Chain INPUT policy ACCEPT packets bytes pkts bytes target prot opt in

 1
 2
 3
 4
 5
 6
 7
 8
 9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp -- vlan1 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
3283 319K MACS all -- br0 * 0.0.0.0/0 0.0.0.0/0
0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
3449 215K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
64 3840 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0 state NEW
158 12416 ACCEPT all -- br0 * 0.0.0.0/0 0.0.0.0/0 state NEW
15 420 ACCEPT 2 -- * * 0.0.0.0/0 224.0.0.0/4
0 0 ACCEPT udp -- * * 0.0.0.0/0 224.0.0.0/4
0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:81
0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:666
354 44098 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
Chain FORWARD (policy ACCEPT 80 packets, 4210 bytes)
pkts bytes target prot opt in out source destination
1319 549K MACS all -- br0 * 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT all -- br0 br0 0.0.0.0/0 0.0.0.0/0
0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
0 0 ACCEPT udp -- * * 0.0.0.0/0 224.0.0.0/4
2442 1466K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
26 1272 DROP all -- !br0 vlan1 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate DNAT
3 331 ACCEPT all -- tun0 * 10.8.0.0/24 0.0.0.0/0
0 0 ACCEPT all -- * tun0 0.0.0.0/0 10.8.0.0/24
Chain OUTPUT (policy ACCEPT 4389 packets, 1271K bytes)
pkts bytes target prot opt in out source destination
Chain MACS (2 references)
pkts bytes target prot opt in out source destination
4011 691K RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 MAC 00:04:61:AF:F6:07
0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 MAC 00:13:8F:66:8D:18
0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 MAC 00:13:D4:E9:22:10
147 16928 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 MAC 00:1E:58:A0:38:14
1 70 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 MAC 00:19:DB:6C:5B:AF
0 0 RETURN all -- * * 0.0.0.0/0 0.0.0.0/0 MAC 00:01:6C:A6:40:72
443 160K DROP all -- * * 0.0.0.0/0 0.0.0.0/0
Chain SECURITY (0 references)
pkts bytes target prot opt in out source destination
0 0 RETURN tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x16/0x02 limit: avg 1/sec burst 5
0 0 RETURN tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x17/0x04 limit: avg 1/sec burst 5
0 0 RETURN udp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 5/sec burst 5
0 0 RETURN icmp -- * * 0.0.0.0/0 0.0.0.0/0 limit: avg 5/sec burst 5
0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
Chain logaccept (0 references)
pkts bytes target prot opt in out source destination
0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 state NEW LOG flags 7 level 4 prefix `ACCEPT '
0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
Chain logdrop (0 references)