Advertisement
Guest User

Untitled

a guest
Jun 20th, 2017
81
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. > iptables --list
  2. Chain INPUT (policy DROP)
  3. target     prot opt source               destination
  4. ACCEPT     all  --  anywhere             anywhere
  5. ACCEPT     all  --  anywhere             anywhere            state RELATED,ESTABLISHED
  6. input_ext  all  --  anywhere             anywhere
  7. LOG        all  --  anywhere             anywhere            limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-IN-ILL-TARGET '
  8. DROP       all  --  anywhere             anywhere
  9.  
  10. Chain FORWARD (policy DROP)
  11. target     prot opt source               destination
  12. LOG        all  --  anywhere             anywhere            limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-FWD-ILL-ROUTING '
  13.  
  14. Chain OUTPUT (policy ACCEPT)
  15. target     prot opt source               destination
  16. ACCEPT     all  --  anywhere             anywhere
  17. ACCEPT     all  --  anywhere             anywhere            state NEW,RELATED,ESTABLISHED
  18. LOG        all  --  anywhere             anywhere            limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-OUT-ERROR '
  19.  
  20. Chain forward_ext (0 references)
  21. target     prot opt source               destination
  22.  
  23. Chain input_ext (1 references)
  24. target     prot opt source               destination
  25. DROP       all  --  anywhere             anywhere            PKTTYPE = broadcast
  26. ACCEPT     icmp --  anywhere             anywhere            icmp source-quench
  27. ACCEPT     icmp --  anywhere             anywhere            icmp echo-request
  28. ACCEPT     icmp --  anywhere             anywhere            state RELATED,ESTABLISHED icmp echo-reply
  29. ACCEPT     icmp --  anywhere             anywhere            state RELATED,ESTABLISHED icmp destination-unreachable
  30. ACCEPT     icmp --  anywhere             anywhere            state RELATED,ESTABLISHED icmp time-exceeded
  31. ACCEPT     icmp --  anywhere             anywhere            state RELATED,ESTABLISHED icmp parameter-problem
  32. ACCEPT     icmp --  anywhere             anywhere            state RELATED,ESTABLISHED icmp timestamp-reply
  33. ACCEPT     icmp --  anywhere             anywhere            state RELATED,ESTABLISHED icmp address-mask-reply
  34. ACCEPT     icmp --  anywhere             anywhere            state RELATED,ESTABLISHED icmp protocol-unreachable
  35. ACCEPT     icmp --  anywhere             anywhere            state RELATED,ESTABLISHED icmp redirect
  36. LOG        tcp  --  anywhere             anywhere            limit: avg 3/min burst 5 tcp dpt:http flags:FIN,SYN,RST,ACK/SYN LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC-TCP '
  37. ACCEPT     tcp  --  anywhere             anywhere            tcp dpt:http
  38. LOG        tcp  --  charon.pristop.si    anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  39. ACCEPT     tcp  --  charon.pristop.si    anywhere            tcp dpt:ssh
  40. LOG        tcp  --  193.95.196.93        anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  41. ACCEPT     tcp  --  193.95.196.93        anywhere            tcp dpt:ssh
  42. LOG        tcp  --  sij.si               anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  43. ACCEPT     tcp  --  sij.si               anywhere            tcp dpt:ssh
  44. LOG        tcp  --  89-212-29-209.dynamic.dsl.t-2.net  anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  45. ACCEPT     tcp  --  89-212-29-209.dynamic.dsl.t-2.net  anywhere            tcp dpt:ssh
  46. LOG        tcp  --  194.152.23.251       anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  47. ACCEPT     tcp  --  194.152.23.251       anywhere            tcp dpt:ssh
  48. LOG        tcp  --  86.58.16.16          anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  49. ACCEPT     tcp  --  86.58.16.16          anywhere            tcp dpt:ssh
  50. LOG        tcp  --  BSN-77-70-145.dsl.siol.net  anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  51. ACCEPT     tcp  --  BSN-77-70-145.dsl.siol.net  anywhere            tcp dpt:ssh
  52. LOG        tcp  --  clj29-101.dial-up.arnes.si  anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  53. ACCEPT     tcp  --  clj29-101.dial-up.arnes.si  anywhere            tcp dpt:ssh
  54. LOG        tcp  --  lk.84.20.252.48.dc.cable.static.lj-kabel.net  anywhere            tcp dpt:ssh state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  55. ACCEPT     tcp  --  lk.84.20.252.48.dc.cable.static.lj-kabel.net  anywhere            tcp dpt:ssh
  56. LOG        tcp  --  charon.pristop.si    anywhere            tcp dpt:10050 state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  57. ACCEPT     tcp  --  charon.pristop.si    anywhere            tcp dpt:10050
  58. LOG        tcp  --  charon.pristop.si    anywhere            tcp dpt:https state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  59. ACCEPT     tcp  --  charon.pristop.si    anywhere            tcp dpt:https
  60. LOG        tcp  --  193.95.196.85        anywhere            tcp dpt:mysql state NEW limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-ACC '
  61. ACCEPT     tcp  --  193.95.196.85        anywhere            tcp dpt:mysql
  62. reject_func  tcp  --  anywhere             anywhere            tcp dpt:ident state NEW
  63. LOG        tcp  --  anywhere             anywhere            limit: avg 3/min burst 5 tcp flags:FIN,SYN,RST,ACK/SYN LOG level warning tcp-options ip-options prefix `SFW2-INext-DROP-DEFLT '
  64. LOG        icmp --  anywhere             anywhere            limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-DROP-DEFLT '
  65. LOG        udp  --  anywhere             anywhere            limit: avg 3/min burst 5 LOG level warning tcp-options ip-options prefix `SFW2-INext-DROP-DEFLT '
  66. LOG        all  --  anywhere             anywhere            limit: avg 3/min burst 5 state INVALID LOG level warning tcp-options ip-options prefix `SFW2-INext-DROP-DEFLT-INV '
  67. DROP       all  --  anywhere             anywhere
  68.  
  69. Chain reject_func (1 references)
  70. target     prot opt source               destination
  71. REJECT     tcp  --  anywhere             anywhere            reject-with tcp-reset
  72. REJECT     udp  --  anywhere             anywhere            reject-with icmp-port-unreachable
  73. REJECT     all  --  anywhere             anywhere            reject-with icmp-proto-unreachable
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement