# sample configuration for iptables service # you can edit this manually or use system-config-firewall # please do not ask us to add additional ports/services to this default configuration *filter :FORWARD ACCEPT [0:0] :INPUT_ACCEPT - [0:0] :INPUT ACCEPT [0:0] :OUTPUT ACCEPT [0:0] :INPUT_DROP - [0:0] :OUTPUT_DROP - [0:0] :OUTPUT_ACCEPT - [0:0] -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT -A INPUT -p icmp -j ACCEPT -A INPUT -i lo -j ACCEPT -A INPUT -p tcp -m state -m tcp --dport 22 --state NEW -j ACCEPT -A INPUT -p udp -m udp --dport 137:138 -j ACCEPT -A FORWARD -p tcp -m tcp --dport 5355 -j ACCEPT -A FORWARD -p udp -m udp --dport 5355 -j ACCEPT -A FORWARD -j REJECT --reject-with icmp-host-prohibited -A INPUT -p tcp -m tcp --dport 55414 -j ACCEPT -A INPUT -p tcp -m tcp --dport 5355 -j ACCEPT -A INPUT -p udp -m udp --dport 5355 -j ACCEPT -A INPUT -p tcp -m tcp --dport 10000 -j ACCEPT -A INPUT -p tcp -m tcp --dport 80 -j ACCEPT -A INPUT -p tcp -m tcp --dport 445 -j ACCEPT -A INPUT -s 192.168.0.106 -j ACCEPT ### -A INPUT -p tcp -m tcp -s xxxMULTIPLE IPSxxx --dport 55413 -j INPUT_ACCEPT -A INPUT -p tcp -m tcp -s xxxMULTIPLE IPSxxx --dport 55415 -j INPUT_ACCEPT -A INPUT -p tcp -m tcp -s xxxMULTIPLE IPSxxx --dport 35621 -j INPUT_ACCEPT -A INPUT -p tcp -m tcp -s xxxMULTIPLE IPSxxx --dport 35623 -j INPUT_ACCEPT -A INPUT -p udp -m udp -s xxxMULTIPLE IPSxxx --dport 35623 -j INPUT_ACCEPT -A INPUT -p udp -m udp -s xxxMULTIPLE IPSxxx --dport 35622 -j INPUT_ACCEPT ### -A INPUT -p tcp -m tcp --dport 55413 -j INPUT_DROP -A INPUT -p tcp -m tcp --dport 55415 -j INPUT_DROP -A INPUT -p tcp -m tcp --dport 35621 -j INPUT_DROP -A INPUT -p tcp -m tcp --dport 35623 -j INPUT_DROP -A INPUT -p udp -m udp --dport 35622 -j INPUT_DROP -A OUTPUT -p tcp -m tcp --dport 139 -j ACCEPT -A OUTPUT -p tcp -m tcp --dport 445 -j ACCEPT -A OUTPUT -p tcp -m tcp --dport 80 -j ACCEPT -A OUTPUT -p tcp -m tcp --dport 5355 -j ACCEPT -A OUTPUT -p udp -m udp --dport 5355 -j ACCEPT -A OUTPUT -p tcp -m tcp --dport 443 -j ACCEPT -A OUTPUT -p udp -m udp --dport 137:138 -j ACCEPT -A OUTPUT -p udp -m udp -d xxxMULTIPLE IPSxxx --dport 35622 -j OUTPUT_ACCEPT -A OUTPUT -p tcp -m tcp -s xxxMULTIPLE IPSxxx --dport 35621 -j OUTPUT_ACCEPT -A OUTPUT -p tcp -m tcp -s xxxMULTIPLE IPSxxx --dport 35623 -j OUTPUT_ACCEPT -A OUTPUT -p udp -m udp -d xxxMULTIPLE IPSxxx --dport 35623 -j OUTPUT_ACCEPT -A INPUT_ACCEPT -j ACCEPT -A INPUT_DROP -j DROP -A OUTPUT_ACCEPT -j ACCEPT -A OUTPUT_DROP -j DROP -A OUTPUT -p udp -m udp --dport 35623 -j OUTPUT_DROP -A INPUT -j REJECT --reject-with icmp-host-prohibited COMMIT # Generated by webmin *mangle :FORWARD ACCEPT [0:0] :INPUT ACCEPT [0:0] :OUTPUT ACCEPT [0:0] :PREROUTING ACCEPT [0:0] :POSTROUTING ACCEPT [0:0] COMMIT # Completed # Generated by webmin *nat :INPUT ACCEPT [0:0] :OUTPUT ACCEPT [0:0] :PREROUTING ACCEPT [0:0] :POSTROUTING ACCEPT [0:0] COMMIT # Completed