daily pastebin goal
43%
SHARE
TWEET

Untitled

a guest Apr 28th, 2016 93 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. [12:33 PM, 4/28/2016] +1 (647) 947-3784: root@zmal01:/home/zmal# iptables -L
  2. Chain INPUT (policy ACCEPT)
  3. target     prot opt source               destination        
  4. ACCEPT     tcp  --  anywhere             anywhere             tcp dpt:ssh state NEW,ESTABLISHED
  5. LOGGING    all  --  anywhere             anywhere            
  6.  
  7. Chain FORWARD (policy ACCEPT)
  8. target     prot opt source               destination        
  9. ACCEPT     all  --  anywhere             anywhere             PHYSDEV match --physdev-out vif9.0 --physdev-is-bridged
  10. ACCEPT     all  --  anywhere             anywhere             PHYSDEV match --physdev-in vif9.0 --physdev-is-bridged
  11.  
  12. Chain OUTPUT (policy ACCEPT)
  13. target     prot opt source               destination        
  14.  
  15. Chain LOGGING (1 references)
  16. target     prot opt source               destination        
  17. LOG        all  --  anywhere             anywhere             limit: avg 2/min burst 5 LOG level warning prefix "IPTables-Dropped: "
  18. DROP       all  --  anywhere             anywhere
  19. root@zmal01:/home/zmal# cat /var/log/syslog | grep IP
  20. [12:34 PM, 4/28/2016] +1 (647) 947-3784: Apr 28 11:32:33 zmal01 kernel: [525194.238636] IPTables-Dropped: IN=ovsbr0 OUT= MAC=01:00:5e:00:00:fb:ec:88:92:c6:33:78:08:00 SRC=192.168.2.59 DST=224.0.0.251 LEN=105 TOS=0x00 PREC=0x00 TTL=255 ID=32893 DF PROTO=UDP SPT=5353 DPT=5353 LEN=85
  21. Apr 28 11:33:18 zmal01 kernel: [525239.706429] IPTables-Dropped: IN=ovsbr0 OUT= MAC=0c:c4:7a:b6:1e:9c:ac:bc:32:c7:ac:fd:08:00 SRC=192.168.2.62 DST=192.168.2.68 LEN=62 TOS=0x00 PREC=0x00 TTL=64 ID=15324 DF PROTO=TCP SPT=59712 DPT=5901 WINDOW=4096 RES=0x00 ACK PSH URGP=0
  22. Apr 28 11:33:20 zmal01 kernel: [525242.013493] IPTables-Dropped: IN=ovsbr0 OUT= MAC=0c:c4:7a:b6:1e:9c:ac:bc:32:c7:ac:fd:08:00 SRC=192.168.2.62 DST=192.168.2.68 LEN=62 TOS=0x00 PREC=0x00 TTL=64 ID=2849 DF PROTO=TCP SPT=59712 DPT=5901 WINDOW=4096 RES=0x00 ACK PSH URGP=0
  23. [12:34 PM, 4/28/2016] +1 (647) 947-3784: don't know why its dropping
  24. [12:43 PM, 4/28/2016] +1 (647) 947-3784: root@zmal01:/home/zmal# sudo netstat -anp  | grep ssh
  25. tcp        0      0 0.0.0.0:22              0.0.0.0:*               LISTEN      18893/sshd      
  26. tcp        0      0 192.168.2.68:22         192.168.2.62:63377      ESTABLISHED 20291/sshd: zmal [p
  27. tcp        0      0 192.168.2.68:22         192.168.2.62:60137      ESTABLISHED 11705/sshd: zmal [p
RAW Paste Data
Top