Guest User

Untitled

a guest
May 21st, 2023
23
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 14.49 KB | None | 0 0
  1. Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
  2. pkts bytes target prot opt in out source destination
  3. 60220 3783K LOCALINPUT all -- !lo * 0.0.0.0/0 0.0.0.0/0
  4. 4 460 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
  5. 59536 3579K INVALID tcp -- !lo * 0.0.0.0/0 0.0.0.0/0
  6. 1 36 ACCEPT icmp -- !lo * 0.0.0.0/0 0.0.0.0/0 icmptype 8 limit: avg 1/sec burst 5
  7. 0 0 LOGDROPIN icmp -- !lo * 0.0.0.0/0 0.0.0.0/0 icmptype 8
  8. 0 0 ACCEPT icmp -- !lo * 0.0.0.0/0 0.0.0.0/0
  9. 65 11318 ACCEPT all -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  10. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpts:35000:35999
  11. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:20
  12. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:21
  13. 2 104 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:22
  14. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:25
  15. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:53
  16. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:853
  17. 4 224 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:80
  18. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:110
  19. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:143
  20. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:443
  21. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:465
  22. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:587
  23. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:993
  24. 0 0 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:995
  25. 2 104 ACCEPT tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:2222
  26. 0 0 ACCEPT udp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:20
  27. 0 0 ACCEPT udp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:21
  28. 0 0 ACCEPT udp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:53
  29. 0 0 ACCEPT udp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:853
  30. 0 0 ACCEPT udp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:80
  31. 0 0 ACCEPT udp -- !lo * 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:443
  32. 60131 3771K LOGDROPIN all -- !lo * 0.0.0.0/0 0.0.0.0/0
  33.  
  34. Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
  35. pkts bytes target prot opt in out source destination
  36.  
  37. Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes)
  38. pkts bytes target prot opt in out source destination
  39. 77 41572 LOCALOUTPUT all -- * !lo 0.0.0.0/0 0.0.0.0/0
  40. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 tcp dpt:53
  41. 2 164 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 udp dpt:53
  42. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 tcp spt:53
  43. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 udp spt:53
  44. 38 35950 SMTPOUTPUT all -- * * 0.0.0.0/0 0.0.0.0/0
  45. 4 460 ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0
  46. 34 35386 INVALID tcp -- * !lo 0.0.0.0/0 0.0.0.0/0
  47. 1 36 ACCEPT icmp -- * !lo 0.0.0.0/0 0.0.0.0/0
  48. 30 35226 ACCEPT all -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
  49. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:143
  50. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:20
  51. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:21
  52. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:22
  53. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:25
  54. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:53
  55. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:853
  56. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:80
  57. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:110
  58. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:113
  59. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:443
  60. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:587
  61. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:993
  62. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:995
  63. 0 0 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW tcp dpt:2222
  64. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:11335
  65. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:443
  66. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:20
  67. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:21
  68. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:53
  69. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:853
  70. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:113
  71. 3 228 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 ctstate NEW udp dpt:123
  72. 0 0 LOGDROPOUT all -- * !lo 0.0.0.0/0 0.0.0.0/0
  73.  
  74. Chain ALLOWIN (1 references)
  75. pkts bytes target prot opt in out source destination
  76. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 match-set chain_ALLOW src
  77.  
  78. Chain ALLOWOUT (1 references)
  79. pkts bytes target prot opt in out source destination
  80. 0 0 ACCEPT udp -- * !lo 0.0.0.0/0 0.0.0.0/0 owner UID match 0
  81. 41 5918 ACCEPT tcp -- * !lo 0.0.0.0/0 0.0.0.0/0 owner UID match 0
  82. 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 match-set chain_ALLOW dst
  83.  
  84. Chain DENYIN (1 references)
  85. pkts bytes target prot opt in out source destination
  86. 16 960 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 match-set chain_DENY src
  87.  
  88. Chain DENYOUT (1 references)
  89. pkts bytes target prot opt in out source destination
  90. 0 0 LOGDROPOUT all -- * * 0.0.0.0/0 0.0.0.0/0 match-set chain_DENY dst
  91.  
  92. Chain INVALID (2 references)
  93. pkts bytes target prot opt in out source destination
  94. 0 0 INVDROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
  95. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x3F/0x00
  96. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x3F/0x3F
  97. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x03/0x03
  98. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x06/0x06
  99. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x05/0x05
  100. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x11/0x01
  101. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x18/0x08
  102. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x30/0x20
  103. 0 0 INVDROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:!0x17/0x02 ctstate NEW
  104.  
  105. Chain INVDROP (10 references)
  106. pkts bytes target prot opt in out source destination
  107. 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  108.  
  109. Chain LOCALINPUT (1 references)
  110. pkts bytes target prot opt in out source destination
  111. 60220 3783K ALLOWIN all -- !lo * 0.0.0.0/0 0.0.0.0/0
  112. 60220 3783K DENYIN all -- !lo * 0.0.0.0/0 0.0.0.0/0
  113.  
  114. Chain LOCALOUTPUT (1 references)
  115. pkts bytes target prot opt in out source destination
  116. 77 41572 ALLOWOUT all -- * !lo 0.0.0.0/0 0.0.0.0/0
  117. 36 35654 DENYOUT all -- * !lo 0.0.0.0/0 0.0.0.0/0
  118.  
  119. Chain LOGDROPIN (2 references)
  120. pkts bytes target prot opt in out source destination
  121. 1 44 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:23
  122. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:23
  123. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:67
  124. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:67
  125. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:68
  126. 665 203K DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:68
  127. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:111
  128. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:111
  129. 1 44 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:113
  130. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:113
  131. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpts:135:139
  132. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:135:139
  133. 1 52 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:445
  134. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:445
  135. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:500
  136. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:500
  137. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:513
  138. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:513
  139. 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:520
  140. 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:520
  141. 209 12540 LOG tcp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 0 level 4 prefix "Firewall: *TCP_IN Blocked* "
  142. 2 507 LOG udp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 0 level 4 prefix "Firewall: *UDP_IN Blocked* "
  143. 0 0 LOG icmp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 0 level 4 prefix "Firewall: *ICMP_IN Blocked* "
  144. 59463 3568K DROP all -- * * 0.0.0.0/0 0.0.0.0/0
  145.  
  146. Chain LOGDROPOUT (3 references)
  147. pkts bytes target prot opt in out source destination
  148. 0 0 LOG tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x17/0x02 limit: avg 30/min burst 5 LOG flags 8 level 4 prefix "Firewall: *TCP_OUT Blocked* "
  149. 0 0 LOG udp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 8 level 4 prefix "Firewall: *UDP_OUT Blocked* "
  150. 0 0 LOG icmp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 8 level 4 prefix "Firewall: *ICMP_OUT Blocked* "
  151. 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
  152.  
  153. Chain SMTPOUTPUT (1 references)
  154. pkts bytes target prot opt in out source destination
  155. 0 0 ACCEPT tcp -- * lo 0.0.0.0/0 0.0.0.0/0 multiport dports 25,465,587
  156. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 25,465,587 owner GID match 8
  157. 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 25,465,587 owner UID match 0
  158. 0 0 LOGDROPOUT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 25,465,587
  159.  
Add Comment
Please, Sign In to add comment