Shorewall 3.4.4 Dump at gw - Do 7. Jul 22:53:45 CEST 2011

Counters reset Do 7. Jul 22:17:36 CEST 2011

Chain INPUT (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 ACCEPT     0    --  lo     *       0.0.0.0/0            0.0.0.0/0           
 480K  399M eth1_in    0    --  eth1   *       0.0.0.0/0            0.0.0.0/0           
  454 86859 eth0_in    0    --  eth0   *       0.0.0.0/0            0.0.0.0/0           
96391 4590K tun_in     0    --  tun+   *       0.0.0.0/0            0.0.0.0/0           
    0     0 Reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:INPUT:REJECT:' 
    0     0 reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain FORWARD (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source               destination         
  648  250K eth1_fwd   0    --  eth1   *       0.0.0.0/0            0.0.0.0/0           
 264K   18M eth0_fwd   0    --  eth0   *       0.0.0.0/0            0.0.0.0/0           
 383K  437M tun_fwd    0    --  tun+   *       0.0.0.0/0            0.0.0.0/0           
    0     0 Reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:FORWARD:REJECT:' 
    0     0 reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain OUTPUT (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 ACCEPT     0    --  *      lo      0.0.0.0/0            0.0.0.0/0           
 375K  109M eth1_out   0    --  *      eth1    0.0.0.0/0            0.0.0.0/0           
  104 12368 eth0_out   0    --  *      eth0    0.0.0.0/0            0.0.0.0/0           
 111K   89M tun_out    0    --  *      tun+    0.0.0.0/0            0.0.0.0/0           
    0     0 Reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:OUTPUT:REJECT:' 
    0     0 reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain Drop (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 reject     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpt:113 
   75  5121 dropBcast  0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           icmp type 3 code 4 
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           icmp type 11 
   25  1468 dropInvalid  0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0           multiport dports 135,445 
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp dpts:137:139 
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp spt:137 dpts:1024:65535 
    7   404 DROP       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           multiport dports 135,139,445 
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp dpt:1900 
    2    80 dropNotSyn  tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp spt:53 

Chain Reject (4 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 reject     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpt:113 
    0     0 dropBcast  0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           icmp type 3 code 4 
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           icmp type 11 
    0     0 dropInvalid  0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 reject     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           multiport dports 135,445 
    0     0 reject     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp dpts:137:139 
    0     0 reject     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp spt:137 dpts:1024:65535 
    0     0 reject     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           multiport dports 135,139,445 
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp dpt:1900 
    0     0 dropNotSyn  tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp spt:53 

Chain all2all (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 Reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:all2all:REJECT:' 
    0     0 reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain dropBcast (2 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           PKTTYPE = broadcast 
   50  3653 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           PKTTYPE = multicast 

Chain dropInvalid (2 references)
 pkts bytes target     prot opt in     out     source               destination         
   10   408 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID 

Chain dropNotSyn (2 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp flags:!0x17/0x02 

Chain dynamic (6 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain eth0_fwd (1 references)
 pkts bytes target     prot opt in     out     source               destination         
  295 23748 dynamic    0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
  295 23748 smurfs     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
 264K   18M tcpflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
  755 79868 loc2net    0    --  *      eth1    0.0.0.0/0            0.0.0.0/0           
 264K   17M loc2road   0    --  *      tun+    0.0.0.0/0            0.0.0.0/0           

Chain eth0_in (1 references)
 pkts bytes target     prot opt in     out     source               destination         
  413 83471 dynamic    0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
  413 83471 smurfs     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
    0     0 tcpflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
  454 86859 loc2fw     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain eth0_out (1 references)
 pkts bytes target     prot opt in     out     source               destination         
  104 12368 fw2loc     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain eth1_fwd (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 dynamic    0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
    0     0 smurfs     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
    0     0 norfc1918  0    --  *      *       0.0.0.0/0            0.0.0.0/0           state NEW 
  469  233K tcpflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
  648  250K net2loc    0    --  *      eth0    0.0.0.0/0            0.0.0.0/0           
    0     0 net2road   0    --  *      tun+    0.0.0.0/0            0.0.0.0/0           

Chain eth1_in (1 references)
 pkts bytes target     prot opt in     out     source               destination         
  284 73805 dynamic    0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
  284 73805 smurfs     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
  274 73397 norfc1918  0    --  *      *       0.0.0.0/0            0.0.0.0/0           state NEW 
   42 14504 tcpflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
 480K  399M net2fw     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain eth1_out (1 references)
 pkts bytes target     prot opt in     out     source               destination         
 375K  109M fw2net     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain fw2loc (1 references)
 pkts bytes target     prot opt in     out     source               destination         
   12  4412 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
   92  7956 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain fw2net (1 references)
 pkts bytes target     prot opt in     out     source               destination         
 374K  109M ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           
    3   180 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpt:80 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp spt:1194 
  157 12055 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain fw2road (1 references)
 pkts bytes target     prot opt in     out     source               destination         
 111K   89M ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain loc2fw (1 references)
 pkts bytes target     prot opt in     out     source               destination         
   41  3388 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
  413 83471 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp dpt:53 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpt:53 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpt:21 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain loc2net (1 references)
 pkts bytes target     prot opt in     out     source               destination         
  460 56120 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
   61  2977 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
  234 20771 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpt:21 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain loc2road (1 references)
 pkts bytes target     prot opt in     out     source               destination         
 264K   17M ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpt:21 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain logdrop (0 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:logdrop:DROP:' 
    0     0 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain logflags (5 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:logflags:DROP:' 
    0     0 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain logreject (0 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:logreject:REJECT:' 
    0     0 reject     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain net2all (3 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
   75  5121 Drop       0    --  *      *       0.0.0.0/0            0.0.0.0/0           
    8   656 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:net2all:DROP:' 
    8   656 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain net2fw (1 references)
 pkts bytes target     prot opt in     out     source               destination         
 480K  399M ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpt:22 limit: avg 3/min burst 5 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           udp dpt:1194 
   75  5121 net2all    0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain net2loc (1 references)
 pkts bytes target     prot opt in     out     source               destination         
  648  250K ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 net2all    0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain net2road (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 net2all    0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain norfc1918 (2 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 rfc1918    0    --  *      *       172.16.0.0/12        0.0.0.0/0           
    0     0 rfc1918    0    --  *      *       0.0.0.0/0            0.0.0.0/0           ctorigdst 172.16.0.0/12 
    0     0 rfc1918    0    --  *      *       192.168.0.0/16       0.0.0.0/0           
    0     0 rfc1918    0    --  *      *       0.0.0.0/0            0.0.0.0/0           ctorigdst 192.168.0.0/16 
  209 68684 rfc1918    0    --  *      *       10.0.0.0/8           0.0.0.0/0           
    0     0 rfc1918    0    --  *      *       0.0.0.0/0            0.0.0.0/0           ctorigdst 10.0.0.0/8 

Chain reject (11 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           PKTTYPE = broadcast 
    0     0 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           PKTTYPE = multicast 
    0     0 DROP       0    --  *      *       255.255.255.255      0.0.0.0/0           
    0     0 DROP       0    --  *      *       224.0.0.0/4          0.0.0.0/0           
    0     0 REJECT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           reject-with tcp-reset 
    0     0 REJECT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0           reject-with icmp-port-unreachable 
    0     0 REJECT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           reject-with icmp-host-unreachable 
    0     0 REJECT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           reject-with icmp-host-prohibited 

Chain rfc1918 (6 references)
 pkts bytes target     prot opt in     out     source               destination         
  209 68684 LOG        0    --  *      *       0.0.0.0/0            0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:rfc1918:DROP:' 
  209 68684 DROP       0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain road2fw (1 references)
 pkts bytes target     prot opt in     out     source               destination         
96391 4590K ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain road2loc (1 references)
 pkts bytes target     prot opt in     out     source               destination         
 383K  437M ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
   11   756 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain road2net (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 ACCEPT     0    --  *      *       0.0.0.0/0            0.0.0.0/0           state RELATED,ESTABLISHED 
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp dpts:5900:5909 
    0     0 all2all    0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain shorewall (0 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain smurfs (4 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 LOG        0    --  *      *       91.89.103.255        0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:smurfs:DROP:' 
    0     0 DROP       0    --  *      *       91.89.103.255        0.0.0.0/0           
    0     0 LOG        0    --  *      *       192.100.100.255      0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:smurfs:DROP:' 
    0     0 DROP       0    --  *      *       192.100.100.255      0.0.0.0/0           
    0     0 LOG        0    --  *      *       255.255.255.255      0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:smurfs:DROP:' 
    0     0 DROP       0    --  *      *       255.255.255.255      0.0.0.0/0           
    0     0 LOG        0    --  *      *       224.0.0.0/4          0.0.0.0/0           LOG flags 0 level 6 prefix `Shorewall:smurfs:DROP:' 
    0     0 DROP       0    --  *      *       224.0.0.0/4          0.0.0.0/0           

Chain tcpflags (4 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp flags:0x3F/0x29 
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp flags:0x3F/0x00 
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp flags:0x06/0x06 
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp flags:0x03/0x03 
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp spt:0 flags:0x17/0x02 

Chain tun_fwd (1 references)
 pkts bytes target     prot opt in     out     source               destination         
   11   756 dynamic    0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
    0     0 road2net   0    --  *      eth1    0.0.0.0/0            0.0.0.0/0           
 383K  437M road2loc   0    --  *      eth0    0.0.0.0/0            0.0.0.0/0           

Chain tun_in (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 dynamic    0    --  *      *       0.0.0.0/0            0.0.0.0/0           state INVALID,NEW 
96391 4590K road2fw    0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain tun_out (1 references)
 pkts bytes target     prot opt in     out     source               destination         
 111K   89M fw2road    0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Log (/var/log/messages)

Jul  7 22:51:50 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=350 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=330 
Jul  7 22:51:51 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=350 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=330 
Jul  7 22:51:59 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:51:59 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:52:31 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:52:31 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:52:43 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:52:43 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:52:46 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:52:46 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:17 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:17 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:24 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:24 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:26 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:26 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:33 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:33 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:39 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 
Jul  7 22:53:39 rfc1918:DROP:IN=eth1 OUT= SRC=10.115.128.1 DST=255.255.255.255 LEN=328 TOS=0x00 PREC=0x00 TTL=64 ID=0 PROTO=UDP SPT=67 DPT=68 LEN=308 

NAT Table

Chain PREROUTING (policy ACCEPT 563 packets, 105K bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain POSTROUTING (policy ACCEPT 101 packets, 8976 bytes)
 pkts bytes target     prot opt in     out     source               destination         
  300 23173 eth1_masq  0    --  *      eth1    0.0.0.0/0            0.0.0.0/0           

Chain OUTPUT (policy ACCEPT 97 packets, 8736 bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain eth1_masq (1 references)
 pkts bytes target     prot opt in     out     source               destination         
  248 18959 MASQUERADE  0    --  *      *       192.100.100.0/24     0.0.0.0/0           

Mangle Table

Chain PREROUTING (policy ACCEPT 1226K packets, 859M bytes)
 pkts bytes target     prot opt in     out     source               destination         
1226K  859M tcpre      0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain INPUT (policy ACCEPT 577K packets, 404M bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain FORWARD (policy ACCEPT 649K packets, 455M bytes)
 pkts bytes target     prot opt in     out     source               destination         
 649K  455M tcfor      0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain OUTPUT (policy ACCEPT 1362K packets, 620M bytes)
 pkts bytes target     prot opt in     out     source               destination         
 486K  198M tcout      0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain POSTROUTING (policy ACCEPT 1134K packets, 653M bytes)
 pkts bytes target     prot opt in     out     source               destination         
1134K  653M tcpost     0    --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain tcfor (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain tcout (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain tcpost (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain tcpre (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Conntrack Table

udp      17 3 src=192.100.100.63 dst=208.67.222.222 sport=56708 dport=53 packets=1 bytes=79 src=208.67.222.222 dst=91.89.103.23 sport=53 dport=56708 packets=1 bytes=272 mark=0 secmark=0 use=1
udp      17 8 src=91.89.103.23 dst=109.193.192.158 sport=32768 dport=53 packets=1 bytes=74 src=109.193.192.158 dst=91.89.103.23 sport=53 dport=32768 packets=1 bytes=159 mark=0 secmark=0 use=1
tcp      6 431999 ESTABLISHED src=10.8.0.22 dst=192.100.100.57 sport=1358 dport=445 packets=731393 bytes=866774368 src=192.100.100.57 dst=10.8.0.22 sport=445 dport=1358 packets=464361 bytes=29594228 [ASSURED] mark=0 secmark=0 use=1
udp      17 5 src=192.100.100.99 dst=255.255.255.255 sport=68 dport=67 packets=1038 bytes=340464 [UNREPLIED] src=255.255.255.255 dst=192.100.100.99 sport=67 dport=68 packets=0 bytes=0 mark=0 secmark=0 use=1
tcp      6 230828 ESTABLISHED src=192.100.100.55 dst=188.163.123.169 sport=1370 dport=29818 packets=50 bytes=6756 src=188.163.123.169 dst=91.89.103.23 sport=29818 dport=1370 packets=57 bytes=9064 [ASSURED] mark=0 secmark=0 use=1
udp      17 162 src=192.100.100.63 dst=192.100.100.1 sport=59228 dport=53 packets=5 bytes=395 src=192.100.100.1 dst=192.100.100.63 sport=53 dport=59228 packets=2 bytes=1028 [ASSURED] mark=0 secmark=0 use=1
tcp      6 431926 ESTABLISHED src=192.100.100.55 dst=213.146.189.201 sport=4309 dport=12350 packets=1023 bytes=44072 src=213.146.189.201 dst=91.89.103.23 sport=12350 dport=4309 packets=521 bytes=23835 [ASSURED] mark=0 secmark=0 use=1
tcp      6 431991 ESTABLISHED src=10.8.0.22 dst=192.100.100.57 sport=1260 dport=5900 packets=32682 bytes=1453892 src=192.100.100.57 dst=10.8.0.22 sport=5900 dport=1260 packets=59567 bytes=4695825 [ASSURED] mark=0 secmark=0 use=1
udp      17 179 src=109.193.252.135 dst=91.89.103.23 sport=59657 dport=1194 packets=1025460 bytes=793147738 src=91.89.103.23 dst=109.193.252.135 sport=1194 dport=59657 packets=811818 bytes=227768898 [ASSURED] mark=0 secmark=0 use=1
tcp      6 431961 ESTABLISHED src=192.100.100.55 dst=95.133.78.178 sport=3379 dport=48088 packets=1252 bytes=178290 src=95.133.78.178 dst=91.89.103.23 sport=48088 dport=3379 packets=1099 bytes=59446 [ASSURED] mark=0 secmark=0 use=1
icmp     1 27 src=10.8.0.22 dst=192.100.100.104 type=8 code=0 id=1024 packets=3 bytes=180 [UNREPLIED] src=192.100.100.104 dst=10.8.0.22 type=0 code=0 id=1024 packets=0 bytes=0 mark=0 secmark=0 use=1
udp      17 2 src=91.89.103.23 dst=91.89.91.89 sport=32768 dport=53 packets=2 bytes=164 [UNREPLIED] src=91.89.91.89 dst=91.89.103.23 sport=53 dport=32768 packets=0 bytes=0 mark=0 secmark=0 use=1
tcp      6 431999 ESTABLISHED src=10.8.0.22 dst=192.100.100.1 sport=1284 dport=5900 packets=261056 bytes=12590477 src=192.100.100.1 dst=10.8.0.22 sport=5900 dport=1284 packets=287942 bytes=183703241 [ASSURED] mark=0 secmark=0 use=1
udp      17 5 src=192.100.100.104 dst=192.100.100.255 sport=138 dport=138 packets=13 bytes=3002 [UNREPLIED] src=192.100.100.255 dst=192.100.100.104 sport=138 dport=138 packets=0 bytes=0 mark=0 secmark=0 use=1
udp      17 12 src=91.89.103.23 dst=204.74.114.1 sport=32768 dport=53 packets=1 bytes=90 src=204.74.114.1 dst=91.89.103.23 sport=53 dport=32768 packets=1 bytes=131 mark=0 secmark=0 use=1
tcp      6 259174 ESTABLISHED src=192.100.100.60 dst=206.204.63.17 sport=2476 dport=443 packets=6 bytes=556 src=206.204.63.17 dst=91.89.103.23 sport=443 dport=2476 packets=6 bytes=3014 [ASSURED] mark=0 secmark=0 use=1
udp      17 28 src=192.100.100.55 dst=70.127.50.2 sport=53799 dport=4966 packets=2 bytes=334 [UNREPLIED] src=70.127.50.2 dst=91.89.103.23 sport=4966 dport=53799 packets=0 bytes=0 mark=0 secmark=0 use=1

IP Configuration

1: lo: <LOOPBACK,UP,10000> mtu 16436 qdisc noqueue 
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet 127.0.0.1/8 scope host lo
    inet6 ::1/128 scope host 
       valid_lft forever preferred_lft forever
2: eth1: <BROADCAST,MULTICAST,UP,10000> mtu 1500 qdisc pfifo_fast qlen 1000
    link/ether 00:0e:2e:2b:7c:f6 brd ff:ff:ff:ff:ff:ff
    inet 91.89.103.23/22 brd 91.89.103.255 scope global eth1
    inet6 fe80::20e:2eff:fe2b:7cf6/64 scope link 
       valid_lft forever preferred_lft forever
3: eth0: <BROADCAST,MULTICAST,UP,10000> mtu 1500 qdisc pfifo_fast qlen 100
    link/ether 00:1a:a0:96:e0:08 brd ff:ff:ff:ff:ff:ff
    inet 192.100.100.1/24 brd 192.100.100.255 scope global eth0
    inet6 fe80::21a:a0ff:fe96:e008/64 scope link 
       valid_lft forever preferred_lft forever
4: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,10000> mtu 1500 qdisc pfifo_fast qlen 100
    link/[65534] 
    inet 10.8.0.1 peer 10.8.0.2/32 scope global tun0

IP Stats

1: lo: <LOOPBACK,UP,10000> mtu 16436 qdisc noqueue 
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    RX: bytes  packets  errors  dropped overrun mcast   
    4256       38       0       0       0       0      
    TX: bytes  packets  errors  dropped carrier collsns 
    4256       38       0       0       0       0      
2: eth1: <BROADCAST,MULTICAST,UP,10000> mtu 1500 qdisc pfifo_fast qlen 1000
    link/ether 00:0e:2e:2b:7c:f6 brd ff:ff:ff:ff:ff:ff
    RX: bytes  packets  errors  dropped overrun mcast   
    2365711932 13172945 0       0       0       0      
    TX: bytes  packets  errors  dropped carrier collsns 
    579927195  1916423  0       0       0       0      
3: eth0: <BROADCAST,MULTICAST,UP,10000> mtu 1500 qdisc pfifo_fast qlen 100
    link/ether 00:1a:a0:96:e0:08 brd ff:ff:ff:ff:ff:ff
    RX: bytes  packets  errors  dropped overrun mcast   
    408487632  1886749  0       0       0       256    
    TX: bytes  packets  errors  dropped carrier collsns 
    1785742453 2104791  0       0       0       0      
4: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,10000> mtu 1500 qdisc pfifo_fast qlen 100
    link/[65534] 
    RX: bytes  packets  errors  dropped overrun mcast   
    901871692  1140117  0       0       0       0      
    TX: bytes  packets  errors  dropped carrier collsns 
    405790859  969444   0       359     0       0      

/proc

   /proc/version = Linux version 2.6.22-14-generic (buildd@terranova) (gcc version 4.1.3 20070929 (prerelease) (Ubuntu 4.1.2-16ubuntu2)) #1 SMP Tue Feb 12 07:42:25 UTC 2008
   /proc/sys/net/ipv4/ip_forward = 1
   /proc/sys/net/ipv4/icmp_echo_ignore_all = 0
   /proc/sys/net/ipv4/conf/all/proxy_arp = 0
   /proc/sys/net/ipv4/conf/all/arp_filter = 0
   /proc/sys/net/ipv4/conf/all/arp_ignore = 0
   /proc/sys/net/ipv4/conf/all/rp_filter = 1
   /proc/sys/net/ipv4/conf/all/log_martians = 0
   /proc/sys/net/ipv4/conf/default/proxy_arp = 0
   /proc/sys/net/ipv4/conf/default/arp_filter = 0
   /proc/sys/net/ipv4/conf/default/arp_ignore = 0
   /proc/sys/net/ipv4/conf/default/rp_filter = 1
   /proc/sys/net/ipv4/conf/default/log_martians = 0
   /proc/sys/net/ipv4/conf/eth0/proxy_arp = 0
   /proc/sys/net/ipv4/conf/eth0/arp_filter = 0
   /proc/sys/net/ipv4/conf/eth0/arp_ignore = 0
   /proc/sys/net/ipv4/conf/eth0/rp_filter = 1
   /proc/sys/net/ipv4/conf/eth0/log_martians = 1
   /proc/sys/net/ipv4/conf/eth1/proxy_arp = 0
   /proc/sys/net/ipv4/conf/eth1/arp_filter = 0
   /proc/sys/net/ipv4/conf/eth1/arp_ignore = 0
   /proc/sys/net/ipv4/conf/eth1/rp_filter = 1
   /proc/sys/net/ipv4/conf/eth1/log_martians = 1
   /proc/sys/net/ipv4/conf/lo/proxy_arp = 0
   /proc/sys/net/ipv4/conf/lo/arp_filter = 0
   /proc/sys/net/ipv4/conf/lo/arp_ignore = 0
   /proc/sys/net/ipv4/conf/lo/rp_filter = 1
   /proc/sys/net/ipv4/conf/lo/log_martians = 0
   /proc/sys/net/ipv4/conf/tun0/proxy_arp = 0
   /proc/sys/net/ipv4/conf/tun0/arp_filter = 0
   /proc/sys/net/ipv4/conf/tun0/arp_ignore = 0
   /proc/sys/net/ipv4/conf/tun0/rp_filter = 1
   /proc/sys/net/ipv4/conf/tun0/log_martians = 0

Routing Rules

0:	from all lookup local 
32766:	from all lookup main 
32767:	from all lookup default 

Table default:


Table local:

broadcast 127.255.255.255 dev lo  proto kernel  scope link  src 127.0.0.1 
broadcast 91.89.100.0 dev eth1  proto kernel  scope link  src 91.89.103.23 
broadcast 91.89.103.255 dev eth1  proto kernel  scope link  src 91.89.103.23 
local 10.8.0.1 dev tun0  proto kernel  scope host  src 10.8.0.1 
broadcast 192.100.100.0 dev eth0  proto kernel  scope link  src 192.100.100.1 
local 192.100.100.1 dev eth0  proto kernel  scope host  src 192.100.100.1 
broadcast 192.100.100.255 dev eth0  proto kernel  scope link  src 192.100.100.1 
local 91.89.103.23 dev eth1  proto kernel  scope host  src 91.89.103.23 
broadcast 127.0.0.0 dev lo  proto kernel  scope link  src 127.0.0.1 
local 127.0.0.1 dev lo  proto kernel  scope host  src 127.0.0.1 
local 127.0.0.0/8 dev lo  proto kernel  scope host  src 127.0.0.1 

Table main:

10.8.0.2 dev tun0  proto kernel  scope link  src 10.8.0.1 
192.100.100.0/24 dev eth0  proto kernel  scope link  src 192.100.100.1 
10.8.0.0/24 via 10.8.0.2 dev tun0 
91.89.100.0/22 dev eth1  proto kernel  scope link  src 91.89.103.23 
169.254.0.0/16 dev eth0  scope link  metric 1000 
default via 91.89.100.1 dev eth1 

ARP

? (192.100.100.57) auf 00:50:04:EA:06:0F [ether] auf eth0
? (91.89.100.1) auf 00:01:5C:24:5F:C1 [ether] auf eth1
? (192.100.100.62) auf 00:13:20:03:41:23 [ether] auf eth0
? (192.100.100.104) auf 00:02:55:76:B4:E3 [ether] auf eth0
? (192.100.100.55) auf 00:19:D1:4E:BB:C7 [ether] auf eth0
? (192.100.100.63) auf 00:13:20:03:3E:34 [ether] auf eth0

Modules

iptable_filter          3968  1 
iptable_mangle          3840  1 
iptable_nat             8708  1 
iptable_raw             3328  0 
ip_tables              13924  4 iptable_raw,iptable_nat,iptable_mangle,iptable_filter
ipt_addrtype            2816  0 
ipt_ah                  2944  0 
ipt_CLUSTERIP           9988  0 
ipt_ecn                 3200  0 
ipt_ECN                 3968  0 
ipt_iprange             2816  0 
ipt_LOG                 7552  13 
ipt_MASQUERADE          4608  1 
ipt_NETMAP              2944  0 
ipt_owner               2944  0 
ipt_recent             10392  0 
ipt_REDIRECT            2944  0 
ipt_REJECT              5760  4 
ipt_SAME                3328  0 
ipt_tos                 2560  0 
ipt_TOS                 3200  0 
ipt_ttl                 2816  0 
ipt_TTL                 3328  0 
ipt_ULOG                9988  0 
nf_conntrack           65288  29 ipt_MASQUERADE,ipt_CLUSTERIP,nf_nat_tftp,nf_nat_snmp_basic,nf_nat_sip,nf_nat_pptp,nf_nat_irc,nf_nat_h323,nf_nat_ftp,nf_nat_amanda,nf_conntrack_amanda,nf_conntrack_tftp,nf_conntrack_sip,nf_conntrack_proto_sctp,nf_conntrack_pptp,nf_conntrack_proto_gre,nf_conntrack_netlink,nf_conntrack_netbios_ns,nf_conntrack_irc,nf_conntrack_h323,nf_conntrack_ftp,xt_helper,xt_conntrack,xt_CONNMARK,xt_connmark,xt_state,iptable_nat,nf_nat,nf_conntrack_ipv4
nf_conntrack_amanda     6016  1 nf_nat_amanda
nf_conntrack_ftp       11136  1 nf_nat_ftp
nf_conntrack_h323      51804  1 nf_nat_h323
nf_conntrack_ipv4      19724  32 iptable_nat
nf_conntrack_irc        8088  1 nf_nat_irc
nf_conntrack_netbios_ns     3968  0 
nf_conntrack_netlink    27648  0 
nf_conntrack_pptp       8064  1 nf_nat_pptp
nf_conntrack_proto_gre     6912  1 nf_conntrack_pptp
nf_conntrack_proto_sctp     9736  0 
nf_conntrack_sip       10900  1 nf_nat_sip
nf_conntrack_tftp       6676  1 nf_nat_tftp
nf_nat                 20140  14 ipt_SAME,ipt_REDIRECT,ipt_NETMAP,ipt_MASQUERADE,nf_nat_tftp,nf_nat_sip,nf_nat_pptp,nf_nat_proto_gre,nf_nat_irc,nf_nat_h323,nf_nat_ftp,nf_nat_amanda,nf_conntrack_netlink,iptable_nat
nf_nat_amanda           3328  0 
nf_nat_ftp              4352  0 
nf_nat_h323             8704  0 
nf_nat_irc              3712  0 
nf_nat_pptp             4736  0 
nf_nat_proto_gre        3844  1 nf_nat_pptp
nf_nat_sip              5760  0 
nf_nat_snmp_basic      11268  0 
nf_nat_tftp             2816  0 
xt_CLASSIFY             2816  0 
xt_comment              2816  0 
xt_connmark             3200  0 
xt_CONNMARK             4096  0 
xt_conntrack            3840  3 
xt_dccp                 4484  0 
xt_hashlimit           11276  0 
xt_helper               3712  0 
xt_length               2816  0 
xt_limit                3584  1 
xt_mac                  2816  0 
xt_mark                 2816  0 
xt_MARK                 3328  0 
xt_multiport            4224  4 
xt_NFLOG                3072  0 
xt_NFQUEUE              2944  0 
xt_physdev              3600  0 
xt_pkttype              2816  4 
xt_policy               4736  0 
xt_state                3456  27 
xt_tcpmss               3200  0 
xt_tcpudp               4224  37 

Shorewall has detected the following iptables/netfilter capabilities:
   NAT: Available
   Packet Mangling: Available
   Multi-port Match: Available
   Extended Multi-port Match: Available
   Connection Tracking Match: Available
   Packet Type Match: Available
   Policy Match: Available
   Physdev Match: Available
   Packet length Match: Available
   IP range Match: Available
   Recent Match: Available
   Owner Match: Available
   Ipset Match: Not available
   CONNMARK Target: Available
   Extended CONNMARK Target: Available
   Connmark Match: Available
   Extended Connmark Match: Available
   Raw Table: Available
   IPP2P Match: Not available
   CLASSIFY Target: Available
   Extended REJECT: Available
   Repeat match: Available
   MARK Target: Available
   Extended MARK Target: Available
   Mangle FORWARD Chain: Available
   Comments: Available
   Address Type Match: Available
   TCPMSS Match: Available

Traffic Control

Device eth1:
qdisc pfifo_fast 0: root bands 3 priomap  1 2 2 2 1 2 0 0 1 1 1 1 1 1 1 1
 Sent 577741781 bytes 1916449 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 

Device eth0:
qdisc pfifo_fast 0: root bands 3 priomap  1 2 2 2 1 2 0 0 1 1 1 1 1 1 1 1
 Sent 1776273884 bytes 2104967 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 

Device tun0:
qdisc pfifo_fast 0: root bands 3 priomap  1 2 2 2 1 2 0 0 1 1 1 1 1 1 1 1
 Sent 406308160 bytes 969829 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 


TC Filters

Device eth1:

Device eth0:

Device tun0:

