Guest User

Untitled

a guest
Feb 19th, 2018
102
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.12 KB | None | 0 0
  1. # Generated by iptables-save v1.3.5 on Wed Oct 26 06:10:35 2011
  2. *nat
  3. :PREROUTING ACCEPT [48601:2911933]
  4. :POSTROUTING ACCEPT [39676:2321270]
  5. COMMIT
  6. # Completed on Wed Oct 26 06:10:35 2011
  7. # Generated by iptables-save v1.3.5 on Wed Oct 26 06:10:35 2011
  8. *mangle
  9. :PREROUTING ACCEPT [1286944:849065359]
  10. :INPUT ACCEPT [56511:8508858]
  11. :FORWARD ACCEPT [1230335:840536599]
  12. :POSTROUTING ACCEPT [1269932:846336862]
  13. COMMIT
  14. # Completed on Wed Oct 26 06:10:35 2011
  15. # Generated by iptables-save v1.3.5 on Wed Oct 26 06:10:35 2011
  16. *filter
  17. :INPUT ACCEPT [56511:8508858]
  18. :FORWARD ACCEPT [1220847:838977511]
  19. :ANTIFLOOD - [0:0]
  20. :DROP_LIMIT - [0:0]
  21. :NEWCONN_LIMIT - [0:0]
  22. :PACKET_LIMIT_NONTCP - [0:0]
  23. -A FORWARD -m state --state INVALID -j DROP_LIMIT
  24. -A FORWARD -o eth0 -j ANTIFLOOD
  25. -A ANTIFLOOD -j PACKET_LIMIT_NONTCP
  26. -A ANTIFLOOD -j RETURN
  27. -A DROP_LIMIT -j LOG
  28. -A DROP_LIMIT -j DROP
  29. -A PACKET_LIMIT_NONTCP -p ! tcp -m state --state NEW -m hashlimit --hashlimit 1000/sec --hashlimit-burst 1100 --hashlimit-mode srcip,dstip --hashlimit-name newconn_udp --hashlimit-htable-expire 3500 -j DROP_LIMIT
  30. -A PACKET_LIMIT_NONTCP -j RETURN
  31. COMMIT
Add Comment
Please, Sign In to add comment