Skip to content

Instantly share code, notes, and snippets.

@lucax88x
Last active October 17, 2019 14:29
Show Gist options
  • Save lucax88x/fe2498b2813d95085402793dc6ad740b to your computer and use it in GitHub Desktop.
Save lucax88x/fe2498b2813d95085402793dc6ad740b to your computer and use it in GitHub Desktop.
Chain INPUT (policy ACCEPT 36 packets, 1296 bytes)
num pkts bytes target prot opt in out source destination
1 7439 1348K LOG all -- any any 65.12.12.12/24 anywhere LOG level debug prefix "**SUSPECT**"
2 13M 17G ufw-before-logging-input all -- any any anywhere anywhere
3 13M 17G ufw-before-input all -- any any anywhere anywhere
4 31328 4189K ufw-after-input all -- any any anywhere anywhere
5 21308 1823K ufw-after-logging-input all -- any any anywhere anywhere
6 21308 1823K ufw-reject-input all -- any any anywhere anywhere
7 21308 1823K ufw-track-input all -- any any anywhere anywhere
Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
num pkts bytes target prot opt in out source destination
1 1217K 1435M ufw-before-logging-forward all -- any any anywhere anywhere
2 1217K 1435M ufw-before-forward all -- any any anywhere anywhere
3 7621 404K ufw-after-forward all -- any any anywhere anywhere
4 7621 404K ufw-after-logging-forward all -- any any anywhere anywhere
5 7621 404K ufw-reject-forward all -- any any anywhere anywhere
6 7621 404K ufw-track-forward all -- any any anywhere anywhere
Chain OUTPUT (policy ACCEPT 166 packets, 11005 bytes)
num pkts bytes target prot opt in out source destination
1 9200K 856M ufw-before-logging-output all -- any any anywhere anywhere
2 9200K 856M ufw-before-output all -- any any anywhere anywhere
3 50231 6071K ufw-after-output all -- any any anywhere anywhere
4 50231 6071K ufw-after-logging-output all -- any any anywhere anywhere
5 50231 6071K ufw-reject-output all -- any any anywhere anywhere
6 50231 6071K ufw-track-output all -- any any anywhere anywhere
Chain DOCKER (0 references)
num pkts bytes target prot opt in out source destination
Chain DOCKER-ISOLATION-STAGE-1 (0 references)
num pkts bytes target prot opt in out source destination
Chain DOCKER-ISOLATION-STAGE-2 (0 references)
num pkts bytes target prot opt in out source destination
Chain DOCKER-USER (0 references)
num pkts bytes target prot opt in out source destination
Chain ufw-after-forward (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-after-input (1 references)
num pkts bytes target prot opt in out source destination
1 472 38040 ufw-skip-to-policy-input udp -- any any anywhere anywhere udp dpt:netbios-ns
2 9175 2278K ufw-skip-to-policy-input udp -- any any anywhere anywhere udp dpt:netbios-dgm
3 69 3588 ufw-skip-to-policy-input tcp -- any any anywhere anywhere tcp dpt:netbios-ssn
4 180 9360 ufw-skip-to-policy-input tcp -- any any anywhere anywhere tcp dpt:microsoft-ds
5 92 30176 ufw-skip-to-policy-input udp -- any any anywhere anywhere udp dpt:bootps
6 0 0 ufw-skip-to-policy-input udp -- any any anywhere anywhere udp dpt:bootpc
7 0 0 ufw-skip-to-policy-input all -- any any anywhere anywhere ADDRTYPE match dst-type BROADCAST
Chain ufw-after-logging-forward (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-after-logging-input (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-after-logging-output (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-after-output (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-before-forward (1 references)
num pkts bytes target prot opt in out source destination
1 1209K 1435M ACCEPT all -- any any anywhere anywhere ctstate RELATED,ESTABLISHED
2 0 0 ACCEPT icmp -- any any anywhere anywhere icmp destination-unreachable
3 0 0 ACCEPT icmp -- any any anywhere anywhere icmp time-exceeded
4 0 0 ACCEPT icmp -- any any anywhere anywhere icmp parameter-problem
5 153 9180 ACCEPT icmp -- any any anywhere anywhere icmp echo-request
6 7416 392K ufw-user-forward all -- any any anywhere anywhere
Chain ufw-before-input (1 references)
num pkts bytes target prot opt in out source destination
1 2057K 203M ACCEPT all -- lo any anywhere anywhere
2 10M 17G ACCEPT all -- any any anywhere anywhere ctstate RELATED,ESTABLISHED
3 271K 11M ufw-logging-deny all -- any any anywhere anywhere ctstate INVALID
4 271K 11M DROP all -- any any anywhere anywhere ctstate INVALID
5 0 0 ACCEPT icmp -- any any anywhere anywhere icmp destination-unreachable
6 0 0 ACCEPT icmp -- any any anywhere anywhere icmp time-exceeded
7 0 0 ACCEPT icmp -- any any anywhere anywhere icmp parameter-problem
8 69 4140 ACCEPT icmp -- any any anywhere anywhere icmp echo-request
9 0 0 ACCEPT udp -- any any anywhere anywhere udp spt:bootps dpt:bootpc
10 61689 5421K ufw-not-local all -- any any anywhere anywhere
11 0 0 ACCEPT udp -- any any anywhere 224.0.0.251 udp dpt:mdns
12 0 0 ACCEPT udp -- any any anywhere 239.255.255.250 udp dpt:1900
13 61689 5421K ufw-user-input all -- any any anywhere anywhere
Chain ufw-before-logging-forward (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-before-logging-input (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-before-logging-output (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-before-output (1 references)
num pkts bytes target prot opt in out source destination
1 2057K 203M ACCEPT all -- any lo anywhere anywhere
2 7079K 644M ACCEPT all -- any any anywhere anywhere ctstate RELATED,ESTABLISHED
3 34131 3972K ufw-user-output all -- any any anywhere anywhere
Chain ufw-logging-allow (0 references)
num pkts bytes target prot opt in out source destination
1 0 0 LOG all -- any any anywhere anywhere limit: avg 3/min burst 10 LOG level warning prefix "[UFW ALLOW] "
Chain ufw-logging-deny (2 references)
num pkts bytes target prot opt in out source destination
1 20870 868K RETURN all -- any any anywhere anywhere ctstate INVALID limit: avg 3/min burst 10
2 17905 718K LOG all -- any any anywhere anywhere limit: avg 3/min burst 10 LOG level warning prefix "[UFW BLOCK] "
Chain ufw-not-local (1 references)
num pkts bytes target prot opt in out source destination
1 51983 3079K RETURN all -- any any anywhere anywhere ADDRTYPE match dst-type LOCAL
2 36 1296 RETURN all -- any any anywhere anywhere ADDRTYPE match dst-type MULTICAST
3 9670 2340K RETURN all -- any any anywhere anywhere ADDRTYPE match dst-type BROADCAST
4 0 0 ufw-logging-deny all -- any any anywhere anywhere limit: avg 3/min burst 10
5 0 0 DROP all -- any any anywhere anywhere
Chain ufw-reject-forward (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-reject-input (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-reject-output (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-skip-to-policy-forward (0 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT all -- any any anywhere anywhere
Chain ufw-skip-to-policy-input (7 references)
num pkts bytes target prot opt in out source destination
1 9988 2359K ACCEPT all -- any any anywhere anywhere
Chain ufw-skip-to-policy-output (0 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT all -- any any anywhere anywhere
Chain ufw-track-forward (1 references)
num pkts bytes target prot opt in out source destination
1 7416 392K ACCEPT tcp -- any any anywhere anywhere ctstate NEW
2 0 0 ACCEPT udp -- any any anywhere anywhere ctstate NEW
Chain ufw-track-input (1 references)
num pkts bytes target prot opt in out source destination
1 4676 232K ACCEPT tcp -- any any anywhere anywhere ctstate NEW
2 276 53606 ACCEPT udp -- any any anywhere anywhere ctstate NEW
Chain ufw-track-output (1 references)
num pkts bytes target prot opt in out source destination
1 7781 467K ACCEPT tcp -- any any anywhere anywhere ctstate NEW
2 26184 3494K ACCEPT udp -- any any anywhere anywhere ctstate NEW
Chain ufw-user-forward (1 references)
num pkts bytes target prot opt in out source destination
Chain ufw-user-input (1 references)
num pkts bytes target prot opt in out source destination
1 417 21448 ACCEPT tcp -- any any anywhere anywhere tcp dpt:5000
2 0 0 DROP tcp -- any any anywhere anywhere tcp dpt:1337
3 0 0 DROP udp -- any any anywhere anywhere udp dpt:1337
4 759 39948 ACCEPT tcp -- any any anywhere anywhere tcp dpt:6443
5 0 0 ACCEPT udp -- any any anywhere anywhere udp dpt:6443
6 425 22284 ACCEPT tcp -- any any anywhere anywhere tcp dpt:8001
7 0 0 ACCEPT udp -- any any anywhere anywhere udp dpt:8001
8 45112 2692K ACCEPT tcp -- any any anywhere anywhere tcp dpt:ssh
9 0 0 ACCEPT all -- any any anywhere 192.168.205.100
10 0 0 ACCEPT all -- any any SOMENAME 192.168.205.100
11 0 0 ACCEPT all -- any any SOMENAME SOMENAME
Chain ufw-user-limit (0 references)
num pkts bytes target prot opt in out source destination
1 0 0 LOG all -- any any anywhere anywhere limit: avg 3/min burst 5 LOG level warning prefix "[UFW LIMIT BLOCK] "
2 0 0 REJECT all -- any any anywhere anywhere reject-with icmp-port-unreachable
Chain ufw-user-limit-accept (0 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT all -- any any anywhere anywhere
Chain ufw-user-logging-forward (0 references)
num pkts bytes target prot opt in out source destination
Chain ufw-user-logging-input (0 references)
num pkts bytes target prot opt in out source destination
Chain ufw-user-logging-output (0 references)
num pkts bytes target prot opt in out source destination
Chain ufw-user-output (1 references)
num pkts bytes target prot opt in out source destination
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment