mirror of https://gitee.com/openkylin/libvirt.git
73 lines
763 B
Plaintext
73 lines
763 B
Plaintext
iptables \
|
|
-w \
|
|
-A FP-vnet0 \
|
|
-p tcp \
|
|
--dport 22 \
|
|
-j ACCEPT
|
|
iptables \
|
|
-w \
|
|
-A FJ-vnet0 \
|
|
-p tcp \
|
|
--sport 22 \
|
|
-j RETURN
|
|
iptables \
|
|
-w \
|
|
-A HJ-vnet0 \
|
|
-p tcp \
|
|
--sport 22 \
|
|
-j RETURN
|
|
iptables \
|
|
-w \
|
|
-A FJ-vnet0 \
|
|
-p tcp \
|
|
--sport 80 \
|
|
-m state \
|
|
--state ESTABLISHED \
|
|
-j RETURN
|
|
iptables \
|
|
-w \
|
|
-A FP-vnet0 \
|
|
-p tcp \
|
|
--dport 80 \
|
|
-m state \
|
|
--state NEW,ESTABLISHED \
|
|
-j ACCEPT
|
|
iptables \
|
|
-w \
|
|
-A HJ-vnet0 \
|
|
-p tcp \
|
|
--sport 80 \
|
|
-m state \
|
|
--state ESTABLISHED \
|
|
-j RETURN
|
|
iptables \
|
|
-w \
|
|
-A FJ-vnet0 \
|
|
-p tcp \
|
|
-j REJECT
|
|
iptables \
|
|
-w \
|
|
-A FP-vnet0 \
|
|
-p tcp \
|
|
-j REJECT
|
|
iptables \
|
|
-w \
|
|
-A HJ-vnet0 \
|
|
-p tcp \
|
|
-j REJECT
|
|
iptables \
|
|
-w \
|
|
-A FJ-vnet0 \
|
|
-p all \
|
|
-j DROP
|
|
iptables \
|
|
-w \
|
|
-A FP-vnet0 \
|
|
-p all \
|
|
-j DROP
|
|
iptables \
|
|
-w \
|
|
-A HJ-vnet0 \
|
|
-p all \
|
|
-j DROP
|