[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: iptables. Доступ к localhost.



Pavel V. Rochnyack wrote:

Две полезные команды:

netstat -an |grep LISTEN

telnet localhost 80

советую попробовать.

Спасибо.

Заработало так:

# Generated by iptables-save v1.3.8 on Sat Jun  7 18:18:52 2008
*filter
:INPUT ACCEPT [9754:3728804]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [101720:5217676]
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 842 -j DROP
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 443 -j DROP
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 111 -j DROP
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 25 -j DROP
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 22 -j DROP
-A INPUT -s 127.0.0.1 -i lo -j ACCEPT
-A INPUT -i ppp0 -j ACCEPT
-A INPUT -i eth1 -j ACCEPT
-A INPUT -j DROP
-A FORWARD -i eth1 -o ppp0 -j ACCEPT
-A FORWARD -i ppp0 -o eth1 -j ACCEPT
-A OUTPUT -o ppp0 -j ACCEPT
COMMIT
# Completed on Sat Jun  7 18:18:52 2008

--
WBR, Oleg Gashev.


Reply to: