Есть прокси со статистическим ip xx.xx.105.6 (локальный ip 192.168.1.200). Настроен форвардинг с xx.xx.105.6:8080 на 192.168.1.11:80(сервер в на котором бежит приложение). Из локальной сети это не работает(из интернета работает). Т.е. запрос вида http://xx.xx.105.6:8080/cgi-bin/.../Search.exe? из локальной сети результата не дает, но если обратиться по локальному ip http://192.168.1.11/cgi-bin/.../Search.exe? все ок.
nat:
Chain PREROUTING (policy ACCEPT 80231 packets, 5884K bytes)
num pkts bytes target prot opt in out source destination
1 148K 9346K portfw 0 -- * * 0.0.0.0/0 0.0.0.0/0
2 128K 7753K jmpsquid 0 -- eth0 * 0.0.0.0/0 0.0.0.0/0
3 67632 4820K jmpim 0 -- eth0 * 0.0.0.0/0 0.0.0.0/0
4 67632 4820K jmpp3scan 0 -- eth0 * 0.0.0.0/0 0.0.0.0/0
5 67632 4820K jmpsip 0 -- eth0 * 0.0.0.0/0 0.0.0.0/0
6 12614 1064K MINIUPNPD 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0
7 0 0 MINIUPNPD 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0
8 0 0 MINIUPNPD 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0
9 15 760 DNAT tcp -- * * 0.0.0.0/0 xx.xx.105.6 tcp dpt:8080 to:192.168.1.11
Chain POSTROUTING (policy ACCEPT 8710 packets, 583K bytes)
num pkts bytes target prot opt in out source destination
1 104K 6326K MASQUERADE 0 -- * ppp0 0.0.0.0/0 0.0.0.0/0
2 0 0 MASQUERADE 0 -- * ippp0 0.0.0.0/0 0.0.0.0/0
3 0 0 MASQUERADE 0 -- * eth1 0.0.0.0/0 0.0.0.0/0
4 13 684 SNAT tcp -- * * 0.0.0.0/0 192.168.1.11 tcp dpt:80 to:192.168.1.200
5 96 4964 tcp -- * * 0.0.0.0/0 0.0.0.0/0
6 95 4912 tcp -- * * 0.0.0.0/0 0.0.0.0/0
Chain OUTPUT (policy ACCEPT 101K packets, 6176K bytes)
num pkts bytes target prot opt in out source destination
Chain MINIUPNPD (3 references)
num pkts bytes target prot opt in out source destination
1 0 0 DNAT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:53137 to:192.168.1.128:53137
2 0 0 DNAT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:53137 to:192.168.1.128:53137
3 0 0 DNAT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:2534 to:192.168.1.51:7734
Chain im (1 references)
num pkts bytes target prot opt in out source destination
Chain jmpim (1 references)
num pkts bytes target prot opt in out source destination
1 114 6334 RETURN 0 -- * * 0.0.0.0/0 10.0.0.0/8
2 61 8138 RETURN 0 -- * * 0.0.0.0/0 172.16.0.0/12
3 29606 2182K RETURN 0 -- * * 0.0.0.0/0 192.168.0.0/16
4 0 0 RETURN 0 -- * * 0.0.0.0/0 169.254.0.0/16
5 37851 2624K im 0 -- * * 0.0.0.0/0 0.0.0.0/0
Chain jmpp3scan (1 references)
num pkts bytes target prot opt in out source destination
1 114 6334 RETURN 0 -- * * 0.0.0.0/0 10.0.0.0/8
2 61 8138 RETURN 0 -- * * 0.0.0.0/0 172.16.0.0/12
3 29606 2182K RETURN 0 -- * * 0.0.0.0/0 192.168.0.0/16
4 0 0 RETURN 0 -- * * 0.0.0.0/0 169.254.0.0/16
5 37851 2624K p3scan 0 -- * * 0.0.0.0/0 0.0.0.0/0
Chain jmpsip (1 references)
num pkts bytes target prot opt in out source destination
1 114 6334 RETURN 0 -- * * 0.0.0.0/0 10.0.0.0/8
2 61 8138 RETURN 0 -- * * 0.0.0.0/0 172.16.0.0/12
3 29606 2182K RETURN 0 -- * * 0.0.0.0/0 192.168.0.0/16
4 0 0 RETURN 0 -- * * 0.0.0.0/0 169.254.0.0/16
5 37851 2624K sip 0 -- * * 0.0.0.0/0 0.0.0.0/0
Chain jmpsquid (1 references)
num pkts bytes target prot opt in out source destination
1 114 6334 RETURN 0 -- * * 0.0.0.0/0 10.0.0.0/8
2 61 8138 RETURN 0 -- * * 0.0.0.0/0 172.16.0.0/12
3 29606 2182K RETURN 0 -- * * 0.0.0.0/0 192.168.0.0/16
4 0 0 RETURN 0 -- * * 0.0.0.0/0 169.254.0.0/16
5 97945 5557K squid 0 -- * * 0.0.0.0/0 0.0.0.0/0
Chain p3scan (1 references)
num pkts bytes target prot opt in out source destination
Chain portfw (1 references)
num pkts bytes target prot opt in out source destination
1 41 2140 DNAT tcp -- * * 0.0.0.0/0 xx.xx.105.6 tcp dpt:53137 to:192.168.1.128:53137
2 43 3200 DNAT udp -- * * 0.0.0.0/0 xx.xx.105.6 udp dpt:53137 to:192.168.1.128:53137
3 0 0 DNAT tcp -- * * 0.0.0.0/0 xx.xx.105.6 tcp dpt:5901 to:192.168.1.112:5901
4 0 0 DNAT tcp -- * * 0.0.0.0/0 xx.xx.105.6 tcp dpt:8081 to:192.168.1.112:80
5 5 268 DNAT tcp -- * * 0.0.0.0/0 xx.xx.105.6 tcp dpt:8080 to:192.168.1.11:80
Chain sip (1 references)
num pkts bytes target prot opt in out source destination
Chain squid (1 references)
num pkts bytes target prot opt in out source destination
1 60094 2933K REDIRECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80 redir ports 800
filter:
Chain INPUT (policy DROP 0 packets, 0 bytes)
num pkts bytes target prot opt in out source destination
1 1823K 1768M ipblock 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0
2 0 0 ipblock 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0
3 0 0 ipblock 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0
4 3194K 2016M timedaccess 0 -- * * 0.0.0.0/0 0.0.0.0/0
5 1823K 1768M advnet 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0
6 0 0 advnet 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0
7 0 0 advnet 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0
8 1823K 1768M spoof 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0
9 0 0 spoof 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0
10 0 0 spoof 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0
11 30254 3249K ACCEPT 0 -- lo * 0.0.0.0/0 0.0.0.0/0
12 1340K 244M ACCEPT 0 -- eth0 * 0.0.0.0/0 0.0.0.0/0
13 1823K 1768M secin 0 -- * * 0.0.0.0/0 0.0.0.0/0
14 1823K 1768M block 0 -- * * 0.0.0.0/0 0.0.0.0/0
15 4842 400K LOG 0 -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4
16 4842 400K REJECT 0 -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
Chain FORWARD (policy DROP 0 packets, 0 bytes)
num pkts bytes target prot opt in out source destination
1 2512K 2950M ipblock 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0
2 0 0 ipblock 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0
3 0 0 ipblock 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0
4 4167K 3418M timedaccess 0 -- * * 0.0.0.0/0 0.0.0.0/0
5 4167K 3418M secout 0 -- * * 0.0.0.0/0 0.0.0.0/0
6 1614K 464M ACCEPT 0 -- * ppp0 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
7 2502K 2950M ACCEPT 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
8 38893 2691K outbound 0 -- * ppp0 0.0.0.0/0 0.0.0.0/0 state NEW
9 0 0 ACCEPT 0 -- * ippp0 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
10 0 0 ACCEPT 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
11 0 0 outbound 0 -- * ippp0 0.0.0.0/0 0.0.0.0/0 state NEW
12 0 0 ACCEPT 0 -- * eth1 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
13 0 0 ACCEPT 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
14 0 0 outbound 0 -- * eth1 0.0.0.0/0 0.0.0.0/0 state NEW
15 9557 643K portfwf 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0
16 0 0 portfwf 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0
17 0 0 portfwf 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0
18 1202 62840 portfwf 0 -- * * 0.0.0.0/0 0.0.0.0/0 MARK match 0x1
19 0 0 ACCEPT 0 -- eth0 ipsec0 0.0.0.0/0 0.0.0.0/0
20 0 0 ACCEPT 0 -- ipsec0 eth0 0.0.0.0/0 0.0.0.0/0
21 0 0 MINIUPNPD 0 -- ppp0 !ppp0 0.0.0.0/0 0.0.0.0/0
22 0 0 MINIUPNPD 0 -- ippp0 !ippp0 0.0.0.0/0 0.0.0.0/0
23 0 0 MINIUPNPD 0 -- eth1 !eth1 0.0.0.0/0 0.0.0.0/0
24 36329 2505K LOG 0 -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4
25 36329 2505K REJECT 0 -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
Chain OUTPUT (policy ACCEPT 3761K packets, 2154M bytes)
num pkts bytes target prot opt in out source destination
Chain MINIUPNPD (3 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT tcp -- * * 0.0.0.0/0 192.168.1.128 tcp dpt:53137
2 0 0 ACCEPT udp -- * * 0.0.0.0/0 192.168.1.128 udp dpt:53137
3 0 0 ACCEPT tcp -- * * 0.0.0.0/0 192.168.1.51 tcp dpt:7734
Chain advnet (3 references)
num pkts bytes target prot opt in out source destination
Chain allows (1 references)
num pkts bytes target prot opt in out source destination
1 386 22768 ACCEPT 0 -- * * 192.168.1.115 0.0.0.0/0
2 125 6000 ACCEPT 0 -- * * 192.168.1.130 0.0.0.0/0
3 282 13564 ACCEPT 0 -- * * 192.168.1.132 0.0.0.0/0
Chain badtraffic (1 references)
num pkts bytes target prot opt in out source destination
Chain block (1 references)
num pkts bytes target prot opt in out source destination
1 1810K 1767M ACCEPT 0 -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
2 0 0 ACCEPT 0 -- eth0 * 0.0.0.0/0 0.0.0.0/0
3 13195 1101K xtaccess 0 -- * * 0.0.0.0/0 0.0.0.0/0
4 13187 1101K ipsec 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0
5 0 0 ipsec 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0
6 0 0 ipsec 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0
7 13187 1101K siprtpports 0 -- ppp0 * 0.0.0.0/0 0.0.0.0/0
8 0 0 siprtpports 0 -- ippp0 * 0.0.0.0/0 0.0.0.0/0
9 0 0 siprtpports 0 -- eth1 * 0.0.0.0/0 0.0.0.0/0
10 8345 700K ACCEPT icmp -- ppp0 * 0.0.0.0/0 0.0.0.0/0
11 0 0 ACCEPT icmp -- ippp0 * 0.0.0.0/0 0.0.0.0/0
12 0 0 ACCEPT icmp -- eth1 * 0.0.0.0/0 0.0.0.0/0
13 4842 400K badtraffic 0 -- * * 0.0.0.0/0 0.0.0.0/0
Chain dmzholes (0 references)
num pkts bytes target prot opt in out source destination
Chain ipblock (6 references)
num pkts bytes target prot opt in out source destination
Chain ipsec (3 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:500
2 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:4500
3 0 0 ACCEPT esp -- * * 0.0.0.0/0 0.0.0.0/0
4 0 0 ACCEPT ah -- * * 0.0.0.0/0 0.0.0.0/0
Chain outbound (3 references)
num pkts bytes target prot opt in out source destination
1 154 13912 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
2 38739 2677K allows 0 -- * * 0.0.0.0/0 0.0.0.0/0
3 36219 2540K outgreen 0 -- eth0 * 0.0.0.0/0 0.0.0.0/0
Chain outgreen (1 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
2 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:22
3 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:23
4 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:23
5 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5631
6 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5631
7 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21
8 2 265 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:21
9 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:115
10 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:115
11 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:25
12 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:25
13 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:109
14 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:109
15 214 10272 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:110
16 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:110
17 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:143
18 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:143
19 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:465
20 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:465
21 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:995
22 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:995
23 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:993
24 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:993
25 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:119
26 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:119
27 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:563
28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:563
29 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:1863
30 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1863
31 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:4000
32 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:4000
33 12 616 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5190
34 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5190
35 14 672 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpts:6667:7000
36 330 42130 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:6667:7000
37 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5050
38 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5050
39 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:7070
40 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:7070
41 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:47624
42 1 131 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:47624
43 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
44 19 1880 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:80
45 705 34740 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
46 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:443
Chain outorange (0 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT 0 -- * * 0.0.0.0/0 0.0.0.0/0
Chain outpurple (0 references)
num pkts bytes target prot opt in out source destination
1 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22 reject-with icmp-port-unreachable
2 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:22 reject-with icmp-port-unreachable
3 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:23 reject-with icmp-port-unreachable
4 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:23 reject-with icmp-port-unreachable
5 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5631 reject-with icmp-port-unreachable
6 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5631 reject-with icmp-port-unreachable
7 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80 reject-with icmp-port-unreachable
8 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:80 reject-with icmp-port-unreachable
9 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443 reject-with icmp-port-unreachable
10 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:443 reject-with icmp-port-unreachable
11 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21 reject-with icmp-port-unreachable
12 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:21 reject-with icmp-port-unreachable
13 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:115 reject-with icmp-port-unreachable
14 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:115 reject-with icmp-port-unreachable
15 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:25 reject-with icmp-port-unreachable
16 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:25 reject-with icmp-port-unreachable
17 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:109 reject-with icmp-port-unreachable
18 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:109 reject-with icmp-port-unreachable
19 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:110 reject-with icmp-port-unreachable
20 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:110 reject-with icmp-port-unreachable
21 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:143 reject-with icmp-port-unreachable
22 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:143 reject-with icmp-port-unreachable
23 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:465 reject-with icmp-port-unreachable
24 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:465 reject-with icmp-port-unreachable
25 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:995 reject-with icmp-port-unreachable
26 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:995 reject-with icmp-port-unreachable
27 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:993 reject-with icmp-port-unreachable
28 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:993 reject-with icmp-port-unreachable
29 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:119 reject-with icmp-port-unreachable
30 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:119 reject-with icmp-port-unreachable
31 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:563 reject-with icmp-port-unreachable
32 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:563 reject-with icmp-port-unreachable
33 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:1863 reject-with icmp-port-unreachable
34 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1863 reject-with icmp-port-unreachable
35 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:4000 reject-with icmp-port-unreachable
36 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:4000 reject-with icmp-port-unreachable
37 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5190 reject-with icmp-port-unreachable
38 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5190 reject-with icmp-port-unreachable
39 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpts:6667:7000 reject-with icmp-port-unreachable
40 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:6667:7000 reject-with icmp-port-unreachable
41 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5050 reject-with icmp-port-unreachable
42 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5050 reject-with icmp-port-unreachable
43 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:7070 reject-with icmp-port-unreachable
44 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:7070 reject-with icmp-port-unreachable
45 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:47624 reject-with icmp-port-unreachable
46 0 0 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:47624 reject-with icmp-port-unreachable
47 0 0 ACCEPT 0 -- * * 0.0.0.0/0 0.0.0.0/0
Chain portfwf (4 references)
num pkts bytes target prot opt in out source destination
1 49 2548 ACCEPT tcp -- * * 0.0.0.0/0 192.168.1.128 state NEW tcp dpt:53137
2 93 6941 ACCEPT udp -- * * 0.0.0.0/0 192.168.1.128 state NEW udp dpt:53137
3 0 0 ACCEPT tcp -- * * 0.0.0.0/0 192.168.1.112 state NEW tcp dpt:5901
4 0 0 ACCEPT tcp -- * * 0.0.0.0/0 192.168.1.112 state NEW tcp dpt:80
5 5 268 ACCEPT tcp -- * * 0.0.0.0/0 192.168.1.11 state NEW tcp dpt:80
Chain secin (1 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT 0 -- ipsec0 * 0.0.0.0/0 0.0.0.0/0
Chain secout (1 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT 0 -- ipsec0 * 0.0.0.0/0 0.0.0.0/0
Chain siprtpports (3 references)
num pkts bytes target prot opt in out source destination
Chain spoof (3 references)
num pkts bytes target prot opt in out source destination
1 0 0 DROP 0 -- * * 192.168.1.0/24 0.0.0.0/0
Chain timedaccess (2 references)
num pkts bytes target prot opt in out source destination
Chain timedaction (0 references)
num pkts bytes target prot opt in out source destination
1 0 0 LOG 0 -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4 prefix `Denied-by-Timed-Access:-'
2 0 0 REJECT 0 -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
Chain xtaccess (1 references)
num pkts bytes target prot opt in out source destination
1 0 0 ACCEPT tcp -- ppp0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:113
2 0 0 ACCEPT tcp -- ippp0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:113
3 7 312 ACCEPT tcp -- ppp0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:441
4 0 0 ACCEPT tcp -- ippp0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:441
5 1 48 ACCEPT tcp -- ppp0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:222
6 0 0 ACCEPT tcp -- ippp0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:222