linux防火墙

*filter
:INPUT DROP [0:0]
:FORWARD DROP [0:0]
:OUTPUT ACCEPT [0:0]

# Keep state.
-A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT

-A INPUT -p tcp -m multiport --dport 80,21,22,3690,8080 -j ACCEPT
-A INPUT -m state --state NEW -m tcp -p tcp --dport 30000:50000 -j ACCEPT
# Loop device.
-A INPUT -i lo -j ACCEPT
COMMIT
~
posted @ 2015-01-08 16:09  上官伟斌  阅读(122)  评论(0)    收藏  举报