iptables -P INPUT DROP
iptables -P FORWARD DROP
iptables -P OUTPUT ACCEPT
+++++++++++++++++++++++++++
iptables -t filter -A INPUT -s 192.168.1.0/24 -j ACCEPT
iptables -F #清空所有规则。
*filter
:INPUT DROP [17:1483]
:FORWARD DROP [0:0]
:OUTPUT ACCEPT [552:348719]
:RH-Firewall-1-INPUT - [0:0]
-A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 21 -j ACCEPT
-A INPUT -p icmp -m icmp --icmp-type 8 -j DROP
-A INPUT -p icmp -m icmp --icmp-type 0 -j ACCEPT
#-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
-A INPUT -s 192.168.1.71 -p tcp -m tcp --dport 80 -j DROP
-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
-A INPUT -s 192.168.1.0/255.255.255.0 -p tcp -m tcp --dport 22 -j ACCEPT
-A OUTPUT -s 192.168.1.244 -p icmp -m icmp --icmp-type 8 -j ACCEPT
-A OUTPUT -s 192.168.1.244 -p icmp -m icmp --icmp-type 0 -j DROP
-A OUTPUT -p prm -j ACCEPT
COMMIT
# Completed on Sat Oct 7 21:33:42 2006
阅读(928) | 评论(0) | 转发(0) |