Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # Generated by iptables-save v1.4.21 on Mon May 11 12:57:10 2020
- *mangle
- :PREROUTING ACCEPT [1316096:868422557]
- :INPUT ACCEPT [790225:298791259]
- :FORWARD ACCEPT [525871:569631298]
- :OUTPUT ACCEPT [805462:1288730940]
- :POSTROUTING ACCEPT [1331333:1858362238]
- COMMIT
- # Completed on Mon May 11 12:57:10 2020
- # Generated by iptables-save v1.4.21 on Mon May 11 12:57:10 2020
- *filter
- :INPUT DROP [2:92]
- :FORWARD DROP [0:0]
- :OUTPUT DROP [0:0]
- :vesta - [0:0]
- -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A INPUT -s 127.0.0.1/32 -j ACCEPT
- -A INPUT -p tcp -m multiport --dports 80,443 -j ACCEPT
- -A INPUT -p tcp -m multiport --dports 21,12000:12100 -j ACCEPT
- -A INPUT -p udp -m udp --dport 53 -j ACCEPT
- -A INPUT -p tcp -m tcp --dport 53 -j ACCEPT
- -A INPUT -p tcp -m multiport --dports 25,465,587,2525 -j ACCEPT
- -A INPUT -p tcp -m tcp --dport 8083 -j ACCEPT
- -A INPUT -p icmp -j ACCEPT
- -A INPUT -i eth0 -p udp -m udp --dport 1195 -j ACCEPT
- -A INPUT -p gre -j ACCEPT
- -A FORWARD -i eth0 -o tun+ -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A FORWARD -i tun+ -o eth0 -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A FORWARD -i tun+ -j ACCEPT
- -A FORWARD -p tcp -m tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
- -A FORWARD -p tcp -m tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
- -A FORWARD -i tun+ -j ACCEPT
- -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A FORWARD -m state --state INVALID -j DROP
- -A FORWARD -i eth0 -o tun0 -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A OUTPUT -o lo -j ACCEPT
- -A OUTPUT -o eth0 -j ACCEPT
- -A OUTPUT -o tun+ -j ACCEPT
- -A OUTPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A OUTPUT -p tcp -m tcp ! --tcp-flags FIN,SYN,RST,ACK SYN -m state --state NEW -j DROP
- -A OUTPUT -o eth0 -j ACCEPT
- -A OUTPUT -o tun+ -j ACCEPT
- -A OUTPUT -p gre -j ACCEPT
- COMMIT
- # Completed on Mon May 11 12:57:10 2020
- # Generated by iptables-save v1.4.21 on Mon May 11 12:57:10 2020
- *nat
- :PREROUTING ACCEPT [37216:2077215]
- :INPUT ACCEPT [18488:982139]
- :OUTPUT ACCEPT [20892:1346400]
- :POSTROUTING ACCEPT [13027:781620]
- -A POSTROUTING -s 10.0.0.0/8 -o eth0 -j MASQUERADE
- -A POSTROUTING -o eth0 -j MASQUERADE
- COMMIT
- # Completed on Mon May 11 12:57:10 2020
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement