- 论坛徽章:
- 0
|
[root@luzg root]# more /etc/sysconfig/iptables
# Generated by iptables-save v1.2.8 on Mon Apr 9 16:53:49 2007
*filter
:INPUT DROP [0:0]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [12770399:11351579778]
:LUZHIGANG - [0:0]
:RH-Firewall-1-INPUT - [0:0]
-A INPUT -j LUZHIGANG
-A INPUT -j RH-Firewall-1-INPUT
-A FORWARD -j RH-Firewall-1-INPUT
-A LUZHIGANG -p tcp -m tcp --sport 5801:5810 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --dport 5801:5810 -j ACCEPT
-A LUZHIGANG -p udp -m udp --sport 5801:5810 -j ACCEPT
-A LUZHIGANG -p udp -m udp --dport 5801:5810 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --sport 23 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --dport 23 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --sport 3000 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --dport 3000 -j ACCEPT
-A LUZHIGANG -p udp -m udp --dport 110 -j ACCEPT
-A LUZHIGANG -p udp -m udp --sport 110 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --sport 110 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --dport 110 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --sport 65520:65530 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --dport 65520:65530 -j ACCEPT
-A LUZHIGANG -p tcp -m tcp --dport 3128 -j ACCEPT
-A LUZHIGANG -m state --state RELATED,ESTABLISHED -j ACCEPT
-A RH-Firewall-1-INPUT -i lo -j ACCEPT
-A RH-Firewall-1-INPUT -p icmp -m icmp -j ACCEPT
-A RH-Firewall-1-INPUT -p esp -j ACCEPT
-A RH-Firewall-1-INPUT -p ah -j ACCEPT
-A RH-Firewall-1-INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A RH-Firewall-1-INPUT -p tcp -m tcp --dport 25 -m state --state NEW -j ACCEPT
-A RH-Firewall-1-INPUT -p tcp -m tcp --dport 80 -m state --state NEW -j ACCEPT
-A RH-Firewall-1-INPUT -p tcp -m tcp --dport 21 -m state --state NEW -j ACCEPT
-A RH-Firewall-1-INPUT -p tcp -m tcp --dport 22 -m state --state NEW -j ACCEPT
-A RH-Firewall-1-INPUT -j REJECT --reject-with icmp-host-prohibited
COMMIT
# Completed on Mon Apr 9 16:53:49 2007
# Generated by iptables-save v1.2.8 on Mon Apr 9 16:53:49 2007
*nat
REROUTING ACCEPT [1111001:131904987]
OSTROUTING ACCEPT [200108:12302341]
:OUTPUT ACCEPT [200108:12302341]
COMMIT
# Completed on Mon Apr 9 16:53:49 2007
出错提示如下:
[root@luzg root]# service iptables start
Flushing firewall rules: [ 确定 ]
Setting chains to policy ACCEPT: filter [ 确定 ]
Unloading iptables modules: [失败]
Applying iptables firewall rules: iptables-restore: line 37 failed
[失败]
[root@luzg root]#
达人指教 |
|