linux iptables 配置

/etc/sysconfig/iptables

  

#ptables-save v1.4.7 on Thu Mar  2 00:52:21 2017
*filter
:INPUT DROP [0:0]
:FORWARD DROP [0:0]
:OUTPUT ACCEPT [0:0]
-A INPUT -i lo -p all -j ACCEPT
-A OUTPUT -o lo -p all -j ACCEPT
-A INPUT -i eth0 -j ACCEPT

# system default
-A INPUT -p tcp -m tcp --dport 2306 -j ACCEPT
-A OUTPUT -p tcp -mtcp --sport 2306 -j ACCEPT

-A INPUT -p tcp -m tcp --dport 443 -j ACCEPT
-A OUTPUT -p tcp -mtcp --sport 443 -j ACCEPT

-A INPUT -p udp -m udp --dport 53 -j ACCEPT
-A OUTPUT -p udp -m udp --sport 53 -j ACCEPT

-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 80 -j ACCEPT

#---------------------------------------
# proxy for 10. hlyun v1.0 configure
#---------------------------------------
-A INPUT -p tcp -m tcp --dport 8100 -j ACCEPT
-A OUTPUT -p tcp -m tcp --sport 8100 -j ACCEPT

  

posted @ 2021-05-10 10:42  佚小名  阅读(49)  评论(0编辑  收藏  举报