- 临时生效
echo 1 >/proc/sys/net/ipv4/icmp_echo_ignore_all iptables -vL
iptables -A INPUT -p tcp --dport 22 -s 192.168.149.1 -j ACCEPT
iptables -A INPUT -p tcp --dport 22 -s 10.181.242.242 -j ACCEPT
iptables -A INPUT -p tcp --dport 22 -s 10.180.221.0/24 -j ACCEPT
iptables -A INPUT -p tcp --dport 22 -j DROP
service iptables save
service iptables restart