iptables 增加


新增防火墙 规则
iptables -A INPUT -i em1 -m state --state ESTABLISHED,RELATED -j ACCEPT
iptables -A INPUT -i em1 -p icmp -j ACCEPT
iptables -A INPUT -i lo -j ACCEPT
iptables -A INPUT -i em1 -m state --state NEW -m tcp -p tcp --dport 52222 -j ACCEPT
iptables -A INPUT -i em1 -j REJECT --reject-with icmp-host-prohibited
iptables -A FORWARD -i em1  -j REJECT --reject-with icmp-host-prohibited

-i 后面指的是网卡,如果不单独,指定网卡,可以是去掉-i
cat /etc/sysconfig/iptables


猜你喜欢

转载自stevenfeng.iteye.com/blog/2169305
今日推荐