> iptables -L
Chain INPUT (policy ACCEPT)
target prot opt source destination
RAChain all -- anywhere anywhere
ReaimINPUTChain all -- anywhere anywhere
ACCEPT all -- anywhere anywhere state RELATED,ESTAB
LISHED
LOG tcp -- anywhere anywhere tcp flags:SYN,RST,A
CK/SYN limit: avg 6/hour burst 5 LOG level alert prefix `Intrusion -> '
DROP all -- anywhere 87.126.130.199
DROP all -- anywhere 192.168.1.1
ACCEPT all -- anywhere anywhere state RELATED,ESTAB
LISHED
LOG tcp -- anywhere anywhere tcp flags:SYN,RST,A
CK/SYN limit: avg 6/hour burst 5 LOG level alert prefix `Intrusion -> '
DROP all -- anywhere 172.24.88.158
DROP all -- anywhere 192.168.1.1
Chain FORWARD (policy ACCEPT)
target prot opt source destination
TCPMSS tcp -- anywhere anywhere tcp flags:SYN,RST/S
YN TCPMSS clamp to PMTU
TCPMSS tcp -- anywhere anywhere tcp flags:SYN,RST/S
YN TCPMSS clamp to PMTU
VSChain all -- anywhere anywhere
DmzChain all -- anywhere anywhere
ACCEPT all -- anywhere anywhere state RELATED,ESTAB
LISHED
LOG tcp -- anywhere anywhere tcp flags:SYN,RST,A
CK/SYN limit: avg 6/hour burst 5 LOG level alert prefix `Intrusion -> '
ACCEPT all -- anywhere anywhere state RELATED,ESTAB
LISHED
LOG tcp -- anywhere anywhere tcp flags:SYN,RST,A
CK/SYN limit: avg 6/hour burst 5 LOG level alert prefix `Intrusion -> '
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
DROP all -- anywhere 239.255.255.250
Chain DmzChain (1 references)
target prot opt source destination
ACCEPT all -- anywhere 192.168.1.2
Chain FWChain (0 references)
target prot opt source destination
Chain FWINPUTChain (0 references)
target prot opt source destination
Chain RAChain (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere 87.126.130.199 tcp dpt:www
ACCEPT tcp -- anywhere 87.126.130.199 tcp dpt:telnet
ACCEPT udp -- anywhere 87.126.130.199 udp dpt:snmp
ACCEPT udp -- anywhere 87.126.130.199 udp dpt:tftp
ACCEPT icmp -- anywhere 87.126.130.199 icmp echo-request
ACCEPT tcp -- anywhere 172.24.88.158 tcp dpt:www
ACCEPT tcp -- anywhere 172.24.88.158 tcp dpt:telnet
ACCEPT udp -- anywhere 172.24.88.158 udp dpt:snmp
ACCEPT udp -- anywhere 172.24.88.158 udp dpt:tftp
ACCEPT icmp -- anywhere 172.24.88.158 icmp echo-request
Chain ReaimINPUTChain (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp dpts:1863:1864
ACCEPT tcp -- anywhere anywhere tcp dpt:4443
ACCEPT tcp -- anywhere anywhere tcp dpt:5190
ACCEPT tcp -- anywhere anywhere tcp dpt:5566
ACCEPT tcp -- anywhere anywhere tcp dpts:40000:4009
9
ACCEPT tcp -- anywhere anywhere tcp dpts:1863:1864
ACCEPT tcp -- anywhere anywhere tcp dpt:4443
ACCEPT tcp -- anywhere anywhere tcp dpt:5190
ACCEPT tcp -- anywhere anywhere tcp dpt:5566
ACCEPT tcp -- anywhere anywhere tcp dpts:40000:4009
9