- 论坛徽章:
- 0
|
问题详细补充:\r\n\r\n# iptables -L\r\nChain INPUT (policy ACCEPT)\r\ntarget prot opt source destination\r\nDROP tcp -- anywhere anywhere tcp dpts:0:1023\r\nDROP udp -- anywhere anywhere udp dpts:0:1023\r\nDROP tcp -- anywhere anywhere tcp flags:FIN,SYN,R ST,ACK/SYN\r\nDROP icmp -- anywhere anywhere icmp echo-request\r\n\r\nChain FORWARD (policy DROP)\r\ntarget prot opt source destination\r\n\r\nChain OUTPUT (policy ACCEPT)\r\ntarget prot opt source destination\r\n\r\nChain RH-Firewall-1-INPUT (0 references)\r\n...........................\r\n\r\n但查看/etc/sysconfig/iptables配置文件,FORWARD policy 也为ACCEPT,所以只有增加iptables -t filter -P FORWARD ACCEPT 或 restart iptables ,FORWARD \'s policy is ACCEPT.\r\nWhy & How ??? |
|