Code: Alles auswählen
router:~# iptables -nvL FORWARD
Chain FORWARD (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
974 463K blocked-ips 0 -- * * 0.0.0.0/0 0.0.0.0/0
86 4108 TCPMSS tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x06/0x02 TCPMSS clamp to PMTU
451 126K ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:80 state NEW,RELATED,ESTABLISHED
453 328K ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:80 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:443 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:443 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:20 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:20 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:21 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:21 state RELATED,ESTABLISHED
5 380 ACCEPT udp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 udp dpt:123 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT udp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 udp spt:123 state RELATED,ESTABLISHED
6 246 ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:5190 state NEW,RELATED,ESTABLISHED
6 790 ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:5190 state RELATED,ESTABLISHED
6 455 ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:50019 state NEW,RELATED,ESTABLISHED
5 357 ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:50019 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:465 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:465 state RELATED,ESTABLISHED
23 1912 ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:993 state NEW,RELATED,ESTABLISHED
19 5239 ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:993 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- eth0 ppp0 10.23.0.0/22 0.0.0.0/0 tcp dpt:11371 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT tcp -- ppp0 eth0 0.0.0.0/0 10.23.0.0/22 tcp spt:11371 state RELATED,ESTABLISHED
0 0 ACCEPT icmp -- eth0 ppp0 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT icmp -- ppp0 eth0 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT 0 -- ppp0 tun1 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- tun1 ppp0 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT 0 -- ppp0 tun0 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- tun0 ppp0 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT 0 -- ppp0 tun2 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT 0 -- tun2 ppp0 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT 0 -- tun0 eth0 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- eth0 tun0 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- tun1 eth0 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- eth0 tun1 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- tun1 tun0 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- tun0 tun1 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- tun0 tun0 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT 0 -- tun0 tun0 0.0.0.0/0 0.0.0.0/0 state NEW,RELATED,ESTABLISHED
0 0 ACCEPT icmp -- eth0 eth1 10.23.0.1 192.168.1.1 state NEW
0 0 ACCEPT icmp -- eth1 eth0 192.168.1.1 10.23.0.1 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- eth0 eth1 10.23.0.1 192.168.1.1 tcp dpt:80
0 0 ACCEPT tcp -- eth1 eth0 192.168.1.1 10.23.0.1 tcp spt:80
0 0 ACCEPT tcp -- eth0 eth1 10.23.0.1 192.168.1.1 tcp dpt:23
0 0 ACCEPT tcp -- eth1 eth0 192.168.1.1 10.23.0.1 tcp spt:23
0 0 ACCEPT icmp -- eth0 tun3 10.23.0.1 10.0.0.0/8 state NEW
0 0 ACCEPT icmp -- tun3 eth0 10.0.0.0/8 10.23.0.1 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- eth0 tun3 10.23.0.1 10.49.88.34 tcp dpt:4899
0 0 ACCEPT tcp -- tun3 eth0 10.49.88.34 10.23.0.1 tcp spt:4899
0 0 ACCEPT tcp -- eth0 tun3 10.23.0.1 10.49.88.34 tcp dpt:3389
0 0 ACCEPT tcp -- tun3 eth0 10.49.88.34 10.23.0.1 tcp spt:3389
0 0 ACCEPT tcp -- * * 0.0.0.0/0 10.23.0.1 tcp dpt:4780
0 0 ACCEPT udp -- * * 0.0.0.0/0 10.23.0.1 udp dpt:4781
0 0 ACCEPT tcp -- * * 0.0.0.0/0 10.23.0.1 tcp dpts:5050:5100
0 0 ACCEPT tcp -- * * 0.0.0.0/0 10.23.0.1 tcp dpt:55555
0 0 ACCEPT udp -- * * 0.0.0.0/0 10.23.0.1 udp dpt:55555
0 0 LOG 0 -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4 prefix `firewall drop (FOR WARD): '
router:~#