Advertisement
Guest User

Untitled

a guest
Jul 24th, 2019
147
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.10 KB | None | 0 0
  1. # Generated by iptables-save v1.6.1 on Wed Jul 24 21:56:42 2019
  2. *nat
  3. :PREROUTING ACCEPT [377994:19702094]
  4. :INPUT ACCEPT [148170:8556315]
  5. :OUTPUT ACCEPT [937254:66470683]
  6. :POSTROUTING ACCEPT [937254:66470683]
  7. :OUTPUT_direct - [0:0]
  8. :POSTROUTING_ZONES - [0:0]
  9. :POSTROUTING_ZONES_SOURCE - [0:0]
  10. :POSTROUTING_direct - [0:0]
  11. :POST_FedoraServer - [0:0]
  12. :POST_FedoraServer_allow - [0:0]
  13. :POST_FedoraServer_deny - [0:0]
  14. :POST_FedoraServer_log - [0:0]
  15. :PREROUTING_ZONES - [0:0]
  16. :PREROUTING_ZONES_SOURCE - [0:0]
  17. :PREROUTING_direct - [0:0]
  18. :PRE_FedoraServer - [0:0]
  19. :PRE_FedoraServer_allow - [0:0]
  20. :PRE_FedoraServer_deny - [0:0]
  21. :PRE_FedoraServer_log - [0:0]
  22. -A PREROUTING -j PREROUTING_direct
  23. -A PREROUTING -j PREROUTING_ZONES_SOURCE
  24. -A PREROUTING -j PREROUTING_ZONES
  25. -A OUTPUT -j OUTPUT_direct
  26. -A POSTROUTING -j POSTROUTING_direct
  27. -A POSTROUTING -j POSTROUTING_ZONES_SOURCE
  28. -A POSTROUTING -j POSTROUTING_ZONES
  29. -A POSTROUTING_ZONES -o eth0 -g POST_FedoraServer
  30. -A POSTROUTING_ZONES -g POST_FedoraServer
  31. -A POST_FedoraServer -j POST_FedoraServer_log
  32. -A POST_FedoraServer -j POST_FedoraServer_deny
  33. -A POST_FedoraServer -j POST_FedoraServer_allow
  34. -A PREROUTING_ZONES -i eth0 -g PRE_FedoraServer
  35. -A PREROUTING_ZONES -g PRE_FedoraServer
  36. -A PRE_FedoraServer -j PRE_FedoraServer_log
  37. -A PRE_FedoraServer -j PRE_FedoraServer_deny
  38. -A PRE_FedoraServer -j PRE_FedoraServer_allow
  39. COMMIT
  40. # Completed on Wed Jul 24 21:56:42 2019
  41. # Generated by iptables-save v1.6.1 on Wed Jul 24 21:56:42 2019
  42. *mangle
  43. :PREROUTING ACCEPT [10607725:1606157929]
  44. :INPUT ACCEPT [10607724:1606157853]
  45. :FORWARD ACCEPT [0:0]
  46. :OUTPUT ACCEPT [11282494:28313847804]
  47. :POSTROUTING ACCEPT [11282494:28313847804]
  48. :FORWARD_direct - [0:0]
  49. :INPUT_direct - [0:0]
  50. :OUTPUT_direct - [0:0]
  51. :POSTROUTING_direct - [0:0]
  52. :PREROUTING_ZONES - [0:0]
  53. :PREROUTING_ZONES_SOURCE - [0:0]
  54. :PREROUTING_direct - [0:0]
  55. :PRE_FedoraServer - [0:0]
  56. :PRE_FedoraServer_allow - [0:0]
  57. :PRE_FedoraServer_deny - [0:0]
  58. :PRE_FedoraServer_log - [0:0]
  59. -A PREROUTING -j PREROUTING_direct
  60. -A PREROUTING -j PREROUTING_ZONES_SOURCE
  61. -A PREROUTING -j PREROUTING_ZONES
  62. -A INPUT -j INPUT_direct
  63. -A FORWARD -j FORWARD_direct
  64. -A OUTPUT -j OUTPUT_direct
  65. -A POSTROUTING -j POSTROUTING_direct
  66. -A PREROUTING_ZONES -i eth0 -g PRE_FedoraServer
  67. -A PREROUTING_ZONES -g PRE_FedoraServer
  68. -A PRE_FedoraServer -j PRE_FedoraServer_log
  69. -A PRE_FedoraServer -j PRE_FedoraServer_deny
  70. -A PRE_FedoraServer -j PRE_FedoraServer_allow
  71. COMMIT
  72. # Completed on Wed Jul 24 21:56:42 2019
  73. # Generated by iptables-save v1.6.1 on Wed Jul 24 21:56:42 2019
  74. *raw
  75. :PREROUTING ACCEPT [10607725:1606157929]
  76. :OUTPUT ACCEPT [11282494:28313847804]
  77. :OUTPUT_direct - [0:0]
  78. :PREROUTING_ZONES - [0:0]
  79. :PREROUTING_ZONES_SOURCE - [0:0]
  80. :PREROUTING_direct - [0:0]
  81. :PRE_FedoraServer - [0:0]
  82. :PRE_FedoraServer_allow - [0:0]
  83. :PRE_FedoraServer_deny - [0:0]
  84. :PRE_FedoraServer_log - [0:0]
  85. -A PREROUTING -j PREROUTING_direct
  86. -A PREROUTING -j PREROUTING_ZONES_SOURCE
  87. -A PREROUTING -j PREROUTING_ZONES
  88. -A OUTPUT -j OUTPUT_direct
  89. -A PREROUTING_ZONES -i eth0 -g PRE_FedoraServer
  90. -A PREROUTING_ZONES -g PRE_FedoraServer
  91. -A PRE_FedoraServer -j PRE_FedoraServer_log
  92. -A PRE_FedoraServer -j PRE_FedoraServer_deny
  93. -A PRE_FedoraServer -j PRE_FedoraServer_allow
  94. COMMIT
  95. # Completed on Wed Jul 24 21:56:42 2019
  96. # Generated by iptables-save v1.6.1 on Wed Jul 24 21:56:42 2019
  97. *security
  98. :INPUT ACCEPT [10343291:1593154054]
  99. :FORWARD ACCEPT [0:0]
  100. :OUTPUT ACCEPT [11282494:28313847804]
  101. :FORWARD_direct - [0:0]
  102. :INPUT_direct - [0:0]
  103. :OUTPUT_direct - [0:0]
  104. -A INPUT -j INPUT_direct
  105. -A FORWARD -j FORWARD_direct
  106. -A OUTPUT -j OUTPUT_direct
  107. COMMIT
  108. # Completed on Wed Jul 24 21:56:42 2019
  109. # Generated by iptables-save v1.6.1 on Wed Jul 24 21:56:42 2019
  110. *filter
  111. :INPUT ACCEPT [0:0]
  112. :FORWARD ACCEPT [0:0]
  113. :OUTPUT ACCEPT [11282494:28313847804]
  114. :FORWARD_IN_ZONES - [0:0]
  115. :FORWARD_IN_ZONES_SOURCE - [0:0]
  116. :FORWARD_OUT_ZONES - [0:0]
  117. :FORWARD_OUT_ZONES_SOURCE - [0:0]
  118. :FORWARD_direct - [0:0]
  119. :FWDI_FedoraServer - [0:0]
  120. :FWDI_FedoraServer_allow - [0:0]
  121. :FWDI_FedoraServer_deny - [0:0]
  122. :FWDI_FedoraServer_log - [0:0]
  123. :FWDO_FedoraServer - [0:0]
  124. :FWDO_FedoraServer_allow - [0:0]
  125. :FWDO_FedoraServer_deny - [0:0]
  126. :FWDO_FedoraServer_log - [0:0]
  127. :INPUT_ZONES - [0:0]
  128. :INPUT_ZONES_SOURCE - [0:0]
  129. :INPUT_direct - [0:0]
  130. :IN_FedoraServer - [0:0]
  131. :IN_FedoraServer_allow - [0:0]
  132. :IN_FedoraServer_deny - [0:0]
  133. :IN_FedoraServer_log - [0:0]
  134. :OUTPUT_direct - [0:0]
  135. -A INPUT -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
  136. -A INPUT -i lo -j ACCEPT
  137. -A INPUT -j INPUT_direct
  138. -A INPUT -j INPUT_ZONES_SOURCE
  139. -A INPUT -j INPUT_ZONES
  140. -A INPUT -m conntrack --ctstate INVALID -j DROP
  141. -A INPUT -j REJECT --reject-with icmp-host-prohibited
  142. -A FORWARD -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
  143. -A FORWARD -i lo -j ACCEPT
  144. -A FORWARD -j FORWARD_direct
  145. -A FORWARD -j FORWARD_IN_ZONES_SOURCE
  146. -A FORWARD -j FORWARD_IN_ZONES
  147. -A FORWARD -j FORWARD_OUT_ZONES_SOURCE
  148. -A FORWARD -j FORWARD_OUT_ZONES
  149. -A FORWARD -m conntrack --ctstate INVALID -j DROP
  150. -A FORWARD -j REJECT --reject-with icmp-host-prohibited
  151. -A OUTPUT -j OUTPUT_direct
  152. -A FORWARD_IN_ZONES -i eth0 -g FWDI_FedoraServer
  153. -A FORWARD_IN_ZONES -g FWDI_FedoraServer
  154. -A FORWARD_OUT_ZONES -o eth0 -g FWDO_FedoraServer
  155. -A FORWARD_OUT_ZONES -g FWDO_FedoraServer
  156. -A FWDI_FedoraServer -j FWDI_FedoraServer_log
  157. -A FWDI_FedoraServer -j FWDI_FedoraServer_deny
  158. -A FWDI_FedoraServer -j FWDI_FedoraServer_allow
  159. -A FWDI_FedoraServer -p icmp -j ACCEPT
  160. -A FWDO_FedoraServer -j FWDO_FedoraServer_log
  161. -A FWDO_FedoraServer -j FWDO_FedoraServer_deny
  162. -A FWDO_FedoraServer -j FWDO_FedoraServer_allow
  163. -A INPUT_ZONES -i eth0 -g IN_FedoraServer
  164. -A INPUT_ZONES -g IN_FedoraServer
  165. -A IN_FedoraServer -j IN_FedoraServer_log
  166. -A IN_FedoraServer -j IN_FedoraServer_deny
  167. -A IN_FedoraServer -j IN_FedoraServer_allow
  168. -A IN_FedoraServer -p icmp -j ACCEPT
  169. -A IN_FedoraServer_allow -p tcp -m tcp --dport 22 -m conntrack --ctstate NEW -j ACCEPT
  170. -A IN_FedoraServer_allow -p tcp -m tcp --dport 9090 -m conntrack --ctstate NEW -j ACCEPT
  171. -A IN_FedoraServer_allow -p tcp -m tcp --dport 443 -m conntrack --ctstate NEW -j ACCEPT
  172. COMMIT
  173. # Completed on Wed Jul 24 21:56:42 2019
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement