Snippets IPtables
Généralités
# Affichage structuré
iptables -L --line-numbers -n
# Allow destination ip/port
iptables -I INPUT 7 -p tcp -s 91.174.86.91 --dport 8443 -j ACCEPT
iptables -I INPUT 7 -p tcp -s 92.175.87.92 --dport 8447 -j ACCEPT
iptables -I INPUT 7 -p tcp -s 93.176.88.93 --dport 8880 -j ACCEPT
iptables -I INPUT 7 -p tcp -s 94.177.89.94 --dport 10081 -j ACCEPT
# Allow multiple destination ip/ports
iptables -I INPUT 8 -p tcp -s 103.27.150.46 -m multiport --dport 22,8443,8447,8880,10081 -j ACCEPT
# Deny multiple destination ip/ports
iptables -I INPUT 1 -p tcp -s 92.52.140.64 -m multiport --dport 80,443 -j DROP
# Delete rule by number
iptables -D INPUT 26
Spécificités OS
- Sauvegarder le ruleset sous CentOS
service iptables save
- Sauvegarder le ruleset sous Debian / Ubuntu
iptables-save > /etc/iptables.up.rules
Pas de commentaires