Advertisement
Guest User

Untitled

a guest
Jun 25th, 2019
89
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.63 KB | None | 0 0
  1. ip6tables -F
  2. ip6tables -X
  3. ip6tables -t nat -F
  4. ip6tables -t nat -X
  5. ip6tables -t mangle -F
  6. ip6tables -t mangle -X
  7. ip6tables -P INPUT DROP
  8. ip6tables -P FORWARD DROP
  9. ip6tables -P OUTPUT DROP
  10.  
  11. # Autorise les connexions déjà établies et localhost
  12. ip6tables -A INPUT -m state --state ESTABLISHED -j ACCEPT
  13. ip6tables -A OUTPUT -m state --state ESTABLISHED -j ACCEPT
  14. ip6tables -A INPUT -i lo -j ACCEPT
  15. #ip6tables -A OUTPUT -o lo -j ACCEPT
  16.  
  17.  
  18. #TOR
  19. ip6tables -A OUTPUT -p tcp -m tcp --dport 9050 -j ACCEPT
  20.  
  21. # ICMP (Ping)
  22. ip6tables -A INPUT -p icmpv6 -j ACCEPT
  23. ip6tables -A OUTPUT -p icmpv6 -j ACCEPT
  24.  
  25. # DNS
  26. ip6tables -A OUTPUT -p tcp --dport 53 -j ACCEPT
  27. ip6tables -A OUTPUT -p udp --dport 53 -j ACCEPT
  28.  
  29. # HTTP
  30. ip6tables -A OUTPUT -p tcp --dport 80 -j ACCEPT
  31.  
  32.  
  33. #HTTPS
  34. ip6tables -A OUTPUT -p tcp --dport 443 -j ACCEPT
  35.  
  36.  
  37. # Mail SMTP
  38.  
  39. ip6tables -A INPUT -p tcp --dport 25 -j ACCEPT
  40. ip6tables -A OUTPUT -p tcp --dport 25 -j ACCEPT
  41. ip6tables -A INPUT -p tcp --dport 587 -j ACCEPT
  42. ip6tables -A OUTPUT -p tcp --dport 587 -j ACCEPT
  43. ip6tables -A INPUT -p tcp --dport 465 -j ACCEPT
  44. ip6tables -A OUTPUT -p tcp --dport 465 -j ACCEPT
  45.  
  46.  
  47. #Transmission
  48. ip6tables -A INPUT -p udp --dport 51413 -j ACCEPT
  49. ip6tables -A OUTPUT -p udp --sport 51413 -j ACCEPT
  50.  
  51.  
  52. # NTP (horloge du serveur)
  53. ip6tables -A OUTPUT -p udp --dport 123 -j ACCEPT
  54.  
  55. # On log les paquets en entrée.
  56. ip6tables -A INPUT -j LOG
  57.  
  58.  
  59. exit 0
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement