- 清除所有规则:
iptables -F
- 开放常用tcp端口:
iptables -I INPUT -p tcp -m multiport --dports 20,21,22,53,3690,80,443,4443,8023,8888,25,110,30000:30999 -j ACCEPT iptables -I OUTPUT -p tcp -m multiport --sports 20,21,22,53,3690,80,443,4443,8023,8888,25,110,30000:30999 -j ACCEPT
- 开放常用udp端口:
iptables -I INPUT -p udp -m multiport --dports 8571,8888 -j ACCEPT iptables -I OUTPUT -p udp -m multiport --sports 8571,8888 -j ACCEPT
- 允许服务器互ping:
iptables -A OUTPUT -p icmp -j ACCEPT iptables -A INPUT -p icmp -j ACCEPT
- 允许握手成功的数据通过:
iptables -I INPUT -p tcp -m state --state RELATED,ESTABLISHED -j ACCEPT iptables -I OUTPUT -p tcp -m state --state RELATED,ESTABLISHED -j ACCEPT
- 设置默认关闭所有端口:
iptables -P FORWARD DROP iptables -P OUTPUT DROP iptables -P INPUT DROP
centos7防火墙iptables开放常用端口
猜你喜欢
转载自blog.51cto.com/12173069/2129388
今日推荐
周排行