[ create a new paste ] login | about

Link: http://codepad.org/vIi9PGvZ    [ raw code | fork ]

Plain Text, pasted on Oct 19:
*filter
:INPUT   DROP [0:0]
:OUTPUT  ACCEPT [0:0]
:FORWARD DROP [0:0]


-A INPUT -i lo -j ACCEPT


-A INPUT -i tun+ -j ACCEPT


-A INPUT -p icmp -j ACCEPT


-A INPUT -p udp --sport 53 -j ACCEPT


-A INPUT -p tcp --sport 22 -j ACCEPT


-A INPUT -p tcp --dport 4062 -s 192.168.1.0/24 -j ACCEPT
-A INPUT -p tcp --dport 4062 -s 10.8.23.0/24   -j ACCEPT

-A INPUT -p tcp --sport 7071 -s 192.168.1.0/24 -j ACCEPT


-A INPUT -p tcp -m multiport --sports 20,21 -j ACCEPT
-A INPUT -p tcp -m state --state ESTABLISHED,RELATED --sport 1024: --dport 1024: -j ACCEPT


-A INPUT -p tcp -m multiport --sports 80,443 -j ACCEPT


-A INPUT -p udp --sport 123 -j ACCEPT


-A INPUT -p tcp --sport 9418 -j ACCEPT


-A INPUT -p tcp -m multiport --sports 6667,7070 -j ACCEPT


-A INPUT -p tcp --dport 17500 -j ACCEPT
-A INPUT -p udp --dport 17500 -j ACCEPT


-A INPUT -p tcp --sport 110 -j ACCEPT
-A INPUT -p tcp --sport 995 -j ACCEPT


-A INPUT -p tcp --sport 587 -j ACCEPT


-A INPUT -p udp --sport 5896 -j ACCEPT


-A INPUT -p tcp --sport 8080 -j ACCEPT
-A INPUT -p tcp --dport 8080 -j ACCEPT


-A INPUT -p tcp -m multiport --dports 4062 -m limit --limit 25/minute --limit-burst 100 -j ACCEPT

COMMIT


Create a new paste based on this one


Comments: