kan ikke finde ud af firewall ??
Hejsa alljeg har prøvet at sætte min firewall op og det gik også finno meeen problemet er at når jeg skriver iptables -L ser det for mig stadig ud som om alt er piv åbent
resultatet fra iptables ser således ud...!
ACCEPT udp -- anywhere anywhere udp spts:1024:65535
dpt:27010
ACCEPT udp -- anywhere anywhere udp spts:1024:65535
dpts:27005:27050
ACCEPT tcp -- anywhere anywhere tcp dpt:4662 state N
EW
ACCEPT udp -- anywhere anywhere udp dpt:quake
ACCEPT udp -- anywhere anywhere udp dpt:27910
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:ldaps state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:pop3 state NEW
ACCEPT tcp -- anywhere anywhere tcp dpt:6112 state N
EW
ACCEPT tcp -- anywhere anywhere tcp dpt:4000 state N
EW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:imap state NEW
ACCEPT udp -- anywhere anywhere udp dpt:imap
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:pop3s state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:smtp state NEW
ACCEPT tcp -- anywhere anywhere tcp dpt:sunrpc state
NEW
ACCEPT udp -- anywhere anywhere udp dpt:sunrpc
ACCEPT tcp -- anywhere anywhere tcp dpts:1024:65535
state NEW
ACCEPT udp -- anywhere anywhere udp dpts:1024:65535
ACCEPT udp -- anywhere anywhere udp dpt:4000
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpts:1024:65535 state NEW
ACCEPT tcp -- anywhere anywhere tcp dpt:microsoft-ds
state NEW
ACCEPT udp -- anywhere anywhere udp dpt:27500
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:http state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:webcache state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:http-alt state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:8000 state NEW
ACCEPT tcp -- anywhere anywhere tcp dpt:4661 state N
EW
ACCEPT tcp -- anywhere anywhere tcp dpt:rtsp state N
EW
ACCEPT tcp -- anywhere anywhere tcp dpt:7070 state N
EW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:47624 state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpts:2300:2400 state NEW
ACCEPT udp -- anywhere anywhere udp spts:1024:65535
dpts:2300:2400
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:mysql state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:ssh state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:0:1023 dpt:
ssh state NEW
logdrop all -- anywhere anywhere
Chain f2to1 (7 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere icmp echo-reply
ACCEPT udp -- anywhere anywhere udp spt:netbios-ns d
pts:1024:cvsup
ACCEPT udp -- anywhere anywhere udp spt:netbios-ns d
pt:netbios-ns
ACCEPT udp -- anywhere anywhere udp spt:netbios-dgm
dpt:netbios-dgm
ACCEPT udp -- anywhere anywhere udp spts:1024:65535
dpts:2300:2400
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:ftp state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:https state NEW
ACCEPT udp -- anywhere anywhere udp dpt:4665
ACCEPT icmp -- anywhere anywhere icmp echo-request
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:afs3-prserver state NEW
ACCEPT udp -- anywhere anywhere udp spts:1024:65535
dpt:27010
ACCEPT udp -- anywhere anywhere udp spts:1024:65535
dpts:27005:27050
ACCEPT tcp -- anywhere anywhere tcp dpt:4662 state N
EW
ACCEPT udp -- anywhere anywhere udp dpt:quake
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:pop3 state NEW
ACCEPT udp -- anywhere anywhere udp dpt:27910
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:smtp state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:imap state NEW
ACCEPT udp -- anywhere anywhere udp dpt:imap
ACCEPT tcp -- anywhere anywhere tcp dpt:6112 state N
EW
ACCEPT tcp -- anywhere anywhere tcp dpt:4000 state N
EW
ACCEPT udp -- anywhere anywhere udp dpt:27500
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:http state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:webcache state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:http-alt state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:8000 state NEW
ACCEPT tcp -- anywhere anywhere tcp dpt:4661 state N
EW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:47624 state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpts:2300:2400 state NEW
ACCEPT udp -- anywhere anywhere udp spts:1024:65535
dpts:2300:2400
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:mysql state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535
dpt:ssh state NEW
ACCEPT tcp -- anywhere anywhere tcp spts:0:1023 dpt:
ssh state NEW
logdrop all -- anywhere anywhere
Chain logaborted (1 references)
target prot opt source destination
logaborted2 all -- anywhere anywhere limit: avg 1/sec b
urst 10
LOG all -- anywhere anywhere limit: avg 2/min bur
st 1 LOG level warning prefix `LIMITED '
Chain logaborted2 (1 references)
target prot opt source destination
LOG all -- anywhere anywhere LOG level warning tc
p-sequence tcp-options ip-options prefix `ABORTED '
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
Chain logdrop (8 references)
target prot opt source destination
logdrop2 all -- anywhere anywhere limit: avg 1/sec bur
st 10
LOG all -- anywhere anywhere limit: avg 2/min bur
st 1 LOG level warning prefix `LIMITED '
DROP all -- anywhere anywhere
Chain logdrop2 (1 references)
target prot opt source destination
LOG all -- anywhere anywhere LOG level warning tc
p-sequence tcp-options ip-options prefix `DROPPED '
DROP all -- anywhere anywhere
Chain logreject (0 references)
target prot opt source destination
logreject2 all -- anywhere anywhere limit: avg 1/sec bu
rst 10
LOG all -- anywhere anywhere limit: avg 2/min bur
st 1 LOG level warning prefix `LIMITED '
REJECT tcp -- anywhere anywhere reject-with tcp-rese
t
REJECT udp -- anywhere anywhere reject-with icmp-por
t-unreachable
DROP all -- anywhere anywhere
Chain logreject2 (1 references)
target prot opt source destination
LOG all -- anywhere anywhere LOG level warning tc
p-sequence tcp-options ip-options prefix `REJECTED '
REJECT tcp -- anywhere anywhere reject-with tcp-rese
t
REJECT udp -- anywhere anywhere reject-with icmp-por
t-unreachable
DROP all -- anywhere anywhere
Chain nicfilt (1 references)
target prot opt source destination
RETURN all -- anywhere anywhere
RETURN all -- anywhere anywhere
RETURN all -- anywhere anywhere
RETURN all -- anywhere anywhere
RETURN all -- anywhere anywhere
RETURN all -- anywhere anywhere
RETURN all -- anywhere anywhere
logdrop all -- anywhere anywhere
Chain s0 (1 references)
target prot opt source destination
f0to1 all -- anywhere c-a65f70d5.08-36-6370682.cust.bredbands
bolaget.se
f0to1 all -- anywhere ua-213-112-95-191.cust.bredbandsbolaget
.se
f0to1 all -- anywhere 192.168.1.2
f0to1 all -- anywhere 192.168.1.255
f0to1 all -- anywhere 192.168.1.1
f0to1 all -- anywhere 192.168.1.255
f0to1 all -- anywhere linux
f0to2 all -- anywhere 192.168.1.0/24
logdrop all -- anywhere anywhere
Chain s1 (1 references)
target prot opt source destination
f1to2 all -- anywhere 192.168.1.0/24
f1to0 all -- anywhere anywhere
Chain s2 (1 references)
target prot opt source destination
f2to1 all -- anywhere c-a65f70d5.08-36-6370682.cust.bredbands
bolaget.se
f2to1 all -- anywhere ua-213-112-95-191.cust.bredbandsbolaget
.se
f2to1 all -- anywhere 192.168.1.2
f2to1 all -- anywhere 192.168.1.255
f2to1 all -- anywhere 192.168.1.1
f2to1 all -- anywhere 192.168.1.255
f2to1 all -- anywhere linux
f2to0 all -- anywhere anywhere
Chain srcfilt (2 references)
target prot opt source destination
s2 all -- 192.168.1.0/24 anywhere
s0 all -- anywhere anywhere
er det helt hend af vejen eller hvordan ??
