- 论坛徽章:
- 0
|
回复 23# chenyx
# Generated by iptables-save v1.4.7 on Thu Jul 7 21:30:17 2016
*filter
:INPUT DROP [3:944]
:FORWARD ACCEPT [0:0]
:OUTPUT DROP [6:360]
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A INPUT -p icmp -j ACCEPT
-A INPUT -i lo -j ACCEPT
-A INPUT -p tcp -m state --state NEW -m tcp --dport 28888 -j ACCEPT
-A INPUT -p udp -m udp --dport 53 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 7070 -j ACCEPT
-A INPUT -p tcp -m state --state NEW -m tcp --dport 2020 -j ACCEPT
-A INPUT -p tcp -m state --state NEW -m tcp --dport 3030 -j ACCEPT
-A INPUT -p tcp -m state --state NEW -m tcp --dport 3031 -j ACCEPT
-A INPUT -p tcp -m state --state NEW -m tcp --dport 5050 -j ACCEPT
-A INPUT -p tcp -m state --state NEW -m tcp --dport 6060 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 23456 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 8080 -j ACCEPT
-A OUTPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A OUTPUT -o lo -j ACCEPT
-A OUTPUT -p udp -m udp --dport 53 -j ACCEPT
-A OUTPUT -p tcp -m tcp --dport 1521 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 7070 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 2020 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 3030 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 3031 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 5050 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 6060 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 8080 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 80 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 23456 -j ACCEPT
-A OUTPUT -p icmp -m icmp --icmp-type 8 -j ACCEPT
COMMIT
# Completed on Thu Jul 7 21:30:17 2016
|
|