source destination
- 314 27821 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
- 157 14737 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
- 9 2982 ACCEPT all -- * * 0.0.0.0/0 255.255.255.255
- 5 341 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 PKTTYPE = multicast
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spts:67:68 dpts:67:68
- 1407 112K fpbx-rtp all -- * * 0.0.0.0/0 0.0.0.0/0
- 1407 112K fpbxblacklist all -- * * 0.0.0.0/0 0.0.0.0/0
- 1407 112K fpbxsignalling all -- * * 0.0.0.0/0 0.0.0.0/0
- 1407 112K fpbxsmarthosts all -- * * 0.0.0.0/0 0.0.0.0/0
- 1407 112K fpbxregistrations all -- * * 0.0.0.0/0 0.0.0.0/0
- 1407 112K fpbxnets all -- * * 0.0.0.0/0 0.0.0.0/0
- 1244 97016 fpbxhosts all -- * * 0.0.0.0/0 0.0.0.0/0
- 1244 97016 fpbxinterfaces all -- * * 0.0.0.0/0 0.0.0.0/0
- 2 156 fpbxreject all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxrfw all -- * * 0.0.0.0/0 0.0.0.0/0 mark match 0x2/0x2
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
- 2 156 fpbxlogdrop all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain fpbxhosts (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 zone-trusted all -- * * 127.0.0.1 0.0.0.0/0
- Chain fpbxinterfaces (1 references)
- pkts bytes target prot opt in out source destination
- 1242 96860 zone-trusted all -- eth0 * 0.0.0.0/0 0.0.0.0/0
- 0 0 zone-trusted all -- eth1 * 0.0.0.0/0 0.0.0.0/0
- Chain fpbxknownreg (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 mark match 0x1/0x1
- 0 0 fpbxsvc-ucp all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-zulu all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-restapps all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-restapps_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-provis all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-provis_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain fpbxlogdrop (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain fpbxnets (1 references)
- pkts bytes target prot opt in out source destination
- 13 988 zone-trusted all -- * * 192.168.92.122 0.0.0.0/0
- 150 13601 zone-trusted all -- * * 192.168.92.0/24 0.0.0.0/0
- Chain fpbxregistrations (1 references)
- pkts bytes target prot opt in out source destination
- Chain fpbxreject (1 references)
- pkts bytes target prot opt in out source destination
- 1 78 rejsvc-webrtc all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 rejsvc-nfs all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 rejsvc-smb all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain fpbxrfw (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: REPEAT side: source
- 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: DISCOVERED side: source
- 0 0 fpbxattacker all -- * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 10 hit_count: 50 name: REPEAT side: source
- 0 0 fpbxattacker all -- * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 86400 hit_count: 1 name: ATTACKER side: source
- 0 0 fpbxshortblock all -- * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 60 hit_count: 10 name: SIGNALLING side: source
- 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: SIGNALLING side: source
- 0 0 fpbxattacker all -- * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 86400 hit_count: 100 name: REPEAT side: source
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain fpbxshortblock (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: CLAMPED side: source
- 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
- Chain fpbxsignalling (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 MARK udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5160 MARK set 0x1
- 0 0 MARK udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5060 MARK set 0x1
- Chain fpbxsmarthosts (1 references)
- pkts bytes target prot opt in out source destination
- Chain fpbxsvc-chansip (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5160
- Chain fpbxsvc-ftp (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21
- Chain fpbxsvc-http (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
- Chain fpbxsvc-https (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
- Chain fpbxsvc-iax (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:4569
- Chain fpbxsvc-isymphony (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:58080
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:55050
- Chain fpbxsvc-nfs (0 references)
- pkts bytes target prot opt in out source destination
- Chain fpbxsvc-pjsip (2 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5060
- Chain fpbxsvc-provis (3 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:84
- Chain fpbxsvc-provis_ssl (3 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:1443
- Chain fpbxsvc-restapps (2 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:82
- Chain fpbxsvc-restapps_ssl (2 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:3443
- Chain fpbxsvc-smb (0 references)
- pkts bytes target prot opt in out source destination
- Chain fpbxsvc-ssh (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
- Chain fpbxsvc-tftp (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:69
- Chain fpbxsvc-ucp (4 references)
- pkts bytes target prot opt in out source destination
- Chain fpbxsvc-vpn (3 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1194
- Chain fpbxsvc-webrtc (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8088
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8089
- Chain fpbxsvc-xmpp (3 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5222
- Chain fpbxsvc-zulu (2 references)
- pkts bytes target prot opt in out source destination
- Chain rejsvc-nfs (1 references)
- pkts bytes target prot opt in out source destination
- Chain rejsvc-smb (1 references)
- pkts bytes target prot opt in out source destination
- Chain rejsvc-webrtc (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8088 reject-with icmp-port-unreachable
- 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8089 reject-with icmp-port-unreachable
- Chain zone-external (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 fpbxsvc-ucp all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-vpn all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-xmpp all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain zone-internal (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 fpbxsvc-ssh all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-http all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-https all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-ucp all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-pjsip all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-chansip all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-iax all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-zulu all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-isymphony all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-provis all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-provis_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-vpn all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-restapps all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-restapps_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-xmpp all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-ftp all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-tftp all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain zone-other (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 fpbxsvc-ucp all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-pjsip all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-provis all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-provis_ssl all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-vpn all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 fpbxsvc-xmpp all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain zone-trusted (5 references)
- pkts bytes target prot opt in out source destination
- 1405 111K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement