Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Chain INPUT (policy DROP 110 packets, 5045 bytes)
- pkts bytes target prot opt in out source destination
- 7503K 10G ufw-before-logging-input all -- * * 0.0.0.0/0 0.0.0.0/0
- 7503K 10G ufw-before-input all -- * * 0.0.0.0/0 0.0.0.0/0
- 542K 38M ufw-after-input all -- * * 0.0.0.0/0 0.0.0.0/0
- 484K 35M ufw-after-logging-input all -- * * 0.0.0.0/0 0.0.0.0/0
- 484K 35M ufw-reject-input all -- * * 0.0.0.0/0 0.0.0.0/0
- 484K 35M ufw-track-input all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FORWARD (policy DROP 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 1051 465K DOCKER-USER all -- * * 0.0.0.0/0 0.0.0.0/0
- 974 461K DOCKER-ISOLATION-STAGE-1 all -- * * 0.0.0.0/0 0.0.0.0/0
- 159 21384 ACCEPT all -- * br-8b2b83402b44 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 1 60 DOCKER all -- * br-8b2b83402b44 0.0.0.0/0 0.0.0.0/0
- 267 126K ACCEPT all -- br-8b2b83402b44 !br-8b2b83402b44 0.0.0.0/0 0.0.0.0/0
- 1 60 ACCEPT all -- br-8b2b83402b44 br-8b2b83402b44 0.0.0.0/0 0.0.0.0/0
- 511 311K ACCEPT all -- * br-50d6ff55a7a3 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 36 2160 DOCKER all -- * br-50d6ff55a7a3 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- br-50d6ff55a7a3 !br-50d6ff55a7a3 0.0.0.0/0 0.0.0.0/0
- 36 2160 ACCEPT all -- br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- * docker0 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 DOCKER all -- * docker0 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- docker0 !docker0 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- docker0 docker0 0.0.0.0/0 0.0.0.0/0
- 0 0 ufw-before-logging-forward all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ufw-before-forward all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ufw-after-forward all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ufw-after-logging-forward all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ufw-reject-forward all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ufw-track-forward all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 6471K 9708M ufw-before-logging-output all -- * * 0.0.0.0/0 0.0.0.0/0
- 6471K 9708M ufw-before-output all -- * * 0.0.0.0/0 0.0.0.0/0
- 111K 22M ufw-after-output all -- * * 0.0.0.0/0 0.0.0.0/0
- 111K 22M ufw-after-logging-output all -- * * 0.0.0.0/0 0.0.0.0/0
- 111K 22M ufw-reject-output all -- * * 0.0.0.0/0 0.0.0.0/0
- 111K 22M ufw-track-output all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-before-logging-input (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-before-logging-output (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-before-logging-forward (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-before-input (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
- 477 39178 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 41 2600 ufw-logging-deny all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
- 41 2600 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 3
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 11
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 12
- 1 84 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:67 dpt:68
- 205 10589 ufw-not-local all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 224.0.0.251 udp dpt:5353
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 239.255.255.250 udp dpt:1900
- 205 10589 ufw-user-input all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-before-output (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0
- 404 205K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 ufw-user-output all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-before-forward (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 3
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 11
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 12
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8
- 0 0 ufw-user-forward all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-after-input (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:137
- 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:138
- 0 0 ufw-skip-to-policy-input tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:139
- 5 244 ufw-skip-to-policy-input tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:445
- 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:67
- 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:68
- 0 0 ufw-skip-to-policy-input all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type BROADCAST
- Chain ufw-after-output (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-after-forward (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-after-logging-input (1 references)
- pkts bytes target prot opt in out source destination
- 33 1761 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10 LOG flags 0 level 4 prefix "[UFW BLOCK] "
- Chain ufw-after-logging-output (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-after-logging-forward (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10 LOG flags 0 level 4 prefix "[UFW BLOCK] "
- Chain ufw-reject-input (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-reject-output (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-reject-forward (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-track-input (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-track-output (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 ctstate NEW
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 ctstate NEW
- Chain ufw-track-forward (1 references)
- pkts bytes target prot opt in out source destination
- Chain DOCKER (3 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- !br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 172.18.0.2 tcp dpt:8983
- 0 0 ACCEPT tcp -- !br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 172.18.0.5 tcp dpt:443
- 0 0 ACCEPT tcp -- !br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 172.18.0.5 tcp dpt:80
- 0 0 ACCEPT tcp -- !br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 172.18.0.7 tcp dpt:7687
- 0 0 ACCEPT tcp -- !br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 172.18.0.7 tcp dpt:7474
- 0 0 ACCEPT tcp -- !br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 172.18.0.7 tcp dpt:2004
- 0 0 ACCEPT tcp -- !br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 172.18.0.8 tcp dpt:15672
- 0 0 ACCEPT tcp -- !br-50d6ff55a7a3 br-50d6ff55a7a3 0.0.0.0/0 172.18.0.10 tcp dpt:3000
- 0 0 ACCEPT tcp -- !br-8b2b83402b44 br-8b2b83402b44 0.0.0.0/0 172.25.0.100 tcp dpt:9273
- 0 0 ACCEPT tcp -- !br-8b2b83402b44 br-8b2b83402b44 0.0.0.0/0 172.25.0.101 tcp dpt:443
- 0 0 ACCEPT tcp -- !br-8b2b83402b44 br-8b2b83402b44 0.0.0.0/0 172.25.0.101 tcp dpt:80
- Chain DOCKER-ISOLATION-STAGE-1 (1 references)
- pkts bytes target prot opt in out source destination
- 267 126K DOCKER-ISOLATION-STAGE-2 all -- br-8b2b83402b44 !br-8b2b83402b44 0.0.0.0/0 0.0.0.0/0
- 0 0 DOCKER-ISOLATION-STAGE-2 all -- br-50d6ff55a7a3 !br-50d6ff55a7a3 0.0.0.0/0 0.0.0.0/0
- 0 0 DOCKER-ISOLATION-STAGE-2 all -- docker0 !docker0 0.0.0.0/0 0.0.0.0/0
- 974 461K RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain DOCKER-USER (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 RETURN all -- * * 10.0.0.0/8 0.0.0.0/0
- 10106 4042K RETURN all -- * * 172.16.0.0/12 0.0.0.0/0
- 10918 6491K RETURN all -- * * 192.168.0.0/16 0.0.0.0/0
- 4604 299K ufw-user-forward all -- * * 0.0.0.0/0 0.0.0.0/0
- 994 59640 DROP tcp -- * * 0.0.0.0/0 192.168.0.0/16 tcp flags:0x17/0x02
- 0 0 DROP tcp -- * * 0.0.0.0/0 10.0.0.0/8 tcp flags:0x17/0x02
- 1036 62104 DROP tcp -- * * 0.0.0.0/0 172.16.0.0/12 tcp flags:0x17/0x02
- 0 0 DROP udp -- * * 0.0.0.0/0 192.168.0.0/16 udp dpts:0:32767
- 0 0 DROP udp -- * * 0.0.0.0/0 10.0.0.0/8 udp dpts:0:32767
- 0 0 DROP udp -- * * 0.0.0.0/0 172.16.0.0/12 udp dpts:0:32767
- 2574 177K RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-user-forward (2 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-logging-deny (2 references)
- pkts bytes target prot opt in out source destination
- 16 1000 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID limit: avg 3/min burst 10
- 15 960 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10 LOG flags 0 level 4 prefix "[UFW BLOCK] "
- Chain ufw-logging-allow (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10 LOG flags 0 level 4 prefix "[UFW ALLOW] "
- Chain ufw-skip-to-policy-input (7 references)
- pkts bytes target prot opt in out source destination
- 5 244 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-skip-to-policy-output (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-skip-to-policy-forward (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-not-local (1 references)
- pkts bytes target prot opt in out source destination
- 205 10589 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type LOCAL
- 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type MULTICAST
- 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type BROADCAST
- 0 0 ufw-logging-deny all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ufw-user-input (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
- 2 80 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
- 3 160 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:873
- 2 80 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:2375
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:2375
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:1337
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1337
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:447
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:447
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:3000
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:3000
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:7575
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:7575
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8983
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:8983
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:15672
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:15672
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:81
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:81
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:444
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:444
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8042
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:8042
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:7474
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:7474
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:7688
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:7688
- 71 4260 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:10080
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:10080
- 0 0 ACCEPT tcp -- * * 172.16.0.0/12 0.0.0.0/0 tcp dpt:10080
- 0 0 ACCEPT udp -- * * 172.16.0.0/12 0.0.0.0/0 udp dpt:10080
- 0 0 ACCEPT tcp -- * * 192.168.0.0/16 0.0.0.0/0 tcp dpt:10080
- 0 0 ACCEPT udp -- * * 192.168.0.0/16 0.0.0.0/0 udp dpt:10080
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:2376
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:2376
- 0 0 ACCEPT tcp -- * * 172.16.0.0/12 0.0.0.0/0 tcp dpt:10080
- 0 0 ACCEPT tcp -- * * 192.168.0.0/16 0.0.0.0/0 tcp dpt:10080
- 4 240 ACCEPT tcp -- * * XXX.XXX.XXX.XXX 0.0.0.0/0 tcp dpt:9323
- 4 240 ACCEPT tcp -- * * XXX.XXX.XXX.XXX 0.0.0.0/0 tcp dpt:9273
- 4 240 ACCEPT tcp -- * * XXX.XXX.XXX.XXX 0.0.0.0/0 tcp dpt:2004
- Chain ufw-user-output (1 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-user-logging-input (0 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-user-logging-output (0 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-user-logging-forward (0 references)
- pkts bytes target prot opt in out source destination
- Chain ufw-user-limit (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 5 LOG flags 0 level 4 prefix "[UFW LIMIT BLOCK] "
- 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
- Chain ufw-user-limit-accept (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain DOCKER-ISOLATION-STAGE-2 (3 references)
- pkts bytes target prot opt in out source destination
- 0 0 DROP all -- * br-8b2b83402b44 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP all -- * br-50d6ff55a7a3 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP all -- * docker0 0.0.0.0/0 0.0.0.0/0
- 267 126K RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement