Agnello George wrote:
A VZ_INPUT -p tcp -m tcp --dport 22 -j ACCEPT
-A VZ_INPUT -m tcp -p tcp --dport 25 -j ACCEPT
-A VZ_INPUT -p udp -m udp --sport 53 -j ACCEPT
-A VZ_INPUT -p tcp -m tcp --sport 80 --dport 1023:65535 -j ACCEPT
-A VZ_OUTPUT -p tcp -m tcp --sport 22 -j ACCEPT
-A VZ_OUTPUT -p udp -m udp --sport 1023:65535 --dport 53 -j ACCEPT
-A VZ_OUTPUT -p tcp -m tcp --dport 80 -j ACCEPT
COMMIT

This is what I use. Modify as per your requirements.

iptables -A INPUT -i lo -j ACCEPT
iptables -A INPUT -i eth0 -j ACCEPT
iptables -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT
iptables -A INPUT -m state --state NEW -p tcp --dport 22 -j ACCEPT
iptables -A INPUT -m state --state NEW -p tcp --dport 80 -j ACCEPT
iptables -A INPUT -m state --state NEW -p tcp --dport 443 -j ACCEPT


--
Regards,
विवेक ज. पाटणकर (Vivek J. Patankar)

Registered Linux User #374218
Fedora release 7 (Moonshine)
Linux 2.6.22.4-65.fc7 x86_64

--
http://mm.glug-bom.org/mailman/listinfo/linuxers

Reply via email to