Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- admin@RT-AX86U-24F8:/tmp/home/root# iptables -vnL
- Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 1513 105K REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:53 STRING match "|0000410001|" ALGO name bm TO 65535 reject-with icmp-port-unreachable
- 937 1127K INPUT_PING icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8
- 501K 81M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
- 267 17345 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
- 176K 39M PTCSRVWAN all -- !br0 * 0.0.0.0/0 0.0.0.0/0
- 66380 8368K PTCSRVLAN all -- br0 * 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP tcp -- !lo * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5152
- 66380 8368K ACCEPT all -- br0 * 0.0.0.0/0 0.0.0.0/0 state NEW
- 165K 38M ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0 state NEW
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:67 dpt:68
- 0 0 INPUT_ICMP icmp -- * * 0.0.0.0/0 0.0.0.0/0
- 1785 115K ACCEPT udp -- br1 * 0.0.0.0/0 0.0.0.0/0 udp dpt:53
- 0 0 ACCEPT tcp -- br1 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:53
- 128 44418 ACCEPT udp -- br1 * 0.0.0.0/0 0.0.0.0/0 udp dpt:67
- 0 0 ACCEPT udp -- br1 * 0.0.0.0/0 0.0.0.0/0 udp dpt:68
- 12 2207 DROP all -- br1 * 0.0.0.0/0 0.0.0.0/0
- 8631 499K OVPNSI all -- * * 0.0.0.0/0 0.0.0.0/0
- 5777 306K OVPNCI all -- * * 0.0.0.0/0 0.0.0.0/0
- 5777 306K DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FORWARD (policy DROP 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 0 0 DROP all -- br0 * 0.0.0.0/0 0.0.0.0/0 MAC EC:66:D1:07:DF:F4
- 0 0 DROP all -- br0 * 0.0.0.0/0 0.0.0.0/0 MAC 48:E1:E9:2B:AB:1C
- 5314 404K DROP all -- br0 * 0.0.0.0/0 0.0.0.0/0 MAC 40:9F:38:05:8A:E3
- 7415 564K DROP all -- br0 * 0.0.0.0/0 0.0.0.0/0 MAC E4:23:54:0B:9E:7C
- 188 14288 DROP all -- br0 * 0.0.0.0/0 0.0.0.0/0 MAC 00:7E:56:6C:7E:F6
- 132K 36M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
- 8117 555K OVPNSF all -- * * 0.0.0.0/0 0.0.0.0/0
- 7078 327K WGNPControls all -- br1 * 0.0.0.0/0 0.0.0.0/0
- 7078 327K ACCEPT all -- br1 eth0 0.0.0.0/0 0.0.0.0/0
- 0 0 other2wan all -- !br0 eth0 0.0.0.0/0 0.0.0.0/0
- 58 3759 ACCEPT all -- br0 br0 0.0.0.0/0 0.0.0.0/0
- 30 1200 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
- 27 1604 SECURITY all -- eth0 * 0.0.0.0/0 0.0.0.0/0
- 605 201K NSFW all -- * * 0.0.0.0/0 0.0.0.0/0
- 578 199K ACCEPT all -- br0 * 0.0.0.0/0 0.0.0.0/0
- 27 1604 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate DNAT
- 0 0 DNSFILTER_DOT tcp -- br+ * 0.0.0.0/0 0.0.0.0/0 tcp dpt:853
- 0 0 OVPNCF all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain OUTPUT (policy ACCEPT 761K packets, 402M bytes)
- pkts bytes target prot opt in out source destination
- 3813 255K OUTPUT_DNS udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:53 u32 "0x0>>0x16&0x3c@0x8>>0xf&0x1=0x0"
- 108 12204 OUTPUT_DNS tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:53 u32 "0x0>>0x16&0x3c@0xc>>0x1a&0x3c@0x8>>0xf&0x1=0x0"
- 763K 403M OUTPUT_IP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ACCESS_RESTRICTION (0 references)
- pkts bytes target prot opt in out source destination
- Chain DNSFILTER_DOT (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 REJECT all -- * * 0.0.0.0/0 !192.168.50.1 MAC 14:7D:DA:30:D1:4E reject-with icmp-port-unreachable
- 0 0 REJECT all -- * * 0.0.0.0/0 !192.168.50.1 MAC C8:3C:85:DB:41:B1 reject-with icmp-port-unreachable
- 0 0 REJECT all -- * * 0.0.0.0/0 !192.168.50.1 MAC 98:46:0A:0D:7A:65 reject-with icmp-port-unreachable
- 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 MAC 60:45:CB:AD:83:00
- 0 0 REJECT all -- * * 0.0.0.0/0 !192.168.50.1 MAC 06:79:AE:E4:A5:AD reject-with icmp-port-unreachable
- 0 0 REJECT all -- * * 0.0.0.0/0 !192.168.50.1 MAC 0E:FC:D1:7F:93:AF reject-with icmp-port-unreachable
- 0 0 REJECT all -- * * 0.0.0.0/0 !192.168.50.3 reject-with icmp-port-unreachable
- Chain FUPNP (0 references)
- pkts bytes target prot opt in out source destination
- Chain IControls (0 references)
- pkts bytes target prot opt in out source destination
- Chain INPUT_ICMP (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 RETURN icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8
- 0 0 RETURN icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 13
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
- Chain INPUT_PING (1 references)
- pkts bytes target prot opt in out source destination
- 120 9464 DROP icmp -- eth0 * 0.0.0.0/0 0.0.0.0/0
- Chain NSFW (1 references)
- pkts bytes target prot opt in out source destination
- Chain OUTPUT_DNS (2 references)
- pkts bytes target prot opt in out source destination
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|10706f697579747975696f706b6a666e6603636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|0d72666a656a6e666a6e65666a6503636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|1131306166646d617361787373736171726b03636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|0f376d667364666173646d6b676d726b03636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|0d386d617361787373736171726b03636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|0f3966646d617361787373736171726b03636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|1265666274686d6f6975796b6d6b6a6b6a677403636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|086861636b7563647403636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|076c696e77756469056633333232036e657400|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|0f6c6b6a68676664736174727975696f03636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|0b6d6e627663787a7a7a313203636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|077131313133333303746f7000|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|057371353230056633333232036e657400|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|077563746b6f6e6503636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|0e7a786376626d6e6e666a6a66777103636f6d00|" ALGO name bm TO 65535 ICASE
- 0 0 logdrop_dns all -- * * 0.0.0.0/0 0.0.0.0/0 STRING match "|0a65756d6d6167766e627003636f6d00|" ALGO name bm TO 65535 ICASE
- Chain OUTPUT_IP (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 logdrop_ip all -- * * 0.0.0.0/0 193.201.224.0/24
- 0 0 logdrop_ip all -- * * 0.0.0.0/0 51.15.120.245
- 0 0 logdrop_ip all -- * * 0.0.0.0/0 45.33.73.134
- 0 0 logdrop_ip all -- * * 0.0.0.0/0 190.115.18.28
- 0 0 logdrop_ip all -- * * 0.0.0.0/0 51.159.52.250
- 0 0 logdrop_ip all -- * * 0.0.0.0/0 190.115.18.86
- Chain OVPNCF (1 references)
- pkts bytes target prot opt in out source destination
- Chain OVPNCI (1 references)
- pkts bytes target prot opt in out source destination
- Chain OVPNSF (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- * tun22 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- tun22 * 0.0.0.0/0 0.0.0.0/0
- 346 22133 ACCEPT all -- tun21 * 0.0.0.0/0 192.168.50.0/24
- Chain OVPNSI (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 ACCEPT all -- tun22 * 0.0.0.0/0 0.0.0.0/0
- 153 9228 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
- 2698 184K ACCEPT all -- tun21 * 0.0.0.0/0 0.0.0.0/0
- 3 206 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1194
- Chain PControls (0 references)
- pkts bytes target prot opt in out source destination
- Chain PTCSRVLAN (1 references)
- pkts bytes target prot opt in out source destination
- Chain PTCSRVWAN (1 references)
- pkts bytes target prot opt in out source destination
- Chain SECURITY (1 references)
- pkts bytes target prot opt in out source destination
- 27 1604 RETURN tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcpflags: 0x17/0x02 limit: avg 1/sec burst 5
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcpflags: 0x17/0x02
- 0 0 RETURN tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcpflags: 0x17/0x04 limit: avg 1/sec burst 5
- 0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcpflags: 0x17/0x04
- 0 0 RETURN icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8 limit: avg 1/sec burst 5
- 0 0 DROP icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8
- 0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain WGNPControls (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 DROP all -- br1 * 0.0.0.0/0 0.0.0.0/0 MAC EC:66:D1:07:DF:F4
- 0 0 DROP all -- br1 * 0.0.0.0/0 0.0.0.0/0 MAC 48:E1:E9:2B:AB:1C
- 0 0 DROP all -- br1 * 0.0.0.0/0 0.0.0.0/0 MAC 40:9F:38:05:8A:E3
- 0 0 DROP all -- br1 * 0.0.0.0/0 0.0.0.0/0 MAC E4:23:54:0B:9E:7C
- 0 0 DROP all -- br1 * 0.0.0.0/0 0.0.0.0/0 MAC 00:7E:56:6C:7E:F6
- Chain default_block (0 references)
- pkts bytes target prot opt in out source destination
- Chain logaccept (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 state NEW LOG flags 7 level 4 prefix "ACCEPT "
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain logdrop (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 state NEW LOG flags 7 level 4 prefix "DROP "
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain logdrop_dns (16 references)
- pkts bytes target prot opt in out source destination
- 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 7 level 4 prefix "DROP_DNS "
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain logdrop_ip (6 references)
- pkts bytes target prot opt in out source destination
- 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 7 level 4 prefix "DROP_IP "
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain other2wan (1 references)
- pkts bytes target prot opt in out source destination
- 0 0 RETURN all -- tun+ * 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- admin@RT-AX86U-24F8:/tmp/home/root#
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement