Difference between revisions of "Firewall Management in Linux"
From Observer GigaFlow Support | VIAVI Solutions Inc.
Kevin Wilkie (Talk | contribs) (Created page with "Iptables iptables -A INPUT -p udp --dport 161 -j ACCEPT iptables -A INPUT -p udp --dport 162 -j ACCEPT iptables -A INPUT -p udp --dport 1812 -j ACCEPT iptables -A INPUT -p...") |
Kevin Wilkie (Talk | contribs) |
||
Line 13: | Line 13: | ||
iptables -A INPUT -p tcp --dport 54321:54330 -j ACCEPT | iptables -A INPUT -p tcp --dport 54321:54330 -j ACCEPT | ||
iptables -A INPUT -p tcp --dport 5432 -j ACCEPT | iptables -A INPUT -p tcp --dport 5432 -j ACCEPT | ||
− | |||
iptables -A INPUT -p tcp --dport 7902 -j ACCEPT | iptables -A INPUT -p tcp --dport 7902 -j ACCEPT | ||
− | |||
iptables -A INPUT -p tcp --dport 8902 -j ACCEPT | iptables -A INPUT -p tcp --dport 8902 -j ACCEPT | ||
− | |||
iptables -D INPUT -j REJECT --reject-with icmp-host-prohibited | iptables -D INPUT -j REJECT --reject-with icmp-host-prohibited | ||
/etc/init.d/iptables save | /etc/init.d/iptables save | ||
iptables -A INPUT -j REJECT --reject-with icmp-host-prohibited | iptables -A INPUT -j REJECT --reject-with icmp-host-prohibited | ||
/etc/init.d/iptables save | /etc/init.d/iptables save |
Revision as of 09:57, 9 November 2016
Iptables
iptables -A INPUT -p udp --dport 161 -j ACCEPT iptables -A INPUT -p udp --dport 162 -j ACCEPT iptables -A INPUT -p udp --dport 1812 -j ACCEPT iptables -A INPUT -p udp --dport 1813 -j ACCEPT iptables -A INPUT -p udp --dport 2055 -j ACCEPT iptables -A INPUT -p udp --dport 53 -j ACCEPT iptables -A INPUT -p udp --dport 514 -j ACCEPT iptables -A INPUT -p udp --dport 1645 -j ACCEPT iptables -A INPUT -p udp --dport 2050:2060 -j ACCEPT iptables -A INPUT -p udp --dport 510:520 -j ACCEPT iptables -A INPUT -p tcp --dport 22 -j ACCEPT iptables -A INPUT -p tcp --dport 54321:54330 -j ACCEPT iptables -A INPUT -p tcp --dport 5432 -j ACCEPT iptables -A INPUT -p tcp --dport 7902 -j ACCEPT iptables -A INPUT -p tcp --dport 8902 -j ACCEPT iptables -D INPUT -j REJECT --reject-with icmp-host-prohibited /etc/init.d/iptables save iptables -A INPUT -j REJECT --reject-with icmp-host-prohibited /etc/init.d/iptables save