Advertisement
Guest User

Untitled

a guest
Aug 23rd, 2019
93
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 16.97 KB | None | 0 0
  1. Chain INPUT (policy DROP 1979 packets, 107K bytes)
  2. pkts bytes target prot opt in out source destination
  3. 623M 37G ufw-before-logging-input all -- * * 0.0.0.0/0 0.0.0.0/0
  4. 623M 37G ufw-before-input all -- * * 0.0.0.0/0 0.0.0.0/0
  5. 147K 9637K ufw-after-input all -- * * 0.0.0.0/0 0.0.0.0/0
  6. 129K 7191K ufw-after-logging-input all -- * * 0.0.0.0/0 0.0.0.0/0
  7. 129K 7191K ufw-reject-input all -- * * 0.0.0.0/0 0.0.0.0/0
  8. 129K 7191K ufw-track-input all -- * * 0.0.0.0/0 0.0.0.0/0
  9.  
  10. Chain FORWARD (policy ACCEPT 864 packets, 62762 bytes)
  11. pkts bytes target prot opt in out source destination
  12. 29M 24G DOCKER-USER all -- * * 0.0.0.0/0 0.0.0.0/0
  13. 29M 24G DOCKER-ISOLATION-STAGE-1 all -- * * 0.0.0.0/0 0.0.0.0/0
  14. 20382 2636K ACCEPT all -- * br-bea60ee1e88e 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  15. 1487 84184 DOCKER all -- * br-bea60ee1e88e 0.0.0.0/0 0.0.0.0/0
  16. 18020 18M ACCEPT all -- br-bea60ee1e88e !br-bea60ee1e88e 0.0.0.0/0 0.0.0.0/0
  17. 0 0 ACCEPT all -- br-bea60ee1e88e br-bea60ee1e88e 0.0.0.0/0 0.0.0.0/0
  18. 23308 36M ACCEPT all -- * docker0 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  19. 0 0 DOCKER all -- * docker0 0.0.0.0/0 0.0.0.0/0
  20. 11091 634K ACCEPT all -- docker0 !docker0 0.0.0.0/0 0.0.0.0/0
  21. 0 0 ACCEPT all -- docker0 docker0 0.0.0.0/0 0.0.0.0/0
  22. 3123K 486M ACCEPT all -- * br-35aa789cbb50 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  23. 125K 7442K DOCKER all -- * br-35aa789cbb50 0.0.0.0/0 0.0.0.0/0
  24. 38823 158M ACCEPT all -- br-35aa789cbb50 !br-35aa789cbb50 0.0.0.0/0 0.0.0.0/0
  25. 121K 7245K ACCEPT all -- br-35aa789cbb50 br-35aa789cbb50 0.0.0.0/0 0.0.0.0/0
  26. 2117K 512M ACCEPT all -- * br-d04076e6b60d 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  27. 32240 1930K DOCKER all -- * br-d04076e6b60d 0.0.0.0/0 0.0.0.0/0
  28. 31 3882 ACCEPT all -- br-d04076e6b60d !br-d04076e6b60d 0.0.0.0/0 0.0.0.0/0
  29. 31652 1899K ACCEPT all -- br-d04076e6b60d br-d04076e6b60d 0.0.0.0/0 0.0.0.0/0
  30. 26M 26G ufw-before-logging-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  31. 26M 26G ufw-before-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  32. 459K 40M ufw-after-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  33. 459K 40M ufw-after-logging-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  34. 459K 40M ufw-reject-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  35. 459K 40M ufw-track-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  36.  
  37. Chain OUTPUT (policy ACCEPT 155 packets, 6228 bytes)
  38. pkts bytes target prot opt in out source destination
  39. 674M 1940G ufw-before-logging-output all -- * * 0.0.0.0/0 0.0.0.0/0
  40. 674M 1940G ufw-before-output all -- * * 0.0.0.0/0 0.0.0.0/0
  41. 2930K 319M ufw-after-output all -- * * 0.0.0.0/0 0.0.0.0/0
  42. 2930K 319M ufw-after-logging-output all -- * * 0.0.0.0/0 0.0.0.0/0
  43. 2930K 319M ufw-reject-output all -- * * 0.0.0.0/0 0.0.0.0/0
  44. 2930K 319M ufw-track-output all -- * * 0.0.0.0/0 0.0.0.0/0
  45.  
  46. Chain DOCKER (4 references)
  47. pkts bytes target prot opt in out source destination
  48. 0 0 ACCEPT tcp -- !br-35aa789cbb50 br-35aa789cbb50 0.0.0.0/0 172.18.0.2 tcp dpt:8073
  49. 982 51064 ACCEPT tcp -- !br-35aa789cbb50 br-35aa789cbb50 0.0.0.0/0 172.18.0.2 tcp dpt:8070
  50. 0 0 ACCEPT tcp -- !br-d04076e6b60d br-d04076e6b60d 0.0.0.0/0 192.168.48.3 tcp dpt:8072
  51. 0 0 ACCEPT tcp -- !br-d04076e6b60d br-d04076e6b60d 0.0.0.0/0 192.168.48.3 tcp dpt:8069
  52. 1482 83936 ACCEPT tcp -- !br-bea60ee1e88e br-bea60ee1e88e 0.0.0.0/0 172.20.0.2 tcp dpt:22
  53.  
  54. Chain DOCKER-ISOLATION-STAGE-1 (1 references)
  55. pkts bytes target prot opt in out source destination
  56. 18020 18M DOCKER-ISOLATION-STAGE-2 all -- br-bea60ee1e88e !br-bea60ee1e88e 0.0.0.0/0 0.0.0.0/0
  57. 11091 634K DOCKER-ISOLATION-STAGE-2 all -- docker0 !docker0 0.0.0.0/0 0.0.0.0/0
  58. 31 3882 DOCKER-ISOLATION-STAGE-2 all -- br-d04076e6b60d !br-d04076e6b60d 0.0.0.0/0 0.0.0.0/0
  59. 38823 158M DOCKER-ISOLATION-STAGE-2 all -- br-35aa789cbb50 !br-35aa789cbb50 0.0.0.0/0 0.0.0.0/0
  60. 32M 27G RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
  61.  
  62. Chain DOCKER-ISOLATION-STAGE-2 (4 references)
  63. pkts bytes target prot opt in out source destination
  64. 0 0 DROP all -- * br-bea60ee1e88e 0.0.0.0/0 0.0.0.0/0
  65. 0 0 DROP all -- * docker0 0.0.0.0/0 0.0.0.0/0
  66. 0 0 DROP all -- * br-d04076e6b60d 0.0.0.0/0 0.0.0.0/0
  67. 0 0 DROP all -- * br-35aa789cbb50 0.0.0.0/0 0.0.0.0/0
  68. 67965 176M RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
  69.  
  70. Chain DOCKER-USER (1 references)
  71. pkts bytes target prot opt in out source destination
  72. 32M 27G RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
  73.  
  74. Chain ufw-after-forward (1 references)
  75. pkts bytes target prot opt in out source destination
  76.  
  77. Chain ufw-after-input (1 references)
  78. pkts bytes target prot opt in out source destination
  79. 64 4992 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:137
  80. 34 8381 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:138
  81. 5 220 ufw-skip-to-policy-input tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:139
  82. 52 2168 ufw-skip-to-policy-input tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:445
  83. 51 15480 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:67
  84. 0 0 ufw-skip-to-policy-input udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:68
  85. 0 0 ufw-skip-to-policy-input all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type BROADCAST
  86.  
  87. Chain ufw-after-logging-forward (1 references)
  88. pkts bytes target prot opt in out source destination
  89.  
  90. Chain ufw-after-logging-input (1 references)
  91. pkts bytes target prot opt in out source destination
  92.  
  93. Chain ufw-after-logging-output (1 references)
  94. pkts bytes target prot opt in out source destination
  95.  
  96. Chain ufw-after-output (1 references)
  97. pkts bytes target prot opt in out source destination
  98.  
  99. Chain ufw-before-forward (1 references)
  100. pkts bytes target prot opt in out source destination
  101. 0 0 ACCEPT all -- * * 10.0.0.0/24 0.0.0.0/0 policy match dir in pol ipsec proto 50
  102. 0 0 ACCEPT all -- * * 0.0.0.0/0 10.0.0.0/24 policy match dir out pol ipsec proto 50
  103. 411K 407M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  104. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 3
  105. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 4
  106. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 11
  107. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 12
  108. 906 76104 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8
  109. 5723 519K ufw-user-forward all -- * * 0.0.0.0/0 0.0.0.0/0
  110.  
  111. Chain ufw-before-input (1 references)
  112. pkts bytes target prot opt in out source destination
  113. 29696 16M ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
  114. 22M 1061M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  115. 3282 2840K ufw-logging-deny all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
  116. 3282 2840K DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
  117. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 3
  118. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 4
  119. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 11
  120. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 12
  121. 52 3000 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8
  122. 371 122K ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:67 dpt:68
  123. 144K 17M ufw-not-local all -- * * 0.0.0.0/0 0.0.0.0/0
  124. 0 0 ACCEPT udp -- * * 0.0.0.0/0 224.0.0.251 udp dpt:5353
  125. 0 0 ACCEPT udp -- * * 0.0.0.0/0 239.255.255.250 udp dpt:1900
  126. 144K 17M ufw-user-input all -- * * 0.0.0.0/0 0.0.0.0/0
  127.  
  128. Chain ufw-before-logging-forward (1 references)
  129. pkts bytes target prot opt in out source destination
  130.  
  131. Chain ufw-before-logging-input (1 references)
  132. pkts bytes target prot opt in out source destination
  133.  
  134. Chain ufw-before-logging-output (1 references)
  135. pkts bytes target prot opt in out source destination
  136.  
  137. Chain ufw-before-output (1 references)
  138. pkts bytes target prot opt in out source destination
  139. 29696 16M ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0
  140. 16M 55G ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  141. 41538 4349K ufw-user-output all -- * * 0.0.0.0/0 0.0.0.0/0
  142.  
  143. Chain ufw-logging-allow (0 references)
  144. pkts bytes target prot opt in out source destination
  145.  
  146. Chain ufw-logging-deny (2 references)
  147. pkts bytes target prot opt in out source destination
  148.  
  149. Chain ufw-not-local (1 references)
  150. pkts bytes target prot opt in out source destination
  151. 144K 17M RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type LOCAL
  152. 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type MULTICAST
  153. 42 10617 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type BROADCAST
  154. 0 0 ufw-logging-deny all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 3/min burst 10
  155. 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  156.  
  157. Chain ufw-reject-forward (1 references)
  158. pkts bytes target prot opt in out source destination
  159.  
  160. Chain ufw-reject-input (1 references)
  161. pkts bytes target prot opt in out source destination
  162.  
  163. Chain ufw-reject-output (1 references)
  164. pkts bytes target prot opt in out source destination
  165.  
  166. Chain ufw-skip-to-policy-forward (0 references)
  167. pkts bytes target prot opt in out source destination
  168. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  169.  
  170. Chain ufw-skip-to-policy-input (7 references)
  171. pkts bytes target prot opt in out source destination
  172. 206 31241 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  173.  
  174. Chain ufw-skip-to-policy-output (0 references)
  175. pkts bytes target prot opt in out source destination
  176. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  177.  
  178. Chain ufw-track-forward (1 references)
  179. pkts bytes target prot opt in out source destination
  180. 3286 186K ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 ctstate NEW
  181. 1573 270K ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 ctstate NEW
  182.  
  183. Chain ufw-track-input (1 references)
  184. pkts bytes target prot opt in out source destination
  185.  
  186. Chain ufw-track-output (1 references)
  187. pkts bytes target prot opt in out source destination
  188. 12906 774K ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 ctstate NEW
  189. 28477 3568K ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 ctstate NEW
  190.  
  191. Chain ufw-user-forward (1 references)
  192. pkts bytes target prot opt in out source destination
  193.  
  194. Chain ufw-user-input (1 references)
  195. pkts bytes target prot opt in out source destination
  196. 2 1196 ACCEPT tcp -- enp5s0 * 0.0.0.0/0 10.0.0.1 tcp dpt:22
  197. 1 42 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1194
  198. 0 0 ACCEPT tcp -- tun0 * 0.0.0.0/0 10.8.0.1 tcp dpt:22
  199. 0 0 ACCEPT tcp -- tun0 * 0.0.0.0/0 10.8.0.1 tcp dpt:9091
  200. 0 0 ACCEPT tcp -- enp5s0 * 0.0.0.0/0 10.0.0.1 tcp dpt:9091
  201. 1598 63920 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:53
  202. 1251 83360 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:53
  203. 4961 284K ACCEPT tcp -- enp0s8 * 0.0.0.0/0 178.34.180.132 tcp dpt:57623
  204. 10464 1016K ACCEPT udp -- enp0s8 * 0.0.0.0/0 178.34.180.132 udp dpt:57623
  205. 0 0 ACCEPT tcp -- enp5s0 * 0.0.0.0/0 10.0.0.1 tcp dpt:80
  206. 0 0 ACCEPT tcp -- enp5s0 * 0.0.0.0/0 10.0.0.1 tcp dpt:443
  207. 3610 147K ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 80,443 /* 'dapp_Nginx%20Full' */
  208. 120K 15M ACCEPT udp -- enp0s8 * 0.0.0.0/0 178.34.180.132 udp dpt:6881
  209. 0 0 ACCEPT tcp -- enp5s0 * 0.0.0.0/0 10.0.0.1 tcp dpt:9030
  210. 22 1276 ACCEPT tcp -- enp0s8 * 0.0.0.0/0 178.34.180.132 tcp dpt:51413
  211. 0 0 ACCEPT tcp -- enp5s0 * 0.0.0.0/0 10.0.0.1 tcp dpt:51413
  212. 0 0 ACCEPT udp -- enp5s0 * 0.0.0.0/0 10.0.0.1 multiport dports 137,138
  213. 1 52 ACCEPT tcp -- enp5s0 * 0.0.0.0/0 10.0.0.1 multiport dports 139,445
  214. 0 0 ACCEPT tcp -- enp5s0 * 0.0.0.0/0 10.0.0.1 tcp dpt:27017
  215. 0 0 ACCEPT tcp -- lo * 0.0.0.0/0 127.0.0.1 tcp dpt:27017
  216. 0 0 ACCEPT udp -- tun0 * 0.0.0.0/0 10.8.0.1 multiport dports 137,138
  217. 0 0 ACCEPT tcp -- tun0 * 0.0.0.0/0 10.8.0.1 multiport dports 139,445
  218. 0 0 ACCEPT tcp -- enp0s8 * 0.0.0.0/0 178.34.180.132 tcp dpt:2222
  219. 16 11652 ACCEPT udp -- enp0s8 * 0.0.0.0/0 178.34.180.132 multiport dports 500,4500
  220.  
  221. Chain ufw-user-limit (0 references)
  222. pkts bytes target prot opt in out source destination
  223. 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
  224.  
  225. Chain ufw-user-limit-accept (0 references)
  226. pkts bytes target prot opt in out source destination
  227. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  228.  
  229. Chain ufw-user-logging-forward (0 references)
  230. pkts bytes target prot opt in out source destination
  231. 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
  232.  
  233. Chain ufw-user-logging-input (0 references)
  234. pkts bytes target prot opt in out source destination
  235. 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
  236.  
  237. Chain ufw-user-logging-output (0 references)
  238. pkts bytes target prot opt in out source destination
  239. 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
  240.  
  241. Chain ufw-user-output (1 references)
  242. pkts bytes target prot opt in out source destination
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement