Guest User

Untitled

a guest
May 28th, 2012
62
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. root@hannah:/home/deploy# iptables -nvL
  2. Chain INPUT (policy DROP 37 packets, 3014 bytes)
  3. pkts bytes target prot opt in out source destination
  4. 335K 73M ufw-before-logging-input all -- * * 0.0.0.0/0 0.0.0.0/0
  5. 335K 73M ufw-before-input all -- * * 0.0.0.0/0 0.0.0.0/0
  6. 2755 784K ufw-after-input all -- * * 0.0.0.0/0 0.0.0.0/0
  7. 2746 784K ufw-after-logging-input all -- * * 0.0.0.0/0 0.0.0.0/0
  8. 2746 784K ufw-reject-input all -- * * 0.0.0.0/0 0.0.0.0/0
  9. 2746 784K ufw-track-input all -- * * 0.0.0.0/0 0.0.0.0/0
  10.  
  11. Chain FORWARD (policy DROP 0 packets, 0 bytes)
  12. pkts bytes target prot opt in out source destination
  13. 0 0 ufw-before-logging-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  14. 0 0 ufw-before-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  15. 0 0 ufw-after-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  16. 0 0 ufw-after-logging-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  17. 0 0 ufw-reject-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  18.  
  19. Chain OUTPUT (policy ACCEPT 7 packets, 292 bytes)
  20. pkts bytes target prot opt in out source destination
  21. 314K 32M ufw-before-logging-output all -- * * 0.0.0.0/0 0.0.0.0/0
  22. 314K 32M ufw-before-output all -- * * 0.0.0.0/0 0.0.0.0/0
  23. 8784 1665K ufw-after-output all -- * * 0.0.0.0/0 0.0.0.0/0
  24. 8784 1665K ufw-after-logging-output all -- * * 0.0.0.0/0 0.0.0.0/0
  25. 8784 1665K ufw-reject-output all -- * * 0.0.0.0/0 0.0.0.0/0
  26. 8784 1665K ufw-track-output all -- * * 0.0.0.0/0 0.0.0.0/0
  27.  
  28. Chain ufw-after-forward (1 references)
  29. pkts bytes target prot opt in out source destination
  30.  
  31. Chain ufw-after-input (1 references)
  32. pkts bytes target prot opt in out source destination
  33. 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:137
  34. 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:138
  35. 1 64 ufw-skip-to-policy-input tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:139
  36. 8 408 ufw-skip-to-policy-input tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:445
  37. 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:67
  38. 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:68
  39. 0 0 ufw-skip-to-policy-input all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type BROADCAST
  40.  
  41. Chain ufw-after-logging-forward (1 references)
  42. pkts bytes target prot opt in out source destination
  43. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10 LOG flags 0 level 4 prefix `[UFW BLOCK] '
  44.  
  45. Chain ufw-after-logging-input (1 references)
  46. pkts bytes target prot opt in out source destination
  47. 37 3014 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10 LOG flags 0 level 4 prefix `[UFW BLOCK] '
  48.  
  49. Chain ufw-after-logging-output (1 references)
  50. pkts bytes target prot opt in out source destination
  51.  
  52. Chain ufw-after-output (1 references)
  53. pkts bytes target prot opt in out source destination
  54.  
  55. Chain ufw-before-forward (1 references)
  56. pkts bytes target prot opt in out source destination
  57. 0 0 ufw-user-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  58.  
  59. Chain ufw-before-input (1 references)
  60. pkts bytes target prot opt in out source destination
  61. 262K 19M ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
  62. 50984 50M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
  63. 32 1504 ufw-logging-deny all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
  64. 32 1504 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
  65. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 3
  66. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 4
  67. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 11
  68. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 12
  69. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 8
  70. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:67 dpt:68
  71. 520 32406 ufw-not-local all -- * * 0.0.0.0/0 0.0.0.0/0
  72. 0 0 ACCEPT all -- * * 224.0.0.0/4 0.0.0.0/0
  73. 0 0 ACCEPT all -- * * 0.0.0.0/0 224.0.0.0/4
  74. 520 32406 ufw-user-input all -- * * 0.0.0.0/0 0.0.0.0/0
  75.  
  76. Chain ufw-before-logging-forward (1 references)
  77. pkts bytes target prot opt in out source destination
  78.  
  79. Chain ufw-before-logging-input (1 references)
  80. pkts bytes target prot opt in out source destination
  81.  
  82. Chain ufw-before-logging-output (1 references)
  83. pkts bytes target prot opt in out source destination
  84.  
  85. Chain ufw-before-output (1 references)
  86. pkts bytes target prot opt in out source destination
  87. 262K 19M ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0
  88. 28451 6206K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
  89. 6565 451K ufw-user-output all -- * * 0.0.0.0/0 0.0.0.0/0
  90.  
  91. Chain ufw-logging-allow (0 references)
  92. pkts bytes target prot opt in out source destination
  93. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10 LOG flags 0 level 4 prefix `[UFW ALLOW] '
  94.  
  95. Chain ufw-logging-deny (2 references)
  96. pkts bytes target prot opt in out source destination
  97. 32 1504 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID limit: avg 3/min burst 10
  98. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10 LOG flags 0 level 4 prefix `[UFW BLOCK] '
  99.  
  100. Chain ufw-not-local (1 references)
  101. pkts bytes target prot opt in out source destination
  102. 520 32406 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type LOCAL
  103. 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type MULTICAST
  104. 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type BROADCAST
  105. 0 0 ufw-logging-deny all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10
  106. 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  107.  
  108. Chain ufw-reject-forward (1 references)
  109. pkts bytes target prot opt in out source destination
  110.  
  111. Chain ufw-reject-input (1 references)
  112. pkts bytes target prot opt in out source destination
  113.  
  114. Chain ufw-reject-output (1 references)
  115. pkts bytes target prot opt in out source destination
  116.  
  117. Chain ufw-skip-to-policy-forward (0 references)
  118. pkts bytes target prot opt in out source destination
  119. 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  120.  
  121. Chain ufw-skip-to-policy-input (7 references)
  122. pkts bytes target prot opt in out source destination
  123. 9 472 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  124.  
  125. Chain ufw-skip-to-policy-output (0 references)
  126. pkts bytes target prot opt in out source destination
  127. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  128.  
  129. Chain ufw-track-input (1 references)
  130. pkts bytes target prot opt in out source destination
  131.  
  132. Chain ufw-track-output (1 references)
  133. pkts bytes target prot opt in out source destination
  134. 1203 72180 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW
  135. 5355 378K ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW
  136.  
  137. Chain ufw-user-forward (1 references)
  138. pkts bytes target prot opt in out source destination
  139.  
  140. Chain ufw-user-input (1 references)
  141. pkts bytes target prot opt in out source destination
  142. 311 18804 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
  143. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:22
  144. 160 9972 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
  145. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:80
  146. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:3128
  147. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:3128
  148. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:25
  149. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:25
  150. 3 144 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
  151. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:443
  152.  
  153. Chain ufw-user-limit (0 references)
  154. pkts bytes target prot opt in out source destination
  155. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 5 LOG flags 0 level 4 prefix `[UFW LIMIT BLOCK] '
  156. 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
  157.  
  158. Chain ufw-user-limit-accept (0 references)
  159. pkts bytes target prot opt in out source destination
  160. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  161.  
  162. Chain ufw-user-logging-forward (0 references)
  163. pkts bytes target prot opt in out source destination
  164.  
  165. Chain ufw-user-logging-input (0 references)
  166. pkts bytes target prot opt in out source destination
  167.  
  168. Chain ufw-user-logging-output (0 references)
  169. pkts bytes target prot opt in out source destination
  170.  
  171. Chain ufw-user-output (1 references)
  172. pkts bytes target prot opt in out source destination
  173. root@hannah:/home/deploy# iptables -nvL -t nat
  174. Chain PREROUTING (policy ACCEPT 1426 packets, 93175 bytes)
  175. pkts bytes target prot opt in out source destination
  176.  
  177. Chain INPUT (policy ACCEPT 1400 packets, 88535 bytes)
  178. pkts bytes target prot opt in out source destination
  179.  
  180. Chain OUTPUT (policy ACCEPT 21730 packets, 1440K bytes)
  181. pkts bytes target prot opt in out source destination
  182.  
  183. Chain POSTROUTING (policy ACCEPT 21730 packets, 1440K bytes)
RAW Paste Data