Portál AbcLinuxu, 29. prosince 2025 19:04
Chain INPUT (policy DROP)
target prot opt source destination
DROP tcp -- anywhere anywhere tcp dpt:ssh state NEW recent: UPDATE seconds: 60 hit_count: 3 name: DEFAULT side: source
tcp -- anywhere anywhere tcp dpt:ssh state NEW recent: SET name: DEFAULT side: source
DROP tcp -- anywhere anywhere tcp dpt:ssh state NEW recent: UPDATE seconds: 60 hit_count: 3 name: DEFAULT side: source
tcp -- anywhere anywhere tcp dpt:ssh state NEW recent: SET name: DEFAULT side: source
ACCEPT all -- linpro2.corki.info router.corki.info
ACCEPT all -- 192.168.3.0/24 router.corki.info
ACCEPT all -- 192.168.2.0/24 router.corki.info
ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED
ACCEPT all -- 192.168.1.100 router.corki.info
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:http
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:https
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:ssh
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:ftp
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:smtp
ACCEPT all -- anywhere anywhere
Chain FORWARD (policy ACCEPT)
target prot opt source destination
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
Chain PREROUTING (policy DROP)
target prot opt source destination
ACCEPT all -- linproapc.corki.info anywhere MAC 00:13:46:0F:73:70
ACCEPT all -- linpro2.corki.info anywhere MAC 00:E0:4C:13:63:4F
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:smtp
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:ftp
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:ssh
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:http
ACCEPT tcp -- anywhere 192.168.0.3 tcp dpt:https
DNAT tcp -- anywhere anywhere tcp dpt:tproxy to:192.168.2.155:80
DNAT tcp -- anywhere anywhere tcp dpt:webcache to:192.168.1.100:80
DNAT tcp -- anywhere anywhere tcp dpt:8022 to:192.168.2.159:22
ACCEPT tcp -- anywhere 192.168.2.142 multiport sports http,https,smtps,smtp,pop3,pop3s,imap,imaps,5190
ACCEPT tcp -- 192.168.2.142 anywhere multiport dports http,https,smtps,smtp,pop3,pop3s,imap,imaps,5190
DROP all -- anywhere 192.168.2.142
DROP all -- 192.168.2.142 anywhere
ACCEPT all -- 192.168.2.0/24 anywhere
ACCEPT all -- 192.168.1.100 anywhere
Chain POSTROUTING (policy ACCEPT)
target prot opt source destination
MASQUERADE all -- anywhere anywhere
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
Nevíte, kam ho mám dát?
Předem děkuji za odpovědi.
Musí se to dát do FORWARD.
Tiskni
Sdílej:
ISSN 1214-1267, (c) 1999-2007 Stickfish s.r.o.