Skip to content

Instantly share code, notes, and snippets.

@stulevine
Created August 21, 2013 17:06
Show Gist options
  • Save stulevine/6297158 to your computer and use it in GitHub Desktop.
Save stulevine/6297158 to your computer and use it in GitHub Desktop.
original iptables
root@uberdev.ldj1 /home/slevine # iptables -S
-P INPUT ACCEPT
-P FORWARD ACCEPT
-P OUTPUT ACCEPT
-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 443 -j ACCEPT
-A INPUT -s 74.63.39.138/32 -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -s 192.170.149.250/32 -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -s 173.231.130.227/32 -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -s 208.122.10.36/32 -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -s 107.6.76.0/24 -p tcp -j ACCEPT
-A INPUT -s 192.170.154.0/24 -p tcp -j ACCEPT
-A INPUT -s 107.6.86.64/27 -p tcp -j ACCEPT
-A INPUT -s 69.9.183.154/32 -p tcp -j ACCEPT
-A INPUT -s 72.26.193.192/27 -p tcp -j ACCEPT
-A INPUT -s 172.18.2.64/27 -p tcp -j ACCEPT
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A INPUT -p icmp -j ACCEPT
-A INPUT -i eth1 -p tcp -j ACCEPT
-A INPUT -i lo -p tcp -j ACCEPT
-A INPUT -p tcp -j DROP
-A INPUT -m limit --limit 5/min -j LOG --log-prefix "iptables denied: " --log-level 7
-A OUTPUT -d 208.72.56.36/32 -p tcp -m tcp --dport 25 -j ACCEPT
-A OUTPUT -p tcp -m tcp --dport 25 -j DROP
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment