Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # iptables -L -v -n
- Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 3500K 9200M LIBVIRT_INP all -- * * 0.0.0.0/0 0.0.0.0/0
- 3500K 9200M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 8 480 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
- 144 14026 INPUT_direct all -- * * 0.0.0.0/0 0.0.0.0/0
- 144 14026 INPUT_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0
- 144 14026 INPUT_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0
- 5 200 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
- 20 600 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
- Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 19511 95M LIBVIRT_FWX all -- * * 0.0.0.0/0 0.0.0.0/0
- 19511 95M LIBVIRT_FWI all -- * * 0.0.0.0/0 0.0.0.0/0
- 9457 1236K LIBVIRT_FWO all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_direct all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_IN_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_IN_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_OUT_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FORWARD_OUT_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
- 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
- Chain OUTPUT (policy ACCEPT 2362K packets, 138M bytes)
- pkts bytes target prot opt in out source destination
- 2362K 138M LIBVIRT_OUT all -- * * 0.0.0.0/0 0.0.0.0/0
- 2362K 138M OUTPUT_direct all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FORWARD_IN_ZONES (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 FWDI_FedoraWorkstation all -- enp4s0 * 0.0.0.0/0 0.0.0.0/0 [goto]
- 0 0 FWDI_FedoraWorkstation all -- + * 0.0.0.0/0 0.0.0.0/0 [goto]
- Chain FORWARD_IN_ZONES_SOURCE (1 references)
- pkts bytes target prot opt in out source destination
- Chain FORWARD_OUT_ZONES (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 FWDO_FedoraWorkstation all -- * enp4s0 0.0.0.0/0 0.0.0.0/0 [goto]
- 0 0 FWDO_FedoraWorkstation all -- * + 0.0.0.0/0 0.0.0.0/0 [goto]
- Chain FORWARD_OUT_ZONES_SOURCE (1 references)
- pkts bytes target prot opt in out source destination
- Chain FORWARD_direct (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDI_FedoraWorkstation (2 references)
- pkts bytes target prot opt in out source destination
- 0 0 FWDI_FedoraWorkstation_log all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FWDI_FedoraWorkstation_deny all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FWDI_FedoraWorkstation_allow all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FWDI_FedoraWorkstation_allow (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDI_FedoraWorkstation_deny (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDI_FedoraWorkstation_log (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDO_FedoraWorkstation (2 references)
- pkts bytes target prot opt in out source destination
- 0 0 FWDO_FedoraWorkstation_log all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FWDO_FedoraWorkstation_deny all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 FWDO_FedoraWorkstation_allow all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FWDO_FedoraWorkstation_allow (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDO_FedoraWorkstation_deny (1 references)
- pkts bytes target prot opt in out source destination
- Chain FWDO_FedoraWorkstation_log (1 references)
- pkts bytes target prot opt in out source destination
- Chain INPUT_ZONES (1 references)
- pkts bytes target prot opt in out source destination
- 93 9580 IN_FedoraWorkstation all -- enp4s0 * 0.0.0.0/0 0.0.0.0/0 [goto]
- 51 4446 IN_FedoraWorkstation all -- + * 0.0.0.0/0 0.0.0.0/0 [goto]
- Chain INPUT_ZONES_SOURCE (1 references)
- pkts bytes target prot opt in out source destination
- Chain INPUT_direct (1 references)
- pkts bytes target prot opt in out source destination
- Chain IN_FedoraWorkstation (2 references)
- pkts bytes target prot opt in out source destination
- 144 14026 IN_FedoraWorkstation_log all -- * * 0.0.0.0/0 0.0.0.0/0
- 144 14026 IN_FedoraWorkstation_deny all -- * * 0.0.0.0/0 0.0.0.0/0
- 144 14026 IN_FedoraWorkstation_allow all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
- Chain IN_FedoraWorkstation_allow (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22 ctstate NEW,UNTRACKED
- 21 1854 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:137 ctstate NEW,UNTRACKED
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:138 ctstate NEW,UNTRACKED
- 86 9605 ACCEPT udp -- * * 0.0.0.0/0 224.0.0.251 udp dpt:5353 ctstate NEW,UNTRACKED
- 10 1667 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:1025:65535 ctstate NEW,UNTRACKED
- 2 100 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpts:1025:65535 ctstate NEW,UNTRACKED
- Chain IN_FedoraWorkstation_deny (1 references)
- pkts bytes target prot opt in out source destination
- Chain IN_FedoraWorkstation_log (1 references)
- pkts bytes target prot opt in out source destination
- Chain LIBVIRT_FWI (1 references)
- pkts bytes target prot opt in out source destination
- 10054 93M ACCEPT all -- * virbr0 0.0.0.0/0 192.168.122.0/24 ctstate RELATED,ESTABLISHED
- 0 0 REJECT all -- * virbr0 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
- Chain LIBVIRT_FWO (1 references)
- pkts bytes target prot opt in out source destination
- 9457 1236K ACCEPT all -- virbr0 * 192.168.122.0/24 0.0.0.0/0
- 0 0 REJECT all -- virbr0 * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
- Chain LIBVIRT_FWX (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- virbr0 virbr0 0.0.0.0/0 0.0.0.0/0
- Chain LIBVIRT_INP (1 references)
- pkts bytes target prot opt in out source destination
- 59 3960 ACCEPT udp -- virbr0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:53
- 0 0 ACCEPT tcp -- virbr0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:53
- 2 700 ACCEPT udp -- virbr0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:67
- 0 0 ACCEPT tcp -- virbr0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:67
- Chain LIBVIRT_OUT (1 references)
- pkts bytes target prot opt in out source destination
- 2 680 ACCEPT udp -- * virbr0 0.0.0.0/0 0.0.0.0/0 udp dpt:68
- Chain OUTPUT_direct (1 references)
- pkts bytes target prot opt in out source destination
- [root@localhost ~]#
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement