iptables问题

Web、Mail、Ftp、DNS、Proxy、VPN、Samba、LDAP 等基础网络服务
回复
很懒的蜜蜂
帖子: 8
注册时间: 2011-12-17 10:58

iptables问题

#1

帖子 很懒的蜜蜂 » 2012-09-11 11:13

系统是ubuntu12.04,我以前在网上复制的iptables规则,现在ping新浪能解析,但是包100%丢失。
现在是sudo iptables -F不行,killall iptables找不到进程。
/etc/rc.d/init.d/iptables stop 找不到文件。
还有就是sevices iptables stop找不到服务。
不知道该怎么办了。
onlylove
论坛版主
帖子: 5230
注册时间: 2007-01-14 16:23

Re: iptables问题

#2

帖子 onlylove » 2012-09-11 14:05

你把规则贴出来看看,还有,iptables -vnL看看里面的内容
#include <stdio.h>
void main()
{
double world;
unsigned letter;
short stay;
long memories;
printf("I miss you.\n");
}
很懒的蜜蜂
帖子: 8
注册时间: 2011-12-17 10:58

Re: iptables问题

#3

帖子 很懒的蜜蜂 » 2012-09-12 18:42

onlylove 写了:你把规则贴出来看看,还有,iptables -vnL看看里面的内容
Chain INPUT (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp -- * * 202.103.44.150 0.0.0.0/0 tcpflags:! 0x17/0x02
5876 1631K ACCEPT udp -- * * 202.103.44.150 0.0.0.0/0
0 0 ACCEPT tcp -- * * 202.103.24.68 0.0.0.0/0 tcpflags:! 0x17/0x02
246 65583 ACCEPT udp -- * * 202.103.24.68 0.0.0.0/0
8 406 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
0 0 LSI udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:33434
8 672 LSI icmp -- * * 0.0.0.0/0 0.0.0.0/0
0 0 DROP all -- eth0 * 0.0.0.0/0 255.255.255.255
0 0 DROP all -- * * 0.0.0.0/0 192.168.1.255
0 0 DROP all -- * * 224.0.0.0/8 0.0.0.0/0
0 0 DROP all -- * * 0.0.0.0/0 224.0.0.0/8
0 0 DROP all -- * * 255.255.255.255 0.0.0.0/0
0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0
24 10202 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
0 0 LSI all -f * * 0.0.0.0/0 0.0.0.0/0 limit: avg 10/min burst 5
123K 111M INBOUND all -- eth0 * 0.0.0.0/0 0.0.0.0/0
0 0 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix "Unknown Input"
0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0

Chain FORWARD (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
0 0 LSI udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:33434
0 0 LSI icmp -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix "Unknown Forward"

Chain OUTPUT (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp -- * * 192.168.1.101 202.103.44.150 tcp dpt:53
6846 419K ACCEPT udp -- * * 192.168.1.101 202.103.44.150 udp dpt:53
0 0 ACCEPT tcp -- * * 192.168.1.101 202.103.24.68 tcp dpt:53
1100 69717 ACCEPT udp -- * * 192.168.1.101 202.103.24.68 udp dpt:53
8 406 ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0
0 0 DROP all -- * * 224.0.0.0/8 0.0.0.0/0
4 268 DROP all -- * * 0.0.0.0/0 224.0.0.0/8
0 0 DROP all -- * * 255.255.255.255 0.0.0.0/0
0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0
2925 117K DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
138K 20M OUTBOUND all -- * eth0 0.0.0.0/0 0.0.0.0/0
0 0 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix "Unknown Output"
0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0

Chain INBOUND (1 references)
pkts bytes target prot opt in out source destination
123K 111M ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
3 1728 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
27 3928 LSI all -- * * 0.0.0.0/0 0.0.0.0/0

Chain LOG_FILTER (5 references)
pkts bytes target prot opt in out source destination

Chain LSI (6 references)
pkts bytes target prot opt in out source destination
35 4600 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
2 80 LOG tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcpflags: 0x17/0x02 limit: avg 1/sec burst 5 LOG flags 0 level 6 prefix "Inbound "
2 80 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcpflags: 0x17/0x02
0 0 LOG tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcpflags: 0x17/0x04 limit: avg 1/sec burst 5 LOG flags 0 level 6 prefix "Inbound "
0 0 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcpflags: 0x17/0x04
0 0 LOG icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8 limit: avg 1/sec burst 5 LOG flags 0 level 6 prefix "Inbound "
0 0 DROP icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 8
33 4520 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 5/sec burst 5 LOG flags 0 level 6 prefix "Inbound "
33 4520 DROP all -- * * 0.0.0.0/0 0.0.0.0/0

Chain LSO (0 references)
pkts bytes target prot opt in out source destination
0 0 LOG_FILTER all -- * * 0.0.0.0/0 0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 5/sec burst 5 LOG flags 0 level 6 prefix "Outbound "
0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable

Chain OUTBOUND (1 references)
pkts bytes target prot opt in out source destination
38 3986 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
128K 20M ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
10808 476K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
回复