- 论坛徽章:
- 0
|
如何将RedHat下的iptables统一成标准的iptables?
这是redhat默认生成的iptables:\r\n# Generated by iptables-save v1.2.7a on Tue Feb 24 16:45:49 2004\r\n*filter\r\n:INPUT ACCEPT [0]\r\n:FORWARD ACCEPT [0]\r\n:OUTPUT ACCEPT [4457]\r\n:RH-Lokkit-0-50-INPUT - [0]\r\n-A INPUT -j RH-Lokkit-0-50-INPUT \r\n-A FORWARD -j RH-Lokkit-0-50-INPUT \r\n-A RH-Lokkit-0-50-INPUT -s 66.187.233.4 -p udp -m udp --sport 123 --dport 123 -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -s 66.187.233.4 -p udp -m udp --sport 123 --dport 123 -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -p tcp -m tcp --dport 22 --tcp-flags SYN,RST,ACK SYN -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -p tcp -m tcp --dport 80 --tcp-flags SYN,RST,ACK SYN -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -p tcp -m tcp --dport 21 --tcp-flags SYN,RST,ACK SYN -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -i lo -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -i eth0 -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -s 210.83.158.91 -p udp -m udp --sport 53 -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -s 218.108.19.190 -p udp -m udp --sport 53 -j ACCEPT \r\n-A RH-Lokkit-0-50-INPUT -p tcp -m tcp --tcp-flags SYN,RST,ACK SYN -j REJECT --reject-with icmp-port-unreachable \r\n-A RH-Lokkit-0-50-INPUT -p udp -m udp -j REJECT --reject-with icmp-port-unreachable \r\nCOMMIT\r\n# Completed on Tue Feb 24 16:45:49 2004\r\n\r\nLokkit是什么意思啊?规则的写法应该是分为几个表才对啊。迷糊了…… |
|