- 论坛徽章:
- 0
|
[root@localhost rp-pppoe-3.7]# pppoe-start
. Connected!
[root@localhost rp-pppoe-3.7]# iptables-save
# Generated by iptables-save v1.2.7a on Sat Nov 19 10:39:56 2005
*filter
:INPUT ACCEPT [27:1836]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [2492:169694]
:RH-Lokkit-0-50-INPUT - [0:0]
-A INPUT -j RH-Lokkit-0-50-INPUT
-A FORWARD -j RH-Lokkit-0-50-INPUT
-A RH-Lokkit-0-50-INPUT -s 219.145.96.193 -p udp -m udp --sport 53 --dport 1025:
65535 -j ACCEPT
-A RH-Lokkit-0-50-INPUT -i eth0 -p udp -m udp --sport 67:68 --dport 67:68 -j ACC
EPT
-A RH-Lokkit-0-50-INPUT -i eth1 -p udp -m udp --sport 67:68 --dport 67:68 -j ACC
EPT
-A RH-Lokkit-0-50-INPUT -i lo -j ACCEPT
-A RH-Lokkit-0-50-INPUT -p tcp -m tcp --dport 0:1023 --tcp-flags SYN,RST,ACK SYN
-j REJECT --reject-with icmp-port-unreachable
-A RH-Lokkit-0-50-INPUT -p tcp -m tcp --dport 2049 --tcp-flags SYN,RST,ACK SYN -
j REJECT --reject-with icmp-port-unreachable
-A RH-Lokkit-0-50-INPUT -p udp -m udp --dport 0:1023 -j REJECT --reject-with icm
p-port-unreachable
-A RH-Lokkit-0-50-INPUT -p udp -m udp --dport 2049 -j REJECT --reject-with icmp-
port-unreachable
-A RH-Lokkit-0-50-INPUT -p tcp -m tcp --dport 6000:6009 --tcp-flags SYN,RST,ACK
SYN -j REJECT --reject-with icmp-port-unreachable
-A RH-Lokkit-0-50-INPUT -p tcp -m tcp --dport 7100 --tcp-flags SYN,RST,ACK SYN -
j REJECT --reject-with icmp-port-unreachable
COMMIT
# Completed on Sat Nov 19 10:39:56 2005
[root@localhost rp-pppoe-3.7]# ifconfig
eth0 Link encap:Ethernet HWaddr 00:50:8D:5D:A0:6F
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:34495 errors:0 dropped:0 overruns:0 frame:0
TX packets:135 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:34896408 (33.2 Mb) TX bytes:6791 (6.6 Kb)
Interrupt:11 Base address:0xd000
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:2579 errors:0 dropped:0 overruns:0 frame:0
TX packets:2579 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:175799 (171.6 Kb) TX bytes:175799 (171.6 Kb)
ppp0 Link encap:Point-to-Point Protocol
inet addr:219.144.65.153 P-t-P:219.145.96.193 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1492 Metric:1
RX packets:34 errors:0 dropped:0 overruns:0 frame:0
TX packets:34 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:3
RX bytes:2220 (2.1 Kb) TX bytes:2116 (2.0 Kb)
[root@localhost rp-pppoe-3.7]# ip route
219.145.96.193 dev ppp0 proto kernel scope link src 219.144.65.153
169.254.0.0/16 dev lo scope link
127.0.0.0/8 dev lo scope link
default via 219.145.96.193 dev ppp0
[root@localhost rp-pppoe-3.7]#
[root@localhost rp-pppoe-3.7]#
[ 本帖最后由 platinum 于 2005-11-19 21:19 编辑 ] |
|