iptables -L -v -n Chain INPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 ACCEPT udp -- virbr0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:53 0 0 ACCEPT tcp -- virbr0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:53 0 0 ACCEPT udp -- virbr0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:67 0 0 ACCEPT tcp -- virbr0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:67 5601K 7814M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED 1052 49097 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0 12295 1347K INPUT_direct all -- * * 0.0.0.0/0 0.0.0.0/0 12295 1347K INPUT_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0 12295 1347K INPUT_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0 2 120 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 5 200 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID 902 57876 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited Chain FORWARD (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 ACCEPT all -- * virbr0 0.0.0.0/0 192.168.122.0/24 ctstate RELATED,ESTABLISHED 0 0 ACCEPT all -- virbr0 * 192.168.122.0/24 0.0.0.0/0 0 0 ACCEPT all -- virbr0 virbr0 0.0.0.0/0 0.0.0.0/0 0 0 REJECT all -- * virbr0 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable 0 0 REJECT all -- virbr0 * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED 0 0 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0 0 0 FORWARD_direct all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 FORWARD_IN_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 FORWARD_IN_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 FORWARD_OUT_ZONES_SOURCE all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 FORWARD_OUT_ZONES all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited Chain OUTPUT (policy ACCEPT 3076K packets, 401M bytes) pkts bytes target prot opt in out source destination 0 0 ACCEPT udp -- * virbr0 0.0.0.0/0 0.0.0.0/0 udp dpt:68 3076K 401M OUTPUT_direct all -- * * 0.0.0.0/0 0.0.0.0/0 Chain FORWARD_IN_ZONES (1 references) pkts bytes target prot opt in out source destination 0 0 FWDI_FedoraWorkstation all -- enp2s0 * 0.0.0.0/0 0.0.0.0/0 [goto] 0 0 FWDI_FedoraWorkstation all -- virbr0 * 0.0.0.0/0 0.0.0.0/0 [goto] 0 0 FWDI_FedoraWorkstation all -- + * 0.0.0.0/0 0.0.0.0/0 [goto] Chain FORWARD_IN_ZONES_SOURCE (1 references) pkts bytes target prot opt in out source destination Chain FORWARD_OUT_ZONES (1 references) pkts bytes target prot opt in out source destination 0 0 FWDO_FedoraWorkstation all -- * enp2s0 0.0.0.0/0 0.0.0.0/0 [goto] 0 0 FWDO_FedoraWorkstation all -- * virbr0 0.0.0.0/0 0.0.0.0/0 [goto] 0 0 FWDO_FedoraWorkstation all -- * + 0.0.0.0/0 0.0.0.0/0 [goto] Chain FORWARD_OUT_ZONES_SOURCE (1 references) pkts bytes target prot opt in out source destination Chain FORWARD_direct (1 references) pkts bytes target prot opt in out source destination Chain FWDI_FedoraWorkstation (3 references) pkts bytes target prot opt in out source destination 0 0 FWDI_FedoraWorkstation_log all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 FWDI_FedoraWorkstation_deny all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 FWDI_FedoraWorkstation_allow all -- * * 0.0.0.0/0 0.0.0.0/0 Chain FWDI_FedoraWorkstation_allow (1 references) pkts bytes target prot opt in out source destination Chain FWDI_FedoraWorkstation_deny (1 references) pkts bytes target prot opt in out source destination Chain FWDI_FedoraWorkstation_log (1 references) pkts bytes target prot opt in out source destination Chain FWDO_FedoraWorkstation (3 references) pkts bytes target prot opt in out source destination 0 0 FWDO_FedoraWorkstation_log all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 FWDO_FedoraWorkstation_deny all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 FWDO_FedoraWorkstation_allow all -- * * 0.0.0.0/0 0.0.0.0/0 Chain FWDO_FedoraWorkstation_allow (1 references) pkts bytes target prot opt in out source destination Chain FWDO_FedoraWorkstation_deny (1 references) pkts bytes target prot opt in out source destination Chain FWDO_FedoraWorkstation_log (1 references) pkts bytes target prot opt in out source destination Chain INPUT_ZONES (1 references) pkts bytes target prot opt in out source destination 12110 1258K IN_FedoraWorkstation all -- enp2s0 * 0.0.0.0/0 0.0.0.0/0 [goto] 185 89503 IN_FedoraWorkstation all -- virbr0 * 0.0.0.0/0 0.0.0.0/0 [goto] 0 0 IN_FedoraWorkstation all -- + * 0.0.0.0/0 0.0.0.0/0 [goto] Chain INPUT_ZONES_SOURCE (1 references) pkts bytes target prot opt in out source destination Chain INPUT_direct (1 references) pkts bytes target prot opt in out source destination Chain IN_FedoraWorkstation (3 references) pkts bytes target prot opt in out source destination 12295 1347K IN_FedoraWorkstation_log all -- * * 0.0.0.0/0 0.0.0.0/0 12295 1347K IN_FedoraWorkstation_deny all -- * * 0.0.0.0/0 0.0.0.0/0 12295 1347K IN_FedoraWorkstation_allow all -- * * 0.0.0.0/0 0.0.0.0/0 Chain IN_FedoraWorkstation_allow (1 references) pkts bytes target prot opt in out source destination 396 180K ACCEPT udp -- * * 0.0.0.0/0 224.0.0.251 udp dpt:5353 ctstate NEW 6714 525K ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:137 ctstate NEW 117 26723 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:138 ctstate NEW 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22 ctstate NEW 4159 558K ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:1025:65535 ctstate NEW 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpts:1025:65535 ctstate NEW Chain IN_FedoraWorkstation_deny (1 references) pkts bytes target prot opt in out source destination Chain IN_FedoraWorkstation_log (1 references) pkts bytes target prot opt in out source destination Chain OUTPUT_direct (1 references) pkts bytes target prot opt in out source destination