Advertisement
Guest User

Untitled

a guest
Sep 21st, 2018
52
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.09 KB | None | 0 0
  1. [root@startable public_html]# iptables-save
  2. # Generated by iptables-save v1.4.21 on Fri Sep 21 23:37:26 2018
  3. *security
  4. :INPUT ACCEPT [41706:4463987]
  5. :FORWARD ACCEPT [0:0]
  6. :OUTPUT ACCEPT [46438:31596040]
  7. COMMIT
  8. # Completed on Fri Sep 21 23:37:26 2018
  9. # Generated by iptables-save v1.4.21 on Fri Sep 21 23:37:26 2018
  10. *raw
  11. :PREROUTING ACCEPT [47478:4769251]
  12. :OUTPUT ACCEPT [46445:31596944]
  13. COMMIT
  14. # Completed on Fri Sep 21 23:37:26 2018
  15. # Generated by iptables-save v1.4.21 on Fri Sep 21 23:37:26 2018
  16. *nat
  17. :PREROUTING ACCEPT [8070:430850]
  18. :INPUT ACCEPT [2378:131602]
  19. :OUTPUT ACCEPT [5323:398127]
  20. :POSTROUTING ACCEPT [5323:398127]
  21. COMMIT
  22. # Completed on Fri Sep 21 23:37:26 2018
  23. # Generated by iptables-save v1.4.21 on Fri Sep 21 23:37:26 2018
  24. *mangle
  25. :PREROUTING ACCEPT [47478:4769251]
  26. :INPUT ACCEPT [47478:4769251]
  27. :FORWARD ACCEPT [0:0]
  28. :OUTPUT ACCEPT [46447:31597216]
  29. :POSTROUTING ACCEPT [46447:31597216]
  30. COMMIT
  31. # Completed on Fri Sep 21 23:37:26 2018
  32. # Generated by iptables-save v1.4.21 on Fri Sep 21 23:37:26 2018
  33. *filter
  34. :INPUT ACCEPT [0:0]
  35. :FORWARD ACCEPT [0:0]
  36. :OUTPUT ACCEPT [58:9308]
  37. -A INPUT -p tcp -m tcp --dport 25 -j ACCEPT
  38. -A INPUT -p tcp -m tcp --dport 443 -j ACCEPT
  39. -A INPUT -i lo -j ACCEPT
  40. -A INPUT -s 127.0.0.0/8 ! -i lo -j REJECT --reject-with icmp-port-unreachable
  41. -A INPUT -p icmp -m state --state NEW -m icmp --icmp-type 8 -j ACCEPT
  42. -A INPUT -p tcp -m tcp --dport 22 -m state --state NEW -j ACCEPT
  43. -A INPUT -p tcp -m tcp --dport 80 -m state --state NEW -j ACCEPT
  44. -A INPUT -p tcp -m tcp --dport 443 -m state --state NEW -j ACCEPT
  45. -A INPUT -p tcp -m tcp --dport 3306 -m state --state NEW -j ACCEPT
  46. -A INPUT -p tcp -m tcp --dport 21 -m state --state NEW -j ACCEPT
  47. -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  48. -A INPUT -m limit --limit 5/min -j LOG --log-prefix "iptables_INPUT_denied: " --log-level 7
  49. -A INPUT -j REJECT --reject-with icmp-port-unreachable
  50. -A FORWARD -m limit --limit 5/min -j LOG --log-prefix "iptables_FORWARD_denied: " --log-level 7
  51. -A FORWARD -j REJECT --reject-with icmp-port-unreachable
  52. COMMIT
  53. # Completed on Fri Sep 21 23:37:26 2018
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement