Вот, люди, наслаждайтесь:
Chain INPUT (policy DROP)
target prot opt source destination
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 192.168.1.0/24 0.0.0.0/0
drop-and-log-it all -- 192.168.1.0/24 0.0.0.0/0
ACCEPT icmp -- 0.0.0.0/0 62.65.204.36
ACCEPT all -- 0.0.0.0/0 62.65.204.36 state
RELATED,ESTABLISHED
ACCEPT tcp -- 0.0.0.0/0 62.65.204.36 state
NEW,RELATED,ESTABLISHED tcp dpt:80
ACCEPT tcp -- 0.0.0.0/0 62.65.204.36 tcp
spts:1024:65535 dpt:21
ACCEPT tcp -- 0.0.0.0/0 0.0.0.0/0 state
NEW,RELATED,ESTABLISHED tcp dpt:6346
ACCEPT tcp -- 0.0.0.0/0 192.168.1.0/24 state
NEW,RELATED,ESTABLISHED tcp dpt:25
drop-and-log-it all -- 0.0.0.0/0 0.0.0.0/0
Chain FORWARD (policy DROP)
target prot opt source destination
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0 state
RELATED,ESTABLISHED
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0
drop-and-log-it all -- 0.0.0.0/0 0.0.0.0/0
Chain OUTPUT (policy DROP)
target prot opt source destination
ACCEPT tcp -- 62.65.204.36 0.0.0.0/0 tcp
spts:1024:65535 dpt:21 state NEW
ACCEPT tcp -- 62.65.204.36 0.0.0.0/0 tcp spt:21
dpts:1024:65535
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 62.65.204.36 192.168.1.0/24
ACCEPT all -- 192.168.1.0/24 192.168.1.0/24
drop-and-log-it all -- 0.0.0.0/0 192.168.1.0/24
ACCEPT all -- 62.65.204.36 0.0.0.0/0
drop-and-log-it all -- 0.0.0.0/0 0.0.0.0/0
Chain drop-and-log-it (5 references)
target prot opt source destination
LOG all -- 0.0.0.0/0 0.0.0.0/0 LOG flags 0
level 7
DROP all -- 0.0.0.0/0 0.0.0.0/0
Vasiliy 'Druid' Misharev wrote:
не, iptables -L -n
--
Andrei Sosnin
http://zzx.ath.cx
<!-- : it all depends on your vision : -->