filipeks
(usa Debian)
Enviado em 04/10/2011 - 10:47h
Ja adicionei as regras como vc me orientou!
cada uma indivídual! mas, o bloqueio continua! =/
Não to entendo o que possa estar acontecendo!
VN-Firewall:~# iptables -L
Chain INPUT (policy DROP)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere
ACCEPT all -- anywhere anywhere
ACCEPT all -- anywhere anywhere
ACCEPT tcp -- anywhere anywhere tcp flags:FIN,SYN,RST,ACK/RST limit: avg 1/sec burst 5
DROP all -- anywhere anywhere state INVALID
ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED
ACCEPT tcp -- anywhere anywhere tcp dpt:ssh
ACCEPT tcp -- anywhere anywhere tcp dpt:webmin
ACCEPT tcp -- anywhere anywhere tcp dpt:smtp
ACCEPT tcp -- anywhere anywhere tcp dpt:pop3
ACCEPT tcp -- anywhere anywhere tcp dpt:imap2
ACCEPT tcp -- anywhere anywhere tcp dpt:submission
ACCEPT tcp -- anywhere anywhere tcp dpt:pop3s
ACCEPT udp -- anywhere anywhere udp dpt:25
ACCEPT udp -- anywhere anywhere udp dpt:pop3
ACCEPT udp -- anywhere anywhere udp dpt:imap2
ACCEPT udp -- anywhere anywhere udp dpt:submission
ACCEPT udp -- anywhere anywhere udp dpt:pop3s
ACCEPT tcp -- anywhere anywhere multiport dports telnet,smtp,pop3,imap2,ldap,https,ssmtp,submission,imaps,pop3s,submission,ms-sql-m,gnunet,2095,3389
ACCEPT udp -- anywhere anywhere multiport dports 23,25,pop3,imap2,ldap,https,465,submission,imaps,pop3s,submission,ms-sql-m,gnunet,2095,3389
Chain FORWARD (policy DROP)
target prot opt source destination
ACCEPT all -- 10.1.1.111 anywhere
ACCEPT all -- 10.1.1.11 anywhere
ACCEPT all -- 10.1.1.110 anywhere
ACCEPT all -- 10.1.1.0/24 anywhere
ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED
ACCEPT icmp -- anywhere anywhere
ACCEPT icmp -- anywhere anywhere icmp echo-request limit: avg 1/sec burst 5
ACCEPT udp -- anywhere anywhere udp dpt:domain
ACCEPT tcp -- anywhere anywhere tcp dpt:smtp
ACCEPT tcp -- anywhere anywhere tcp dpt:pop3
ACCEPT tcp -- anywhere anywhere tcp dpt:imap2
ACCEPT tcp -- anywhere anywhere tcp dpt:submission
ACCEPT tcp -- anywhere anywhere tcp dpt:pop3s
ACCEPT udp -- anywhere anywhere udp dpt:25
ACCEPT udp -- anywhere anywhere udp dpt:pop3
ACCEPT udp -- anywhere anywhere udp dpt:imap2
ACCEPT udp -- anywhere anywhere udp dpt:submission
ACCEPT udp -- anywhere anywhere udp dpt:pop3s
ACCEPT tcp -- anywhere anywhere multiport dports telnet,smtp,pop3,imap2,ldap,https,ssmtp,submission,imaps,pop3s,submission,ms-sql-m,gnunet,2095,3389
ACCEPT udp -- anywhere anywhere multiport dports 23,25,pop3,imap2,ldap,https,465,submission,imaps,pop3s,submission,ms-sql-m,gnunet,2095,3389
ACCEPT all -- 10.1.1.0/24 9.202.186.in-addr.arpa
ACCEPT all -- 10.1.1.0/24 hm401b.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 hm401b.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 hm476.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 maggie0001.email.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 maggie0002.email.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 maggie0005.email.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 maggie0004.email.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 maggie0004.email.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 maggie0001.email.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 maggie0002.email.locaweb.com.br
ACCEPT all -- 10.1.1.0/24 maggie0005.email.locaweb.com.br
ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere