Re: iptables. Доступ к localhost.
Pavel V. Rochnyack wrote:
Две полезные команды:
netstat -an |grep LISTEN
telnet localhost 80
советую попробовать.
Спасибо.
Заработало так:
# Generated by iptables-save v1.3.8 on Sat Jun 7 18:18:52 2008
*filter
:INPUT ACCEPT [9754:3728804]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [101720:5217676]
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 842 -j DROP
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 443 -j DROP
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 111 -j DROP
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 25 -j DROP
-A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 22 -j DROP
-A INPUT -s 127.0.0.1 -i lo -j ACCEPT
-A INPUT -i ppp0 -j ACCEPT
-A INPUT -i eth1 -j ACCEPT
-A INPUT -j DROP
-A FORWARD -i eth1 -o ppp0 -j ACCEPT
-A FORWARD -i ppp0 -o eth1 -j ACCEPT
-A OUTPUT -o ppp0 -j ACCEPT
COMMIT
# Completed on Sat Jun 7 18:18:52 2008
--
WBR, Oleg Gashev.
Reply to: