Skip to content

Instantly share code, notes, and snippets.

Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save BrainStone/701018096ff8c86258c4d5772443bf5f to your computer and use it in GitHub Desktop.
Save BrainStone/701018096ff8c86258c4d5772443bf5f to your computer and use it in GitHub Desktop.
Chain INPUT (policy ACCEPT)
target prot opt source destination
DROP tcp -- !149.20.86.177 0.0.0.0/0 tcp dpts:20000:20199
f2b-sshd-month tcp -- 0.0.0.0/0 0.0.0.0/0 multiport dports 22
f2b-sshd-week tcp -- 0.0.0.0/0 0.0.0.0/0 multiport dports 22
f2b-sshd tcp -- 0.0.0.0/0 0.0.0.0/0 multiport dports 22
DROP tcp -- !149.20.86.177 0.0.0.0/0 tcp dpts:20000:20199
ufw-before-logging-input all -- 0.0.0.0/0 0.0.0.0/0
ufw-before-input all -- 0.0.0.0/0 0.0.0.0/0
ufw-after-input all -- 0.0.0.0/0 0.0.0.0/0
ufw-after-logging-input all -- 0.0.0.0/0 0.0.0.0/0
ufw-reject-input all -- 0.0.0.0/0 0.0.0.0/0
ufw-track-input all -- 0.0.0.0/0 0.0.0.0/0
Chain FORWARD (policy ACCEPT)
target prot opt source destination
DOCKER-USER all -- 0.0.0.0/0 0.0.0.0/0
DOCKER-ISOLATION-STAGE-1 all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
DOCKER all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
DOCKER all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0
ufw-before-logging-forward all -- 0.0.0.0/0 0.0.0.0/0
ufw-before-forward all -- 0.0.0.0/0 0.0.0.0/0
ufw-after-forward all -- 0.0.0.0/0 0.0.0.0/0
ufw-after-logging-forward all -- 0.0.0.0/0 0.0.0.0/0
ufw-reject-forward all -- 0.0.0.0/0 0.0.0.0/0
ufw-track-forward all -- 0.0.0.0/0 0.0.0.0/0
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
ufw-before-logging-output all -- 0.0.0.0/0 0.0.0.0/0
ufw-before-output all -- 0.0.0.0/0 0.0.0.0/0
ufw-after-output all -- 0.0.0.0/0 0.0.0.0/0
ufw-after-logging-output all -- 0.0.0.0/0 0.0.0.0/0
ufw-reject-output all -- 0.0.0.0/0 0.0.0.0/0
ufw-track-output all -- 0.0.0.0/0 0.0.0.0/0
Chain DOCKER (2 references)
target prot opt source destination
ACCEPT tcp -- 0.0.0.0/0 172.18.0.3 tcp dpt:20121
ACCEPT udp -- 0.0.0.0/0 172.18.0.3 udp dpt:20121
ACCEPT tcp -- 0.0.0.0/0 172.18.0.3 tcp dpt:20021
ACCEPT udp -- 0.0.0.0/0 172.18.0.3 udp dpt:20021
ACCEPT tcp -- 0.0.0.0/0 172.18.0.2 tcp dpt:20120
ACCEPT udp -- 0.0.0.0/0 172.18.0.2 udp dpt:20120
ACCEPT tcp -- 0.0.0.0/0 172.18.0.2 tcp dpt:20020
ACCEPT udp -- 0.0.0.0/0 172.18.0.2 udp dpt:20020
Chain DOCKER-ISOLATION-STAGE-1 (1 references)
target prot opt source destination
DOCKER-ISOLATION-STAGE-2 all -- 0.0.0.0/0 0.0.0.0/0
DOCKER-ISOLATION-STAGE-2 all -- 0.0.0.0/0 0.0.0.0/0
RETURN all -- 0.0.0.0/0 0.0.0.0/0
Chain DOCKER-ISOLATION-STAGE-2 (2 references)
target prot opt source destination
DROP all -- 0.0.0.0/0 0.0.0.0/0
DROP all -- 0.0.0.0/0 0.0.0.0/0
RETURN all -- 0.0.0.0/0 0.0.0.0/0
Chain DOCKER-USER (1 references)
target prot opt source destination
RETURN all -- 0.0.0.0/0 0.0.0.0/0
Chain f2b-sshd (1 references)
target prot opt source destination
RETURN all -- 0.0.0.0/0 0.0.0.0/0
Chain f2b-sshd-month (1 references)
target prot opt source destination
REJECT all -- 42.7.26.91 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 5.188.203.113 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 151.80.85.121 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 149.202.30.27 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 193.201.224.208 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 58.242.83.36 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 42.7.26.16 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 54.37.67.113 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 51.255.83.104 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 193.201.224.109 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 42.7.26.61 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 144.217.65.92 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 103.89.91.213 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 91.121.165.211 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 5.188.10.185 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 137.74.233.252 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 182.61.54.67 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 37.187.105.132 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 218.65.30.25 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 149.202.46.139 0.0.0.0/0 reject-with icmp-port-unreachable
RETURN all -- 0.0.0.0/0 0.0.0.0/0
Chain f2b-sshd-week (1 references)
target prot opt source destination
REJECT all -- 42.200.182.197 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 91.121.110.24 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 37.187.114.79 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 178.32.255.107 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 170.210.83.114 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 41.188.17.198 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 151.80.40.43 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 211.159.158.202 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 120.52.120.166 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 162.243.161.158 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 37.59.31.125 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 94.181.94.12 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 91.183.89.197 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 182.253.108.27 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 109.237.108.184 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 142.44.143.31 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 86.213.233.200 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 1.22.160.39 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 43.241.235.191 0.0.0.0/0 reject-with icmp-port-unreachable
REJECT all -- 14.116.254.48 0.0.0.0/0 reject-with icmp-port-unreachable
RETURN all -- 0.0.0.0/0 0.0.0.0/0
Chain ufw-after-forward (1 references)
target prot opt source destination
Chain ufw-after-input (1 references)
target prot opt source destination
Chain ufw-after-logging-forward (1 references)
target prot opt source destination
Chain ufw-after-logging-input (1 references)
target prot opt source destination
Chain ufw-after-logging-output (1 references)
target prot opt source destination
Chain ufw-after-output (1 references)
target prot opt source destination
Chain ufw-before-forward (1 references)
target prot opt source destination
Chain ufw-before-input (1 references)
target prot opt source destination
Chain ufw-before-logging-forward (1 references)
target prot opt source destination
Chain ufw-before-logging-input (1 references)
target prot opt source destination
Chain ufw-before-logging-output (1 references)
target prot opt source destination
Chain ufw-before-output (1 references)
target prot opt source destination
Chain ufw-reject-forward (1 references)
target prot opt source destination
Chain ufw-reject-input (1 references)
target prot opt source destination
Chain ufw-reject-output (1 references)
target prot opt source destination
Chain ufw-track-forward (1 references)
target prot opt source destination
Chain ufw-track-input (1 references)
target prot opt source destination
Chain ufw-track-output (1 references)
target prot opt source destination
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment