Heb even een uitdraai gemaakt van de IP tables.
[root@mail 20080402]# iptables -nvL
Chain INPUT (policy DROP 174 packets, 20648 bytes)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp -- * * 192.168.1.1 0.0.0.0/0 tcp flags:!0x16/0x02
3401 375K ACCEPT udp -- * * 192.168.1.1 0.0.0.0/0
19 977 ACCEPT 47 -- eth1 * 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT tcp -- eth1 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:1723
0 0 ACCEPT all -- ppp+ * 0.0.0.0/0 0.0.0.0/0
2379 457K ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
26 2148 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 10/sec burst 5
5 1650 DROP all -- eth1 * 0.0.0.0/0 255.255.255.255
46 7151 DROP all -- * * 0.0.0.0/0 192.168.1.255
0 0 DROP all -- * * 224.0.0.0/8 0.0.0.0/0
27 756 DROP all -- * * 0.0.0.0/0 224.0.0.0/8
0 0 DROP all -- * * 255.255.255.255 0.0.0.0/0
0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0
194 7760 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
0 0 LSI all -f * * 0.0.0.0/0 0.0.0.0/0 limit: avg 10/min burst 5
3068 443K INBOUND all -- eth1 * 0.0.0.0/0 0.0.0.0/0
28325 4834K INBOUND all -- eth0 * 0.0.0.0/0 192.168.0.1
0 0 INBOUND all -- eth0 * 0.0.0.0/0 192.168.1.10
657 95476 INBOUND all -- eth0 * 0.0.0.0/0 192.168.0.255
136 18900 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
136 18900 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Unknown Input'
0 0 ACCEPT tcp -- eth1 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:1723
0 0 ACCEPT 47 -- eth1 * 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:1723
0 0 ACCEPT 47 -- eth0 * 0.0.0.0/0 0.0.0.0/0
Chain FORWARD (policy DROP 14 packets, 15034 bytes)
pkts bytes target prot opt in out source destination
0 0 ACCEPT all -- ppp+ eth0 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT all -- eth0 ppp+ 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT all -- eth1 ppp+ 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT all -- ppp+ eth1 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT tcp -- eth1 eth0 81.23.228.150 0.0.0.0/0 tcp dpt:5060
0 0 ACCEPT udp -- eth1 eth0 81.23.228.150 0.0.0.0/0 udp dpt:5060
0 0 ACCEPT tcp -- eth1 * 85.145.121.172 192.168.0.227 tcp dpt:1337
0 0 ACCEPT udp -- eth1 * 85.145.121.172 192.168.0.227 udp dpt:1337
0 0 ACCEPT tcp -- eth1 * 62.131.128.109 192.168.0.233 tcp dpt:1723
0 0 ACCEPT udp -- eth1 * 62.131.128.109 192.168.0.233 udp dpt:1723
0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 10/sec burst 5
2329 111K TCPMSS tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x06/0x02 TCPMSS clamp to PMTU
0 0 ACCEPT tcp -- eth1 * 0.0.0.0/0 192.168.0.242 tcp dpt:5901
0 0 ACCEPT udp -- eth1 * 0.0.0.0/0 192.168.0.242 udp dpt:5901
108K 7352K OUTBOUND all -- eth0 * 0.0.0.0/0 0.0.0.0/0
158K 208M ACCEPT tcp -- * * 0.0.0.0/0 192.168.0.0/24 state RELATED,ESTABLISHED
210 26674 ACCEPT udp -- * * 0.0.0.0/0 192.168.0.0/24 state RELATED,ESTABLISHED
0 0 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Unknown Forward'
Chain OUTPUT (policy DROP 3 packets, 120 bytes)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp -- * * 192.168.1.10 192.168.1.1 tcp dpt:53
3288 223K ACCEPT udp -- * * 192.168.1.10 192.168.1.1 udp dpt:53
0 0 ACCEPT 47 -- * eth1 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT tcp -- * eth1 0.0.0.0/0 0.0.0.0/0 tcp spt:1723
0 0 ACCEPT all -- * ppp+ 0.0.0.0/0 0.0.0.0/0
2379 457K ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0
0 0 DROP all -- * * 224.0.0.0/8 0.0.0.0/0
0 0 DROP all -- * * 0.0.0.0/0 224.0.0.0/8
0 0 DROP all -- * * 255.255.255.255 0.0.0.0/0
0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0
23 3220 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
3823 1612K OUTBOUND all -- * eth1 0.0.0.0/0 0.0.0.0/0
46044 34M OUTBOUND all -- * eth0 0.0.0.0/0 0.0.0.0/0
0 0 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Unknown Output'
0 0 ACCEPT tcp -- * eth1 0.0.0.0/0 0.0.0.0/0 tcp dpt:1723
0 0 ACCEPT 47 -- * eth1 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT tcp -- * eth0 0.0.0.0/0 0.0.0.0/0 tcp dpt:1723
0 0 ACCEPT 47 -- * eth0 0.0.0.0/0 0.0.0.0/0
Chain INBOUND (4 references)
pkts bytes target prot opt in out source destination
30578 5212K ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
142 20740 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT all -- * * 62.221.201.249 0.0.0.0/0
0 0 ACCEPT all -- * * 83.116.191.166 0.0.0.0/0
0 0 ACCEPT all -- * * 82.72.243.186 0.0.0.0/0
0 0 ACCEPT all -- * * 192.168.0.160 0.0.0.0/0
0 0 ACCEPT all -- * * 192.168.0.150 0.0.0.0/0
0 0 ACCEPT all -- * * 83.98.234.93 0.0.0.0/0
0 0 ACCEPT all -- * * 192.168.0.40 0.0.0.0/0
0 0 ACCEPT all -- * * 192.168.0.242 0.0.0.0/0
0 0 ACCEPT all -- * * 81.23.228.150 0.0.0.0/0
1162 124K ACCEPT all -- * * 192.168.0.0/24 0.0.0.0/0
0 0 ACCEPT all -- * * 85.145.121.172 0.0.0.0/0
0 0 ACCEPT all -- * * 82.75.35.3 0.0.0.0/0
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpts:137:139
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpts:137:139
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:445
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:445
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:22
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:22
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpts:67:68
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpts:67:68
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:5901
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:5901
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:53
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:53
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpts:5901:5905
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpts:5901:5905
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpts:5801:5805
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpts:5801:5805
0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:34571
0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:34571
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:443
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:443
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:901
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:901
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:111
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:111
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:2049
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:2049
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:143
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:143
12 624 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:993
0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:993
42 1936 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:25
0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:25
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:236
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:236
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:110
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:110
0 0 ACCEPT tcp -- * * 192.168.0.0/24 0.0.0.0/0 tcp dpt:21
0 0 ACCEPT udp -- * * 192.168.0.0/24 0.0.0.0/0 udp dpt:21
6 264 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:80
108 13176 LSI all -- * * 0.0.0.0/0 0.0.0.0/0
Chain LOG_FILTER (5 references)
pkts bytes target prot opt in out source destination
0 0 DROP all -- * * 217.121.84.60 0.0.0.0/0
0 0 DROP all -- * * 83.98.235.121 0.0.0.0/0
0 0 DROP all -- * * 69.43.160.75 0.0.0.0/0
0 0 DROP all -- * * 69.43.160.75 0.0.0.0/0
0 0 DROP all -- * * 199.91.33.184 0.0.0.0/0
0 0 DROP all -- * * 131.173.17.77 0.0.0.0/0
0 0 DROP all -- * * 122.162.210.130 0.0.0.0/0
0 0 DROP all -- * * 12.96.207.6 0.0.0.0/0
0 0 DROP all -- * * 133.33.1.8 0.0.0.0/0
0 0 DROP all -- * * 198.103.96.14 0.0.0.0/0
0 0 DROP all -- * * 169.232.48.137 0.0.0.0/0
0 0 DROP all -- * * 158.36.186.9 0.0.0.0/0
0 0 DROP all -- * * 194.165.92.10 0.0.0.0/0
0 0 DROP all -- * * 194.2.123.13 0.0.0.0/0
0 0 DROP all -- * * 200.91.218.211 0.0.0.0/0
0 0 DROP all -- * * 202.110.222.242 0.0.0.0/0
0 0 DROP all -- * * 203.122.35.129 0.0.0.0/0
0 0 DROP all -- * * 204.210.145.30 0.0.0.0/0
0 0 DROP all -- * * 207.34.78.107 0.0.0.0/0
0 0 DROP all -- * * 208.12.118.2 0.0.0.0/0
0 0 DROP all -- * * 210.75.0.211 0.0.0.0/0
0 0 DROP all -- * * 211.132.186.242 0.0.0.0/0
0 0 DROP all -- * * 212.170.248.219 0.0.0.0/0
0 0 DROP all -- * * 212.199.190.130 0.0.0.0/0
0 0 DROP all -- * * 213.130.122.200 0.0.0.0/0
0 0 DROP all -- * * 216.198.85.114 0.0.0.0/0
0 0 DROP all -- * * 217.10.27.115 0.0.0.0/0
0 0 DROP all -- * * 217.193.138.195 0.0.0.0/0
0 0 DROP all -- * * 62.109.178.2 0.0.0.0/0
0 0 DROP all -- * * 64.238.113.91 0.0.0.0/0
0 0 DROP all -- * * 65.209.44.89 0.0.0.0/0
0 0 DROP all -- * * 66.161.87.113 0.0.0.0/0
0 0 DROP all -- * * 67.103.169.74 0.0.0.0/0
0 0 DROP all -- * * 68.74.16.217 0.0.0.0/0
0 0 DROP all -- * * 70.89.134.177 0.0.0.0/0
0 0 DROP all -- * * 70.91.73.145 0.0.0.0/0
0 0 DROP all -- * * 71.166.168.51 0.0.0.0/0
0 0 DROP all -- * * 87.237.113.3 0.0.0.0/0
Chain LSI (2 references)
pkts bytes target prot opt in out source destination
108 13176 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x16/0x02 limit: avg 1/sec burst 5 LOG flags 0 level 6 prefix `Inbound '
0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x16/0x02
0 0 LOG tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x17/0x04 limit: avg 1/sec burst 5 LOG flags 0 level 6 prefix `Inbound '
0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x17/0x04
0 0 LOG icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 8 limit: avg 1/sec burst 5 LOG flags 0 level 6 prefix `Inbound '
0 0 DROP icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 8
108 13176 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 5/sec burst 5 LOG flags 0 level 6 prefix `Inbound '
108 13176 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
Chain LSO (11 references)
pkts bytes target prot opt in out source destination
0 0 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 5/sec burst 5 LOG flags 0 level 6 prefix `Outbound '
0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
Chain OUTBOUND (3 references)
pkts bytes target prot opt in out source destination
123 13087 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
156K 43M ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
256 25633 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 LSO all -- * * 0.0.0.0/0 217.121.84.60
0 0 LSO all -- * * 0.0.0.0/0 213.199.154.62
0 0 LSO all -- * * 0.0.0.0/0 213.239.143.148
0 0 LSO all -- * * 0.0.0.0/0 87.233.8.66
0 0 LSO all -- * * 0.0.0.0/0 217.114.11.226
0 0 LSO all -- * * 0.0.0.0/0 217.114.110.226
0 0 LSO all -- * * 0.0.0.0/0 217.198.198.7
0 0 LSO all -- * * 0.0.0.0/0 203.22.204.75
0 0 LSO all -- * * 0.0.0.0/0 207.46.6.127
0 0 LSO tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:6881
0 0 LSO udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:6881
1788 106K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
[
Voor 26% gewijzigd door
R3dJ3 op 04-04-2008 11:01
]