[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: iptables setup: masq, opening ports, security




Вот, люди, наслаждайтесь:


Chain INPUT (policy DROP)
target     prot opt source               destination
ACCEPT     all  --  0.0.0.0/0            0.0.0.0/0
ACCEPT     all  --  192.168.1.0/24       0.0.0.0/0
drop-and-log-it  all  --  192.168.1.0/24       0.0.0.0/0
ACCEPT     icmp --  0.0.0.0/0            62.65.204.36
ACCEPT all -- 0.0.0.0/0 62.65.204.36 state RELATED,ESTABLISHED ACCEPT tcp -- 0.0.0.0/0 62.65.204.36 state NEW,RELATED,ESTABLISHED tcp dpt:80 ACCEPT tcp -- 0.0.0.0/0 62.65.204.36 tcp spts:1024:65535 dpt:21 ACCEPT tcp -- 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED tcp dpt:6346 ACCEPT tcp -- 0.0.0.0/0 192.168.1.0/24 state NEW,RELATED,ESTABLISHED tcp dpt:25
drop-and-log-it  all  --  0.0.0.0/0            0.0.0.0/0

Chain FORWARD (policy DROP)
target     prot opt source               destination
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
ACCEPT     all  --  0.0.0.0/0            0.0.0.0/0
drop-and-log-it  all  --  0.0.0.0/0            0.0.0.0/0

Chain OUTPUT (policy DROP)
target     prot opt source               destination
ACCEPT tcp -- 62.65.204.36 0.0.0.0/0 tcp spts:1024:65535 dpt:21 state NEW ACCEPT tcp -- 62.65.204.36 0.0.0.0/0 tcp spt:21 dpts:1024:65535
ACCEPT     all  --  0.0.0.0/0            0.0.0.0/0
ACCEPT     all  --  62.65.204.36         192.168.1.0/24
ACCEPT     all  --  192.168.1.0/24       192.168.1.0/24
drop-and-log-it  all  --  0.0.0.0/0            192.168.1.0/24
ACCEPT     all  --  62.65.204.36         0.0.0.0/0
drop-and-log-it  all  --  0.0.0.0/0            0.0.0.0/0

Chain drop-and-log-it (5 references)
target     prot opt source               destination
LOG all -- 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 7
DROP       all  --  0.0.0.0/0            0.0.0.0/0


Vasiliy 'Druid' Misharev wrote:

не, iptables -L -n



--
Andrei Sosnin
http://zzx.ath.cx

 <!-- : it all depends on your vision : -->



Reply to: