Guest User

Untitled

a guest
Feb 14th, 2025
33
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 10.23 KB | None | 0 0
  1. Chain INPUT (policy DROP)
  2. target prot opt source destination
  3. ufw-before-logging-input all -- anywhere anywhere
  4. ufw-before-input all -- anywhere anywhere
  5. ufw-after-input all -- anywhere anywhere
  6. ufw-after-logging-input all -- anywhere anywhere
  7. ufw-reject-input all -- anywhere anywhere
  8. ufw-track-input all -- anywhere anywhere
  9.  
  10. Chain FORWARD (policy DROP)
  11. target prot opt source destination
  12. DOCKER-USER all -- anywhere anywhere
  13. DOCKER-ISOLATION-STAGE-1 all -- anywhere anywhere
  14. ACCEPT all -- anywhere anywhere ctstate RELATED,ESTABLISHED
  15. DOCKER all -- anywhere anywhere
  16. ACCEPT all -- anywhere anywhere
  17. ACCEPT all -- anywhere anywhere
  18. ufw-before-logging-forward all -- anywhere anywhere
  19. ufw-before-forward all -- anywhere anywhere
  20. ufw-after-forward all -- anywhere anywhere
  21. ufw-after-logging-forward all -- anywhere anywhere
  22. ufw-reject-forward all -- anywhere anywhere
  23. ufw-track-forward all -- anywhere anywhere
  24.  
  25. Chain OUTPUT (policy ACCEPT)
  26. target prot opt source destination
  27. ufw-before-logging-output all -- anywhere anywhere
  28. ufw-before-output all -- anywhere anywhere
  29. ufw-after-output all -- anywhere anywhere
  30. ufw-after-logging-output all -- anywhere anywhere
  31. ufw-reject-output all -- anywhere anywhere
  32. ufw-track-output all -- anywhere anywhere
  33.  
  34. Chain DOCKER (1 references)
  35. target prot opt source destination
  36.  
  37. Chain DOCKER-ISOLATION-STAGE-1 (1 references)
  38. target prot opt source destination
  39. DOCKER-ISOLATION-STAGE-2 all -- anywhere anywhere
  40. RETURN all -- anywhere anywhere
  41.  
  42. Chain DOCKER-ISOLATION-STAGE-2 (1 references)
  43. target prot opt source destination
  44. DROP all -- anywhere anywhere
  45. RETURN all -- anywhere anywhere
  46.  
  47. Chain DOCKER-USER (1 references)
  48. target prot opt source destination
  49. RETURN all -- anywhere anywhere
  50.  
  51. Chain ufw-after-forward (1 references)
  52. target prot opt source destination
  53.  
  54. Chain ufw-after-input (1 references)
  55. target prot opt source destination
  56. ufw-skip-to-policy-input udp -- anywhere anywhere udp dpt:netbios-ns
  57. ufw-skip-to-policy-input udp -- anywhere anywhere udp dpt:netbios-dgm
  58. ufw-skip-to-policy-input tcp -- anywhere anywhere tcp dpt:netbios-ssn
  59. ufw-skip-to-policy-input tcp -- anywhere anywhere tcp dpt:microsoft-ds
  60. ufw-skip-to-policy-input udp -- anywhere anywhere udp dpt:bootps
  61. ufw-skip-to-policy-input udp -- anywhere anywhere udp dpt:bootpc
  62. ufw-skip-to-policy-input all -- anywhere anywhere ADDRTYPE match dst-type BROADCAST
  63.  
  64. Chain ufw-after-logging-forward (1 references)
  65. target prot opt source destination
  66. LOG all -- anywhere anywhere limit: avg 3/min burst 10 LOG level warn prefix "[UFW BLOCK] "
  67.  
  68. Chain ufw-after-logging-input (1 references)
  69. target prot opt source destination
  70. LOG all -- anywhere anywhere limit: avg 3/min burst 10 LOG level warn prefix "[UFW BLOCK] "
  71.  
  72. Chain ufw-after-logging-output (1 references)
  73. target prot opt source destination
  74.  
  75. Chain ufw-after-output (1 references)
  76. target prot opt source destination
  77.  
  78. Chain ufw-before-forward (1 references)
  79. target prot opt source destination
  80. ACCEPT all -- anywhere anywhere ctstate RELATED,ESTABLISHED
  81. ACCEPT icmp -- anywhere anywhere icmp destination-unreachable
  82. ACCEPT icmp -- anywhere anywhere icmp time-exceeded
  83. ACCEPT icmp -- anywhere anywhere icmp parameter-problem
  84. ACCEPT icmp -- anywhere anywhere icmp echo-request
  85. ufw-user-forward all -- anywhere anywhere
  86.  
  87. Chain ufw-before-input (1 references)
  88. target prot opt source destination
  89. ACCEPT all -- anywhere anywhere
  90. ACCEPT all -- anywhere anywhere ctstate RELATED,ESTABLISHED
  91. ufw-logging-deny all -- anywhere anywhere ctstate INVALID
  92. DROP all -- anywhere anywhere ctstate INVALID
  93. ACCEPT icmp -- anywhere anywhere icmp destination-unreachable
  94. ACCEPT icmp -- anywhere anywhere icmp time-exceeded
  95. ACCEPT icmp -- anywhere anywhere icmp parameter-problem
  96. ACCEPT icmp -- anywhere anywhere icmp echo-request
  97. ACCEPT udp -- anywhere anywhere udp spt:bootps dpt:bootpc
  98. ufw-not-local all -- anywhere anywhere
  99. ACCEPT udp -- anywhere mdns.mcast.net udp dpt:mdns
  100. ACCEPT udp -- anywhere 239.255.255.250 udp dpt:1900
  101. ufw-user-input all -- anywhere anywhere
  102.  
  103. Chain ufw-before-logging-forward (1 references)
  104. target prot opt source destination
  105.  
  106. Chain ufw-before-logging-input (1 references)
  107. target prot opt source destination
  108.  
  109. Chain ufw-before-logging-output (1 references)
  110. target prot opt source destination
  111.  
  112. Chain ufw-before-output (1 references)
  113. target prot opt source destination
  114. ACCEPT all -- anywhere anywhere
  115. ACCEPT all -- anywhere anywhere ctstate RELATED,ESTABLISHED
  116. ufw-user-output all -- anywhere anywhere
  117.  
  118. Chain ufw-logging-allow (0 references)
  119. target prot opt source destination
  120. LOG all -- anywhere anywhere limit: avg 3/min burst 10 LOG level warn prefix "[UFW ALLOW] "
  121.  
  122. Chain ufw-logging-deny (2 references)
  123. target prot opt source destination
  124. RETURN all -- anywhere anywhere ctstate INVALID limit: avg 3/min burst 10
  125. LOG all -- anywhere anywhere limit: avg 3/min burst 10 LOG level warn prefix "[UFW BLOCK] "
  126.  
  127. Chain ufw-not-local (1 references)
  128. target prot opt source destination
  129. RETURN all -- anywhere anywhere ADDRTYPE match dst-type LOCAL
  130. RETURN all -- anywhere anywhere ADDRTYPE match dst-type MULTICAST
  131. RETURN all -- anywhere anywhere ADDRTYPE match dst-type BROADCAST
  132. ufw-logging-deny all -- anywhere anywhere limit: avg 3/min burst 10
  133. DROP all -- anywhere anywhere
  134.  
  135. Chain ufw-reject-forward (1 references)
  136. target prot opt source destination
  137.  
  138. Chain ufw-reject-input (1 references)
  139. target prot opt source destination
  140.  
  141. Chain ufw-reject-output (1 references)
  142. target prot opt source destination
  143.  
  144. Chain ufw-skip-to-policy-forward (0 references)
  145. target prot opt source destination
  146. DROP all -- anywhere anywhere
  147.  
  148. Chain ufw-skip-to-policy-input (7 references)
  149. target prot opt source destination
  150. DROP all -- anywhere anywhere
  151.  
  152. Chain ufw-skip-to-policy-output (0 references)
  153. target prot opt source destination
  154. ACCEPT all -- anywhere anywhere
  155.  
  156. Chain ufw-track-forward (1 references)
  157. target prot opt source destination
  158.  
  159. Chain ufw-track-input (1 references)
  160. target prot opt source destination
  161.  
  162. Chain ufw-track-output (1 references)
  163. target prot opt source destination
  164. ACCEPT tcp -- anywhere anywhere ctstate NEW
  165. ACCEPT udp -- anywhere anywhere ctstate NEW
  166.  
  167. Chain ufw-user-forward (1 references)
  168. target prot opt source destination
  169.  
  170. Chain ufw-user-input (1 references)
  171. target prot opt source destination
  172. ACCEPT tcp -- anywhere anywhere tcp dpt:ssh
  173. ACCEPT tcp -- anywhere anywhere tcp dpt:http
  174.  
  175. Chain ufw-user-limit (0 references)
  176. target prot opt source destination
  177. LOG all -- anywhere anywhere limit: avg 3/min burst 5 LOG level warn prefix "[UFW LIMIT BLOCK] "
  178. REJECT all -- anywhere anywhere reject-with icmp-port-unreachable
  179.  
  180. Chain ufw-user-limit-accept (0 references)
  181. target prot opt source destination
  182. ACCEPT all -- anywhere anywhere
  183.  
  184. Chain ufw-user-logging-forward (0 references)
  185. target prot opt source destination
  186.  
  187. Chain ufw-user-logging-input (0 references)
  188. target prot opt source destination
  189.  
  190. Chain ufw-user-logging-output (0 references)
  191. target prot opt source destination
  192.  
  193. Chain ufw-user-output (1 references)
  194. target prot opt source destination
Advertisement
Add Comment
Please, Sign In to add comment