lauris
(usa Outra)
Enviado em 30/11/2015 - 19:33h
Primeiramente obrgado pelas respostas.
Segue
Chain INPUT (policy ACCEPT)
target prot opt source destination
traffic-count all -- 0.0.0.0/0 0.0.0.0/0
SSH-MONITOR all -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ES TABLISHED
LOG_DROP all -- 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
internal-service all -- 0.0.0.0/0 0.0.0.0/0
Chain FORWARD (policy ACCEPT)
target prot opt source destination
traffic-count all -- 0.0.0.0/0 0.0.0.0/0
DROPDNS all -- 0.0.0.0/0 0.0.0.0/0
LOG_DROP all -- 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
ACCEPT all -- 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ES TABLISHED
TCPMSS tcp -- 0.0.0.0/0 0.0.0.0/0 tcp flags:0x06/0x0 2 TCPMSS clamp to PMTU
REJECT tcp -- 192.168.0.0/24 69.63.176.0/20 tcp dpt:443 reject -with icmp-port-unreachable
REJECT udp -- 192.168.0.0/24 69.63.176.0/20 udp dpt:443 reject -with icmp-port-unreachable
REJECT tcp -- 192.168.0.0/24 66.220.144.0/20 tcp dpt:443 reject -with icmp-port-unreachable
REJECT udp -- 192.168.0.0/24 66.220.144.0/20 udp dpt:443 reject -with icmp-port-unreachable
REJECT tcp -- 192.168.0.0/24 66.220.144.0/20 tcp dpt:443 reject -with icmp-port-unreachable
REJECT udp -- 192.168.0.0/24 66.220.144.0/20 udp dpt:443 reject -with icmp-port-unreachable
REJECT tcp -- 192.168.0.0/24 69.171.224.0/19 tcp dpt:443 reject -with icmp-port-unreachable
REJECT udp -- 192.168.0.0/24 69.171.224.0/19 udp dpt:443 reject -with icmp-port-unreachable
REJECT tcp -- 192.168.0.0/24 69.171.224.0/19 tcp dpt:443 reject -with icmp-port-unreachable
REJECT udp -- 192.168.0.0/24 69.171.224.0/19 udp dpt:443 reject -with icmp-port-unreachable
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
traffic-count all -- 0.0.0.0/0 0.0.0.0/0
Chain DROPDNS (1 references)
target prot opt source destination
LOG_DROP tcp -- 0.0.0.0/0 0.0.0.0/0 tcp dpt:53
LOG_DROP udp -- 0.0.0.0/0 0.0.0.0/0 udp dpt:53
Chain LOG_DROP (6 references)
target prot opt source destination
DROP all -- 0.0.0.0/0 0.0.0.0/0
Chain SSH-MONITOR (1 references)
target prot opt source destination
tcp -- 0.0.0.0/0 0.0.0.0/0 tcp dpt:22 state N EW recent: SET name: SSH side: source mask: 255.255.255.255
LOG_DROP tcp -- 0.0.0.0/0 0.0.0.0/0 tcp dpt:22 state N EW recent: UPDATE seconds: 300 hit_count: 4 TTL-Match name: SSH side: source mas k: 255.255.255.255
Chain internal-service (1 references)
target prot opt source destination
RETURN icmp -- 0.0.0.0/0 0.0.0.0/0
RETURN all -- 0.0.0.0/0 0.0.0.0/0
RETURN 47 -- 0.0.0.0/0 0.0.0.0/0
RETURN all -- 0.0.0.0/0 0.0.0.0/0
LOG_DROP all -- 0.0.0.0/0 0.0.0.0/0
Chain traffic-count (3 references)
target prot opt source destination
all -- 0.0.0.0/0 0.0.0.0/0
all -- 0.0.0.0/0 0.0.0.0/0
all -- 0.0.0.0/0 0.0.0.0/0
all -- 0.0.0.0/0 0.0.0.0/0
all -- 0.0.0.0/0 0.0.0.0/0
all -- 0.0.0.0/0 0.0.0.0/0
ACCOUNT all -- 0.0.0.0/0 0.0.0.0/0 ACCOUNT addr 192.1 68.0.0/24 tname lan0
###########################################################################################################
Os REJECTS ali em cima é para facebook... tentei diversos comandos que fui pesquisando mas nenhum deu certo para conectar como FileZilla então exclui todos, não entendo muito de formar a regra :/
O FTP é via FileZilla então é a confguração padrão do software