📄 firewall-standalone
字号:
#!/bin/sh## firewall-standalone This script sets up firewall rules for a standalone# machine## Copyright (C) 2005 Roaring Penguin Software Inc. This software may# be distributed under the terms of the GNU General Public License, version# 2 or any later version.# LIC: GPL# Interface to InternetEXTIF=ppp+iptables -P INPUT ACCEPTiptables -P OUTPUT ACCEPTiptables -P FORWARD DROPiptables -F FORWARDiptables -F INPUTiptables -F OUTPUT# Deny TCP and UDP packets to privileged portsiptables -A INPUT -p udp -i $EXTIF --dport 0:1023 -j LOGiptables -A INPUT -p tcp -i $EXTIF --dport 0:1023 -j LOGiptables -A INPUT -p udp -i $EXTIF --dport 0:1023 -j DROPiptables -A INPUT -p tcp -i $EXTIF --dport 0:1023 -j DROP# Deny TCP connection attemptsiptables -A INPUT -i $EXTIF -p tcp --syn -j LOGiptables -A INPUT -i $EXTIF -p tcp --syn -j DROP# Deny ICMP echo-requestsiptables -A INPUT -i $EXTIF -p icmp --icmp-type echo-request -j DROP
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -