Get the App
SLTechnology News&Howtos  ›  Development  › 

How to add iptables Firewall rules to linux

Shulou Source: shulou.com Published: 2022-06-01 03:59:57 09月22日 Update

This article introduces the knowledge of "how to add iptables firewall rules to linux". In the operation of actual cases, many people will encounter such a dilemma, so let the editor lead you to learn how to deal with these situations. I hope you can read it carefully and be able to achieve something!

Iptables Settin

The copy code is as follows:

* filter

: input drop [0:0]

: forward accept [0:0]

: output accept [49061:9992130]

If an input-I lo-j accept is not enabled, many services will be unavailable. Enable the loopback address.

-an input-p icmp-j accept allows icmp packets to pass, that is, to allow others to ping themselves

-an input-m state-- state related,established-j accept

-an input-p tcp-m tcp-- dport 21-j accept

-an input-p tcp-m tcp-- dport 25-j accept

-an input-p tcp-m tcp-- dport 80-j accept

-an input-p tcp-m tcp-- dport 110j accept

-an input-p tcp-m tcp-- dport 8080-j accept

-an input-p tcp-m tcp-- dport 10337-j accept this is my own ssh connection port

-an input-j reject--reject-with icmp-host-prohibited

Commit

Note: when using, remove the Chinese comment after the rule, and it can also be written in multi-port mode.

The copy code is as follows:

-an input-p tcp-m multiport-- dports 21, 25, 80, 110, 3306, 8080, 10337-j accept

This is the end of the content of "how to add iptables Firewall rules to linux". Thank you for reading. If you want to know more about the industry, you can follow the website, the editor will output more high-quality practical articles for you!

Tags: Code rules firewall fire prevention content more comments knowledge ports practical learned and then that is loopback dilemma address actual situation article way Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Huawei Docker Shulou Information NVidia Xiaomi