Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
- -A INPUT -p icmp -j REJECT
- -A INPUT -i lo -j ACCEPT
- -A INPUT -p tcp -s 10.32.5.0/24 -m state --state NEW,ESTABLISH -m tcp -m multiport --dports 22,25 -j ACCEPT
- -A INPUT -p udp -s 10.32.6.0/24,10.32.14.0/24,10.32.9.0/24,10.32.13.0/24,10.32.8.0/24,192.168.1.0/24 -m state --state NEW,ESTABLISH -m udp -m multiport --dports 514,11,12,5140,5141,5142,5143,5144,5145,69 -j DROP
- -A INPUT -p udp -m state --state NEW,ESTABLISH -m udp -m multiport --dports 514,11,12,5140,5141,5142,5143,5144,5145,69 -j ACCEPT
- -A OUTPUT -o lo -j ACCEPT
- -A OUTPUT -o br-4457313349ab -j ACCEPT
- -A OUTPUT -o enp2s0 -p icmp -d 10.32.5.0/24 -j ACCEPT
- -A OUTPUT -o enp2s0 -p tcp -m state --state NEW,ESTABLISHED -j ACCEPT
- -A OUTPUT -o enp2s0 -p udp -m state --state NEW,ESTABLISHED -j ACCEPT
- -N LOGGING
- -A INPUT -j LOGGING
- -A OUTPUT -j LOGGING
- -A LOGGING -m limit --limit 2/min -j LOG --log-prefix "IPTables-Dropped: " --log-level 4
- -A LOGGING -j DROP
Add Comment
Please, Sign In to add comment