Advertisement
Guest User

Untitled

a guest
Jun 26th, 2017
100
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 32.81 KB | None | 0 0
  1. localhost dem # shorewall dump
  2.  
  3. Shorewall 4.4.10 Dump at localhost - Thu Nov 11 16:00:13 EET 2010
  4.  
  5. Counters reset Thu Nov 11 15:45:03 EET 2010
  6.  
  7. Chain INPUT (policy DROP 0 packets, 0 bytes)
  8. pkts bytes target prot opt in out source destination
  9. 358 52663 dynamic all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID,NEW
  10. 2078 686K net2fw all -- wlan0 * 0.0.0.0/0 0.0.0.0/0
  11. 7 1192 loc2fw all -- eth0 * 0.0.0.0/0 0.0.0.0/0
  12. 0 0 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
  13. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  14. 0 0 Reject all -- * * 0.0.0.0/0 0.0.0.0/0
  15. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Shorewall:INPUT:REJECT:'
  16. 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 [goto]
  17.  
  18. Chain FORWARD (policy DROP 0 packets, 0 bytes)
  19. pkts bytes target prot opt in out source destination
  20. 0 0 dynamic all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID,NEW
  21. 0 0 net2loc all -- wlan0 eth0 0.0.0.0/0 0.0.0.0/0
  22. 0 0 loc2net all -- eth0 wlan0 0.0.0.0/0 0.0.0.0/0
  23. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  24. 0 0 Reject all -- * * 0.0.0.0/0 0.0.0.0/0
  25. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Shorewall:FORWARD:REJECT:'
  26. 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 [goto]
  27.  
  28. Chain OUTPUT (policy DROP 0 packets, 0 bytes)
  29. pkts bytes target prot opt in out source destination
  30. 1822 275K fw2net all -- * wlan0 0.0.0.0/0 0.0.0.0/0
  31. 4 958 fw2loc all -- * eth0 0.0.0.0/0 0.0.0.0/0
  32. 0 0 ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0
  33. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  34. 0 0 Reject all -- * * 0.0.0.0/0 0.0.0.0/0
  35. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Shorewall:OUTPUT:REJECT:'
  36. 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 [goto]
  37.  
  38. Chain Drop (0 references)
  39. pkts bytes target prot opt in out source destination
  40. 0 0 all -- * * 0.0.0.0/0 0.0.0.0/0
  41. 0 0 reject tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:113
  42. 0 0 dropBcast all -- * * 0.0.0.0/0 0.0.0.0/0
  43. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 3 code 4
  44. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 11
  45. 0 0 dropInvalid all -- * * 0.0.0.0/0 0.0.0.0/0
  46. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 135,445
  47. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:137:139
  48. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:137 dpts:1024:65535
  49. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 135,139,445
  50. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1900
  51. 0 0 dropNotSyn tcp -- * * 0.0.0.0/0 0.0.0.0/0
  52. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:53
  53.  
  54. Chain Reject (6 references)
  55. pkts bytes target prot opt in out source destination
  56. 312 31537 all -- * * 0.0.0.0/0 0.0.0.0/0
  57. 0 0 reject tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:113
  58. 312 31537 dropBcast all -- * * 0.0.0.0/0 0.0.0.0/0
  59. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 3 code 4
  60. 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 11
  61. 3 192 dropInvalid all -- * * 0.0.0.0/0 0.0.0.0/0
  62. 0 0 reject udp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 135,445
  63. 0 0 reject udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:137:139
  64. 0 0 reject udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:137 dpts:1024:65535
  65. 0 0 reject tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 135,139,445
  66. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1900
  67. 0 0 dropNotSyn tcp -- * * 0.0.0.0/0 0.0.0.0/0
  68. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:53
  69.  
  70. Chain dropBcast (2 references)
  71. pkts bytes target prot opt in out source destination
  72. 7 1192 DROP all -- * * 0.0.0.0/0 172.16.255.255
  73. 296 29985 DROP all -- * * 0.0.0.0/0 192.168.1.255
  74. 0 0 DROP all -- * * 0.0.0.0/0 255.255.255.255
  75. 6 168 DROP all -- * * 0.0.0.0/0 224.0.0.0/4
  76.  
  77. Chain dropInvalid (2 references)
  78. pkts bytes target prot opt in out source destination
  79. 3 192 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
  80.  
  81. Chain dropNotSyn (2 references)
  82. pkts bytes target prot opt in out source destination
  83. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:!0x17/0x02
  84.  
  85. Chain dynamic (2 references)
  86. pkts bytes target prot opt in out source destination
  87.  
  88. Chain fw2loc (1 references)
  89. pkts bytes target prot opt in out source destination
  90. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  91. 4 958 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  92.  
  93. Chain fw2net (1 references)
  94. pkts bytes target prot opt in out source destination
  95. 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:67:68
  96. 1502 254K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  97. 320 20945 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  98.  
  99. Chain loc2fw (1 references)
  100. pkts bytes target prot opt in out source destination
  101. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  102. 7 1192 Reject all -- * * 0.0.0.0/0 0.0.0.0/0
  103. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Shorewall:loc2fw:REJECT:'
  104. 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 [goto]
  105.  
  106. Chain loc2net (1 references)
  107. pkts bytes target prot opt in out source destination
  108. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  109. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
  110.  
  111. Chain logdrop (0 references)
  112. pkts bytes target prot opt in out source destination
  113. 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  114.  
  115. Chain logreject (0 references)
  116. pkts bytes target prot opt in out source destination
  117. 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0
  118.  
  119. Chain net2fw (1 references)
  120. pkts bytes target prot opt in out source destination
  121. 46 21126 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:67:68
  122. 1727 634K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  123. 305 30345 Reject all -- * * 0.0.0.0/0 0.0.0.0/0
  124. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Shorewall:net2fw:REJECT:'
  125. 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 [goto]
  126.  
  127. Chain net2loc (1 references)
  128. pkts bytes target prot opt in out source destination
  129. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  130. 0 0 Reject all -- * * 0.0.0.0/0 0.0.0.0/0
  131. 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Shorewall:net2loc:REJECT:'
  132. 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 [goto]
  133.  
  134. Chain reject (13 references)
  135. pkts bytes target prot opt in out source destination
  136. 0 0 DROP all -- * * 0.0.0.0/0 172.16.255.255
  137. 0 0 DROP all -- * * 0.0.0.0/0 192.168.1.255
  138. 0 0 DROP all -- * * 0.0.0.0/0 255.255.255.255
  139. 0 0 DROP all -- * * 224.0.0.0/4 0.0.0.0/0
  140. 0 0 DROP 2 -- * * 0.0.0.0/0 0.0.0.0/0
  141. 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 reject-with tcp-reset
  142. 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
  143. 0 0 REJECT icmp -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-unreachable
  144. 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
  145.  
  146. Chain shorewall (0 references)
  147. pkts bytes target prot opt in out source destination
  148.  
  149. Log (/var/log/messages)
  150.  
  151. Nov 11 13:37:12 OUTPUT:REJECT:IN= OUT=eth0 SRC=172.16.0.3 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=56144 DF PROTO=TCP SPT=49139 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  152. Nov 11 13:37:12 OUTPUT:REJECT:IN= OUT=eth0 SRC=172.16.0.3 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=17388 DF PROTO=TCP SPT=49140 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  153. Nov 11 13:37:12 OUTPUT:REJECT:IN= OUT=eth0 SRC=172.16.0.3 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=58966 DF PROTO=TCP SPT=49141 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  154. Nov 11 13:37:12 OUTPUT:REJECT:IN= OUT=eth0 SRC=172.16.0.3 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=39544 DF PROTO=TCP SPT=49142 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  155. Nov 11 13:37:20 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=16264 DF PROTO=TCP SPT=58096 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  156. Nov 11 13:37:20 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=59986 DF PROTO=TCP SPT=58097 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  157. Nov 11 13:37:20 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=209.85.229.101 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=4801 DF PROTO=TCP SPT=55550 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  158. Nov 11 13:37:20 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=209.85.229.100 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=21338 DF PROTO=TCP SPT=37745 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  159. Nov 11 13:37:20 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=209.85.229.102 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=41802 DF PROTO=TCP SPT=55590 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  160. Nov 11 13:37:32 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=20034 DF PROTO=TCP SPT=58101 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  161. Nov 11 13:37:32 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=27782 DF PROTO=TCP SPT=58102 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  162. Nov 11 13:37:32 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=46900 DF PROTO=TCP SPT=58103 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  163. Nov 11 13:37:33 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=64675 DF PROTO=TCP SPT=58104 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  164. Nov 11 13:37:33 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=16001 DF PROTO=TCP SPT=58105 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  165. Nov 11 13:37:49 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=53780 DF PROTO=TCP SPT=58106 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  166. Nov 11 13:37:49 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=34355 DF PROTO=TCP SPT=58107 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  167. Nov 11 13:37:50 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=21129 DF PROTO=TCP SPT=58108 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  168. Nov 11 13:37:50 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=60942 DF PROTO=TCP SPT=58109 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  169. Nov 11 13:38:01 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=53233 DF PROTO=TCP SPT=58110 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  170. Nov 11 13:38:01 OUTPUT:REJECT:IN= OUT=eth0 SRC=192.168.0.121 DST=192.168.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=58673 DF PROTO=TCP SPT=58111 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0
  171.  
  172. NAT Table
  173.  
  174. Chain PREROUTING (policy ACCEPT 745 packets, 87009 bytes)
  175. pkts bytes target prot opt in out source destination
  176.  
  177. Chain OUTPUT (policy ACCEPT 319 packets, 20891 bytes)
  178. pkts bytes target prot opt in out source destination
  179.  
  180. Chain POSTROUTING (policy ACCEPT 319 packets, 20891 bytes)
  181. pkts bytes target prot opt in out source destination
  182. 317 20409 wlan0_masq all -- * wlan0 0.0.0.0/0 0.0.0.0/0
  183.  
  184. Chain wlan0_masq (1 references)
  185. pkts bytes target prot opt in out source destination
  186. 0 0 MASQUERADE all -- * * 192.168.0.0/24 0.0.0.0/0
  187.  
  188. Mangle Table
  189.  
  190. Chain PREROUTING (policy ACCEPT 2518 packets, 739K bytes)
  191. pkts bytes target prot opt in out source destination
  192. 2518 739K tcpre all -- * * 0.0.0.0/0 0.0.0.0/0
  193.  
  194. Chain INPUT (policy ACCEPT 2085 packets, 687K bytes)
  195. pkts bytes target prot opt in out source destination
  196.  
  197. Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
  198. pkts bytes target prot opt in out source destination
  199. 0 0 tcfor all -- * * 0.0.0.0/0 0.0.0.0/0
  200.  
  201. Chain OUTPUT (policy ACCEPT 1826 packets, 276K bytes)
  202. pkts bytes target prot opt in out source destination
  203. 1826 276K tcout all -- * * 0.0.0.0/0 0.0.0.0/0
  204.  
  205. Chain POSTROUTING (policy ACCEPT 1834 packets, 278K bytes)
  206. pkts bytes target prot opt in out source destination
  207. 1834 278K tcpost all -- * * 0.0.0.0/0 0.0.0.0/0
  208.  
  209. Chain tcfor (1 references)
  210. pkts bytes target prot opt in out source destination
  211.  
  212. Chain tcout (1 references)
  213. pkts bytes target prot opt in out source destination
  214.  
  215. Chain tcpost (1 references)
  216. pkts bytes target prot opt in out source destination
  217.  
  218. Chain tcpre (1 references)
  219. pkts bytes target prot opt in out source destination
  220.  
  221. Conntrack Table (44 out of 65536)
  222.  
  223. tcp 6 428434 ESTABLISHED src=172.16.0.120 dst=66.249.92.104 sport=37702 dport=80 src=66.249.92.104 dst=172.16.0.120 sport=80 dport=37702 [ASSURED] use=2
  224. tcp 6 431973 ESTABLISHED src=192.168.1.100 dst=74.125.43.16 sport=39490 dport=993 src=74.125.43.16 dst=192.168.1.100 sport=993 dport=39490 [ASSURED] use=2
  225. tcp 6 431965 ESTABLISHED src=192.168.1.100 dst=74.125.43.16 sport=39492 dport=993 src=74.125.43.16 dst=192.168.1.100 sport=993 dport=39492 [ASSURED] use=2
  226. tcp 6 431778 ESTABLISHED src=192.168.1.100 dst=92.123.73.17 sport=34992 dport=80 src=92.123.73.17 dst=192.168.1.100 sport=80 dport=34992 [ASSURED] use=2
  227. tcp 6 431778 ESTABLISHED src=192.168.1.100 dst=209.85.229.154 sport=49638 dport=80 src=209.85.229.154 dst=192.168.1.100 sport=80 dport=49638 [ASSURED] use=2
  228. tcp 6 431778 ESTABLISHED src=192.168.1.100 dst=72.21.211.165 sport=56272 dport=80 src=72.21.211.165 dst=192.168.1.100 sport=80 dport=56272 [ASSURED] use=2
  229. tcp 6 428724 ESTABLISHED src=172.16.0.120 dst=92.123.73.59 sport=39157 dport=80 src=92.123.73.59 dst=172.16.0.120 sport=80 dport=39157 [ASSURED] use=2
  230. tcp 6 430847 ESTABLISHED src=192.168.1.100 dst=74.125.39.16 sport=36467 dport=993 src=74.125.39.16 dst=192.168.1.100 sport=993 dport=36467 [ASSURED] use=2
  231. tcp 6 428723 ESTABLISHED src=172.16.0.120 dst=92.123.73.16 sport=51970 dport=80 src=92.123.73.16 dst=172.16.0.120 sport=80 dport=51970 [ASSURED] use=2
  232. tcp 6 428677 ESTABLISHED src=172.16.0.120 dst=209.85.227.16 sport=59831 dport=993 src=209.85.227.16 dst=172.16.0.120 sport=993 dport=59831 [ASSURED] use=2
  233. tcp 6 431777 ESTABLISHED src=192.168.1.100 dst=209.85.229.154 sport=49637 dport=80 src=209.85.229.154 dst=192.168.1.100 sport=80 dport=49637 [ASSURED] use=2
  234. tcp 6 431948 ESTABLISHED src=192.168.1.100 dst=74.125.43.16 sport=39491 dport=993 src=74.125.43.16 dst=192.168.1.100 sport=993 dport=39491 [ASSURED] use=2
  235. tcp 6 428723 ESTABLISHED src=172.16.0.120 dst=92.123.73.16 sport=51969 dport=80 src=92.123.73.16 dst=172.16.0.120 sport=80 dport=51969 [ASSURED] use=2
  236. tcp 6 428707 ESTABLISHED src=172.16.0.120 dst=209.85.229.100 sport=37198 dport=80 src=209.85.229.100 dst=172.16.0.120 sport=80 dport=37198 [ASSURED] use=2
  237. tcp 6 428723 ESTABLISHED src=172.16.0.120 dst=92.123.73.16 sport=51967 dport=80 src=92.123.73.16 dst=172.16.0.120 sport=80 dport=51967 [ASSURED] use=2
  238. tcp 6 428723 ESTABLISHED src=172.16.0.120 dst=92.123.73.16 sport=51973 dport=80 src=92.123.73.16 dst=172.16.0.120 sport=80 dport=51973 [ASSURED] use=2
  239. tcp 6 428731 ESTABLISHED src=172.16.0.120 dst=92.123.73.50 sport=33341 dport=80 src=92.123.73.50 dst=172.16.0.120 sport=80 dport=33341 [ASSURED] use=2
  240. tcp 6 57 TIME_WAIT src=192.168.1.100 dst=195.248.234.35 sport=40183 dport=110 src=195.248.234.35 dst=192.168.1.100 sport=110 dport=40183 [ASSURED] use=2
  241. tcp 6 431970 ESTABLISHED src=192.168.1.100 dst=209.85.227.16 sport=49866 dport=993 src=209.85.227.16 dst=192.168.1.100 sport=993 dport=49866 [ASSURED] use=2
  242. tcp 6 431778 ESTABLISHED src=192.168.1.100 dst=92.123.73.17 sport=34990 dport=80 src=92.123.73.17 dst=192.168.1.100 sport=80 dport=34990 [ASSURED] use=2
  243. tcp 6 431940 ESTABLISHED src=192.168.1.100 dst=74.125.43.16 sport=38707 dport=993 src=74.125.43.16 dst=192.168.1.100 sport=993 dport=38707 [ASSURED] use=2
  244. tcp 6 428840 ESTABLISHED src=172.16.0.120 dst=209.85.227.16 sport=48942 dport=993 src=209.85.227.16 dst=172.16.0.120 sport=993 dport=48942 [ASSURED] use=2
  245. tcp 6 428707 ESTABLISHED src=172.16.0.120 dst=209.85.229.100 sport=37200 dport=80 src=209.85.229.100 dst=172.16.0.120 sport=80 dport=37200 [ASSURED] use=2
  246. tcp 6 431783 ESTABLISHED src=192.168.1.100 dst=69.63.189.34 sport=48630 dport=80 src=69.63.189.34 dst=192.168.1.100 sport=80 dport=48630 [ASSURED] use=2
  247. tcp 6 431777 ESTABLISHED src=192.168.1.100 dst=74.125.39.101 sport=50702 dport=80 src=74.125.39.101 dst=192.168.1.100 sport=80 dport=50702 [ASSURED] use=2
  248. tcp 6 428731 ESTABLISHED src=172.16.0.120 dst=92.123.73.16 sport=51968 dport=80 src=92.123.73.16 dst=172.16.0.120 sport=80 dport=51968 [ASSURED] use=2
  249. tcp 6 431951 ESTABLISHED src=192.168.1.100 dst=209.85.227.16 sport=49816 dport=993 src=209.85.227.16 dst=192.168.1.100 sport=993 dport=49816 [ASSURED] use=2
  250. tcp 6 431941 ESTABLISHED src=192.168.1.100 dst=74.125.43.16 sport=38705 dport=993 src=74.125.43.16 dst=192.168.1.100 sport=993 dport=38705 [ASSURED] use=2
  251. tcp 6 431266 ESTABLISHED src=192.168.1.100 dst=92.123.73.18 sport=47804 dport=80 src=92.123.73.18 dst=192.168.1.100 sport=80 dport=47804 [ASSURED] use=2
  252. tcp 6 431778 ESTABLISHED src=192.168.1.100 dst=92.123.73.66 sport=35492 dport=80 src=92.123.73.66 dst=192.168.1.100 sport=80 dport=35492 [ASSURED] use=2
  253. tcp 6 428706 ESTABLISHED src=172.16.0.120 dst=209.85.229.100 sport=37199 dport=80 src=209.85.229.100 dst=172.16.0.120 sport=80 dport=37199 [ASSURED] use=2
  254. tcp 6 428723 ESTABLISHED src=172.16.0.120 dst=92.123.73.16 sport=51965 dport=80 src=92.123.73.16 dst=172.16.0.120 sport=80 dport=51965 [ASSURED] use=2
  255. tcp 6 431776 ESTABLISHED src=192.168.1.100 dst=69.63.189.31 sport=41479 dport=80 src=69.63.189.31 dst=192.168.1.100 sport=80 dport=41479 [ASSURED] use=2
  256. tcp 6 431547 ESTABLISHED src=192.168.1.100 dst=209.85.229.166 sport=34776 dport=80 src=209.85.229.166 dst=192.168.1.100 sport=80 dport=34776 [ASSURED] use=2
  257. tcp 6 428614 ESTABLISHED src=172.16.0.120 dst=209.85.227.16 sport=59816 dport=993 src=209.85.227.16 dst=172.16.0.120 sport=993 dport=59816 [ASSURED] use=2
  258. tcp 6 428708 ESTABLISHED src=172.16.0.120 dst=209.85.229.102 sport=51203 dport=80 src=209.85.229.102 dst=172.16.0.120 sport=80 dport=51203 [ASSURED] use=2
  259. tcp 6 428723 ESTABLISHED src=172.16.0.120 dst=92.123.73.16 sport=51966 dport=80 src=92.123.73.16 dst=172.16.0.120 sport=80 dport=51966 [ASSURED] use=2
  260. tcp 6 431954 ESTABLISHED src=192.168.1.100 dst=209.85.227.16 sport=40922 dport=993 src=209.85.227.16 dst=192.168.1.100 sport=993 dport=40922 [ASSURED] use=2
  261. tcp 6 431982 ESTABLISHED src=192.168.1.100 dst=213.179.58.83 sport=53158 dport=6667 src=213.179.58.83 dst=192.168.1.100 sport=6667 dport=53158 [ASSURED] use=2
  262. tcp 6 428712 ESTABLISHED src=172.16.0.120 dst=66.249.92.104 sport=37703 dport=80 src=66.249.92.104 dst=172.16.0.120 sport=80 dport=37703 [ASSURED] use=2
  263. tcp 6 431981 ESTABLISHED src=192.168.1.100 dst=209.85.227.16 sport=42842 dport=993 src=209.85.227.16 dst=192.168.1.100 sport=993 dport=42842 [ASSURED] use=2
  264. tcp 6 428622 ESTABLISHED src=172.16.0.120 dst=209.85.227.16 sport=59818 dport=993 src=209.85.227.16 dst=172.16.0.120 sport=993 dport=59818 [ASSURED] use=2
  265. tcp 6 431961 ESTABLISHED src=192.168.1.100 dst=209.85.227.16 sport=49859 dport=993 src=209.85.227.16 dst=192.168.1.100 sport=993 dport=49859 [ASSURED] use=2
  266. tcp 6 428729 ESTABLISHED src=172.16.0.120 dst=92.123.73.50 sport=33340 dport=80 src=92.123.73.50 dst=172.16.0.120 sport=80 dport=33340 [ASSURED] use=2
  267.  
  268. IP Configuration
  269.  
  270. 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 16436 qdisc noqueue state UNKNOWN
  271. inet 127.0.0.1/8 scope host lo
  272. 2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  273. inet 172.16.0.145/16 brd 172.16.255.255 scope global eth0
  274. 3: wlan0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP qlen 1000
  275. inet 192.168.1.100/24 brd 192.168.1.255 scope global wlan0
  276.  
  277. IP Stats
  278.  
  279. 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 16436 qdisc noqueue state UNKNOWN
  280. link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
  281. RX: bytes packets errors dropped overrun mcast
  282. 12458 181 0 0 0 0
  283. TX: bytes packets errors dropped carrier collsns
  284. 12458 181 0 0 0 0
  285. 2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  286. link/ether 00:1d:72:f1:d4:e0 brd ff:ff:ff:ff:ff:ff
  287. RX: bytes packets errors dropped overrun mcast
  288. 1805721 6411 0 0 0 0
  289. TX: bytes packets errors dropped carrier collsns
  290. 732864 6559 0 0 0 0
  291. 3: wlan0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP qlen 1000
  292. link/ether 00:21:6b:11:16:f2 brd ff:ff:ff:ff:ff:ff
  293. RX: bytes packets errors dropped overrun mcast
  294. 10987742 20233 0 0 0 0
  295. TX: bytes packets errors dropped carrier collsns
  296. 2465186 17018 0 0 0 0
  297.  
  298. Bridges
  299.  
  300. bridge name bridge id STP enabled interfaces
  301.  
  302. /proc
  303.  
  304. /proc/version = Linux version 2.6.35-gentoo-r8 (root@localhost) (gcc version 4.4.4 (Gentoo 4.4.4-r2 p1.2, pie-0.4.5) ) #10 SMP PREEMPT Fri Oct 29 13:12:35 EEST 2010
  305. /proc/sys/net/ipv4/ip_forward = 1
  306. /proc/sys/net/ipv4/icmp_echo_ignore_all = 0
  307. /proc/sys/net/ipv4/conf/all/proxy_arp = 0
  308. /proc/sys/net/ipv4/conf/all/arp_filter = 0
  309. /proc/sys/net/ipv4/conf/all/arp_ignore = 0
  310. /proc/sys/net/ipv4/conf/all/rp_filter = 0
  311. /proc/sys/net/ipv4/conf/all/log_martians = 0
  312. /proc/sys/net/ipv4/conf/default/proxy_arp = 0
  313. /proc/sys/net/ipv4/conf/default/arp_filter = 0
  314. /proc/sys/net/ipv4/conf/default/arp_ignore = 0
  315. /proc/sys/net/ipv4/conf/default/rp_filter = 0
  316. /proc/sys/net/ipv4/conf/default/log_martians = 1
  317. /proc/sys/net/ipv4/conf/eth0/proxy_arp = 0
  318. /proc/sys/net/ipv4/conf/eth0/arp_filter = 0
  319. /proc/sys/net/ipv4/conf/eth0/arp_ignore = 0
  320. /proc/sys/net/ipv4/conf/eth0/rp_filter = 0
  321. /proc/sys/net/ipv4/conf/eth0/log_martians = 1
  322. /proc/sys/net/ipv4/conf/lo/proxy_arp = 0
  323. /proc/sys/net/ipv4/conf/lo/arp_filter = 0
  324. /proc/sys/net/ipv4/conf/lo/arp_ignore = 0
  325. /proc/sys/net/ipv4/conf/lo/rp_filter = 0
  326. /proc/sys/net/ipv4/conf/lo/log_martians = 1
  327. /proc/sys/net/ipv4/conf/wlan0/proxy_arp = 0
  328. /proc/sys/net/ipv4/conf/wlan0/arp_filter = 0
  329. /proc/sys/net/ipv4/conf/wlan0/arp_ignore = 0
  330. /proc/sys/net/ipv4/conf/wlan0/rp_filter = 0
  331. /proc/sys/net/ipv4/conf/wlan0/log_martians = 1
  332. RTNETLINK answers: Operation not supported
  333. Dump terminated
  334.  
  335. Routing Table
  336.  
  337. 192.168.1.0/24 dev wlan0 proto kernel scope link src 192.168.1.100 metric 2
  338. 172.16.0.0/16 dev eth0 proto kernel scope link src 172.16.0.145 metric 1
  339. 127.0.0.0/8 via 127.0.0.1 dev lo
  340. default via 192.168.1.1 dev wlan0 proto static
  341.  
  342. ARP
  343.  
  344. ? (192.168.1.1) at 00:21:00:32:d7:e1 [ether] on wlan0
  345.  
  346. Modules
  347.  
  348. iptable_mangle 1208 1
  349. iptable_nat 2979 1
  350. ipt_MASQUERADE 1458 1
  351. nf_conntrack_ipv4 8617 15 iptable_nat,nf_nat
  352. nf_defrag_ipv4 1091 1 nf_conntrack_ipv4
  353. nf_nat 12597 2 ipt_MASQUERADE,iptable_nat
  354.  
  355. Shorewall has detected the following iptables/netfilter capabilities:
  356. NAT: Available
  357. Packet Mangling: Available
  358. Multi-port Match: Available
  359. Extended Multi-port Match: Available
  360. Connection Tracking Match: Available
  361. Extended Connection Tracking Match Support: Available
  362. Packet Type Match: Not available
  363. Policy Match: Not available
  364. Physdev Match: Not available
  365. Physdev-is-bridged Support: Not available
  366. Packet length Match: Not available
  367. IP range Match: Not available
  368. Recent Match: Not available
  369. Owner Match: Not available
  370. Ipset Match: Not available
  371. CONNMARK Target: Not available
  372. Connmark Match: Not available
  373. Raw Table: Not available
  374. IPP2P Match: Not available
  375. CLASSIFY Target: Not available
  376. Extended REJECT: Available
  377. Repeat match: Not available
  378. MARK Target: Not available
  379. Mangle FORWARD Chain: Available
  380. Comments: Not available
  381. Address Type Match: Not available
  382. TCPMSS Match: Not available
  383. Hashlimit Match: Not available
  384. NFQUEUE Target: Not available
  385. Realm Match: Not available
  386. Helper Match: Not available
  387. Connlimit Match: Not available
  388. Time Match: Not available
  389. Goto Support: Available
  390. LOGMARK Target: Not available
  391. IPMARK Target: Not available
  392. LOG Target: Available
  393. Persistent SNAT: Available
  394. TPROXY Target: Not available
  395. FLOW Classifier: Available
  396.  
  397. Active Internet connections (servers and established)
  398. Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
  399. tcp 0 0 0.0.0.0:139 0.0.0.0:* LISTEN 6859/smbd
  400. tcp 0 0 127.0.0.1:631 0.0.0.0:* LISTEN 6638/cupsd
  401. tcp 0 0 0.0.0.0:445 0.0.0.0:* LISTEN 6859/smbd
  402. tcp 0 0 192.168.1.100:56272 72.21.211.165:80 ESTABLISHED 13175/chrome
  403. tcp 0 0 192.168.1.100:34990 92.123.73.17:80 ESTABLISHED 13175/chrome
  404. tcp 0 0 192.168.1.100:53158 213.179.58.83:6667 ESTABLISHED 24428/kvirc4
  405. tcp 0 0 192.168.1.100:34992 92.123.73.17:80 ESTABLISHED 13175/chrome
  406. tcp 0 0 192.168.1.100:36467 74.125.39.16:993 ESTABLISHED 7083/thunderbird-bi
  407. tcp 0 0 192.168.1.100:35492 92.123.73.66:80 ESTABLISHED 13175/chrome
  408. tcp 0 0 192.168.1.100:42842 209.85.227.16:993 ESTABLISHED 7083/thunderbird-bi
  409. tcp 0 0 192.168.1.100:49637 209.85.229.154:80 ESTABLISHED 13175/chrome
  410. tcp 0 0 192.168.1.100:39490 74.125.43.16:993 ESTABLISHED 7083/thunderbird-bi
  411. tcp 0 0 192.168.1.100:48630 69.63.189.34:80 ESTABLISHED 13175/chrome
  412. tcp 0 0 192.168.1.100:39491 74.125.43.16:993 ESTABLISHED 7083/thunderbird-bi
  413. tcp 0 0 192.168.1.100:38707 74.125.43.16:993 ESTABLISHED 7083/thunderbird-bi
  414. tcp 0 0 192.168.1.100:49638 209.85.229.154:80 ESTABLISHED 13175/chrome
  415. tcp 0 0 192.168.1.100:50702 74.125.39.101:80 ESTABLISHED 13175/chrome
  416. tcp 0 0 192.168.1.100:39492 74.125.43.16:993 ESTABLISHED 7083/thunderbird-bi
  417. tcp 0 0 192.168.1.100:49816 209.85.227.16:993 ESTABLISHED 7083/thunderbird-bi
  418. tcp 0 0 192.168.1.100:40922 209.85.227.16:993 ESTABLISHED 7083/thunderbird-bi
  419. tcp 0 0 192.168.1.100:38705 74.125.43.16:993 ESTABLISHED 7083/thunderbird-bi
  420. tcp 0 0 192.168.1.100:49859 209.85.227.16:993 ESTABLISHED 7083/thunderbird-bi
  421. tcp 0 0 192.168.1.100:41479 69.63.189.31:80 ESTABLISHED 13175/chrome
  422. tcp 0 0 192.168.1.100:49866 209.85.227.16:993 ESTABLISHED 7083/thunderbird-bi
  423. tcp 0 0 192.168.1.100:47804 92.123.73.18:80 ESTABLISHED 13175/chrome
  424. tcp 0 0 192.168.1.100:34776 209.85.229.166:80 ESTABLISHED 13175/chrome
  425. udp 0 0 172.16.0.145:137 0.0.0.0:* 6864/nmbd
  426. udp 0 0 192.168.1.100:137 0.0.0.0:* 6864/nmbd
  427. udp 0 0 0.0.0.0:137 0.0.0.0:* 6864/nmbd
  428. udp 0 0 172.16.0.145:138 0.0.0.0:* 6864/nmbd
  429. udp 0 0 192.168.1.100:138 0.0.0.0:* 6864/nmbd
  430. udp 0 0 0.0.0.0:138 0.0.0.0:* 6864/nmbd
  431. udp 0 0 0.0.0.0:631 0.0.0.0:* 6638/cupsd
  432.  
  433. Traffic Control
  434.  
  435. RTNETLINK answers: Operation not supported
  436. Dump terminated
  437. RTNETLINK answers: Operation not supported
  438. Dump terminated
  439. RTNETLINK answers: Operation not supported
  440. Dump terminated
  441.  
  442. TC Filters
  443.  
  444. RTNETLINK answers: Operation not supported
  445. Dump terminated
  446. RTNETLINK answers: Operation not supported
  447. Dump terminated
  448. RTNETLINK answers: Operation not supported
  449. Dump terminated
  450. localhost dem #
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement