zoukankan      html  css  js  c++  java
  • 单服务器防护linux iptables脚本

    #!/bin/bash
    iptables -F
    iptables -P INPUT DROP
    iptables -P OUTPUT ACCEPT
    iptables -P FORWARD DROP
    /sbin/iptables -A INPUT -i eth1 -m multiport -p tcp --dport 5060,6060,5070,1720,3720,1719,2719,3719,1202,80 -j ACCEPT
    /sbin/iptables -A INPUT -i eth1 -m multiport -p udp --dport 5060,6060,5070,5055,5065 -j ACCEPT
    /sbin/iptables -A INPUT -i eth1 -p udp --dport 10000:30000 -j ACCEPT
    /sbin/iptables -A INPUT -i eth1 -p udp --dport 10000:39999 -j ACCEPT
    /sbin/iptables -A INPUT -i eth1 -p udp --dport 40000:47999 -j ACCEPT
    /sbin/iptables -A INPUT -i eth1 -p udp --dport 50000:57999 -j ACCEPT
    /sbin/iptables -A INPUT -i eth1 -p udp --dport 60000:61999 -j ACCEPT
    /sbin/iptables -A INPUT -i eth1 -p udp --dport 60000:63999 -j ACCEPT
    /sbin/iptables -A INPUT -i eth1 -p udp --dport 48000:49999 -j ACCEPT
    /sbin/iptables -A INPUT -p icmp --icmp-type 0 -j ACCEPT
    /sbin/iptables -A INPUT -p icmp --icmp-type 8 -j ACCEPT
    /sbin/iptables -A INPUT -i eth0 -p tcp --dport 22 -j ACCEPT
    /sbin/iptables -A INPUT -i eth0 -p tcp --dport 22 -j ACCEPT
    /etc/init.d/iptables start
    chkconfig iptables on 3 5
    /etc/init.d/iptables save

  • 相关阅读:
    118. Pascal's Triangle
    697. Degree of an Array
    1013. Partition Array Into Three Parts With Equal Sum
    167. Two Sum II
    ol7 禁用mysql 自启动
    pgsql常用命令
    清空history 命令记录
    pgsql启动报错
    在rhel 7.4中安装glibc-devel-2.17-196.el7.i686包的过程详录
    postgresql-9.2 install
  • 原文地址:https://www.cnblogs.com/networking/p/3887089.html
Copyright © 2011-2022 走看看