Guest User

Untitled

a guest
Jul 16th, 2018
92
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.55 KB | None | 0 0
  1. # Basic policies
  2. *filter
  3. :INPUT DROP
  4. :FORWARD DROP
  5. :OUTPUT ACCEPT
  6.  
  7. # Allow loopback
  8. -A INPUT --in-interface lo --jump ACCEPT
  9.  
  10. # Allow established
  11. -A INPUT --match conntrack --ctstate RELATED,ESTABLISHED --jump ACCEPT
  12.  
  13. # We don't believe in security-through-obscurity
  14. -A INPUT --protocol icmp --icmp-type echo-request --jump ACCEPT
  15. -A INPUT --protocol icmp --icmp-type echo-reply --jump ACCEPT
  16. -A INPUT --protocol icmp --icmp-type destination-unreachable --jump ACCEPT
  17. -A INPUT --protocol icmp --icmp-type time-exceeded --jump ACCEPT
  18.  
  19. COMMIT
Add Comment
Please, Sign In to add comment