Shorewall 4.5.5.3 Dump at smclan.org - Sat Jun  8 11:06:16 BST 2013

Shorewall is running
State:Started (Tue Jun  4 11:58:19 BST 2013) from /etc/shorewall/
Counters reset Tue Jun  4 11:58:19 BST 2013

Chain INPUT (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source               destination         
5904K  314M net2fw     all  --  eth0   *       0.0.0.0/0            0.0.0.0/0           
1028K  492M ACCEPT     all  --  lo     *       0.0.0.0/0            0.0.0.0/0           
    0     0 Reject     all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 LOG        all  --  *      *       0.0.0.0/0            0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:INPUT:REJECT:"
    0     0 reject     all  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto] 

Chain FORWARD (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 Reject     all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 LOG        all  --  *      *       0.0.0.0/0            0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:FORWARD:REJECT:"
    0     0 reject     all  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto] 

Chain OUTPUT (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source               destination         
5156K 5532M fw2net     all  --  *      eth0    0.0.0.0/0            0.0.0.0/0           
1028K  492M ACCEPT     all  --  *      lo      0.0.0.0/0            0.0.0.0/0           
    0     0 Reject     all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 LOG        all  --  *      *       0.0.0.0/0            0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:OUTPUT:REJECT:"
    0     0 reject     all  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto] 

Chain Broadcast (2 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0            ADDRTYPE match dst-type BROADCAST
    0     0 DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0            ADDRTYPE match dst-type MULTICAST
    0     0 DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0            ADDRTYPE match dst-type ANYCAST
    0     0 DROP       all  --  *      *       0.0.0.0/0            224.0.0.0/4         

Chain Drop (1 references)
 pkts bytes target     prot opt in     out     source               destination         
38989 1657K            all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 reject     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:113 /* Auth */
38989 1657K Broadcast  all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0            icmptype 3 code 4 /* Needed ICMP types */
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0            icmptype 11 /* Needed ICMP types */
38989 1657K Invalid    all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            multiport dports 135,445 /* SMB */
    4   312 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:137:139 /* SMB */
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp spt:137 dpts:1024:65535 /* SMB */
 1342 61260 DROP       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            multiport dports 135,139,445 /* SMB */
    1   125 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpt:1900 /* UPnP */
 4010  196K NotSyn     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp spt:53 /* Late DNS Replies */

Chain Invalid (2 references)
 pkts bytes target     prot opt in     out     source               destination         
 5553  258K DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0            ctstate INVALID

Chain NotSyn (2 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcpflags:! 0x17/0x02

Chain Reject (3 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0            all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 reject     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:113 /* Auth */
    0     0 Broadcast  all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0            icmptype 3 code 4 /* Needed ICMP types */
    0     0 ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0            icmptype 11 /* Needed ICMP types */
    0     0 Invalid    all  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 reject     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            multiport dports 135,445 /* SMB */
    0     0 reject     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:137:139 /* SMB */
    0     0 reject     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp spt:137 dpts:1024:65535 /* SMB */
    0     0 reject     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            multiport dports 135,139,445 /* SMB */
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpt:1900 /* UPnP */
    0     0 NotSyn     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 DROP       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp spt:53 /* Late DNS Replies */

Chain blacklst (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       all  --  *      *       66.225.231.2         0.0.0.0/0           
    0     0 DROP       all  --  *      *       220.130.123.82       0.0.0.0/0           

Chain dynamic (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain fw2net (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:67:68
5155K 5532M ACCEPT     all  --  *      *       0.0.0.0/0            0.0.0.0/0            ctstate RELATED,ESTABLISHED
 1227 78510 ACCEPT     all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain logdrop (0 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain logflags (5 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 LOG        all  --  *      *       0.0.0.0/0            0.0.0.0/0            LOG flags 4 level 6 prefix "Shorewall:logflags:DROP:"
    0     0 DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain logreject (0 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 reject     all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain net2fw (1 references)
 pkts bytes target     prot opt in     out     source               destination         
54043 2506K blacklst   all  --  *      *       0.0.0.0/0            0.0.0.0/0            ctstate INVALID,NEW
54043 2506K dynamic    all  --  *      *       0.0.0.0/0            0.0.0.0/0            ctstate INVALID,NEW
54043 2506K smurfs     all  --  *      *       0.0.0.0/0            0.0.0.0/0            ctstate INVALID,NEW
    0     0 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:67:68
1674K   79M tcpflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           
5850K  312M ACCEPT     all  --  *      *       0.0.0.0/0            0.0.0.0/0            ctstate RELATED,ESTABLISHED
 4201  269K ACCEPT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0            icmptype 8 limit: up to 10/min burst 20 mode srcip /* Ping */
  212 12060 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:22 limit: up to 3/min burst 5 mode srcip /* SSH */
 1525  102K ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpt:53 limit: up to 16/min burst 5 mode srcip /* DNS */
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:53 limit: up to 16/min burst 5 mode srcip /* DNS */
  103  7118 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpt:53 limit: up to 16/min burst 5 mode srcip /* DNS */
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:53 limit: up to 16/min burst 5 mode srcip /* DNS */
 7502  393K ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 limit: up to 32/min burst 5 mode srcip /* HTTP */
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:5432 limit: up to 3/min burst 5 mode srcip /* PostgreSQL */
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpts:7777:7787 limit: up to 2/min burst 5 mode srcip
 1314 58365 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:7777:7787 limit: up to 2/min burst 5 mode srcip
  197  6895 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:8777:8787 limit: up to 2/min burst 5 mode srcip
    0     0 ACCEPT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:9777:9787 limit: up to 2/min burst 5 mode srcip
    0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:64738 limit: up to 3/min burst 5 mode srcip
38989 1657K Drop       all  --  *      *       0.0.0.0/0            0.0.0.0/0           
32089 1338K DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain reject (10 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0            ADDRTYPE match src-type BROADCAST
    0     0 DROP       all  --  *      *       224.0.0.0/4          0.0.0.0/0           
    0     0 DROP       2    --  *      *       0.0.0.0/0            0.0.0.0/0           
    0     0 REJECT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            reject-with tcp-reset
    0     0 REJECT     udp  --  *      *       0.0.0.0/0            0.0.0.0/0            reject-with icmp-port-unreachable
    0     0 REJECT     icmp --  *      *       0.0.0.0/0            0.0.0.0/0            reject-with icmp-host-unreachable
    0     0 REJECT     all  --  *      *       0.0.0.0/0            0.0.0.0/0            reject-with icmp-host-prohibited

Chain shorewall (0 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain smurflog (2 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 LOG        all  --  *      *       0.0.0.0/0            0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:smurfs:DROP:"
    0     0 DROP       all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain smurfs (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 RETURN     all  --  *      *       0.0.0.0              0.0.0.0/0           
    0     0 smurflog   all  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto]  ADDRTYPE match src-type BROADCAST
    0     0 smurflog   all  --  *      *       224.0.0.0/4          0.0.0.0/0           [goto] 

Chain tcpflags (1 references)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto]  tcpflags: 0x3F/0x29
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto]  tcpflags: 0x3F/0x00
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto]  tcpflags: 0x06/0x06
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto]  tcpflags: 0x03/0x03
    0     0 logflags   tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           [goto]  tcp spt:0flags: 0x17/0x02

Log (/var/log/messages)


NAT Table

Chain PREROUTING (policy ACCEPT 19703 packets, 1141K bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain INPUT (policy ACCEPT 13607 packets, 794K bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain OUTPUT (policy ACCEPT 10163 packets, 610K bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain POSTROUTING (policy ACCEPT 10163 packets, 610K bytes)
 pkts bytes target     prot opt in     out     source               destination         

Mangle Table

Chain PREROUTING (policy ACCEPT 6911K packets, 796M bytes)
 pkts bytes target     prot opt in     out     source               destination         
6931K  807M tcpre      all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain INPUT (policy ACCEPT 6911K packets, 796M bytes)
 pkts bytes target     prot opt in     out     source               destination         
6931K  807M tcin       all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source               destination         
    0     0 MARK       all  --  *      *       0.0.0.0/0            0.0.0.0/0            MARK and 0xffffff00
    0     0 tcfor      all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain OUTPUT (policy ACCEPT 6164K packets, 6016M bytes)
 pkts bytes target     prot opt in     out     source               destination         
6184K 6024M tcout      all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain POSTROUTING (policy ACCEPT 6164K packets, 6016M bytes)
 pkts bytes target     prot opt in     out     source               destination         
6184K 6024M tcpost     all  --  *      *       0.0.0.0/0            0.0.0.0/0           

Chain tcfor (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain tcin (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain tcout (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain tcpost (1 references)
 pkts bytes target     prot opt in     out     source               destination         

Chain tcpre (1 references)
 pkts bytes target     prot opt in     out     source               destination         
5904K  314M MARK       all  --  eth0   *       0.0.0.0/0            0.0.0.0/0            MARK set 0x1
5905K  315M MARK       all  --  *      *       0.0.0.0/0            78.110.162.232/29    MARK set 0x1
55735 3567K MARK       icmp --  *      *       0.0.0.0/0            0.0.0.0/0            icmptype 8 MARK set 0x2
    0     0 MARK       icmp --  *      *       0.0.0.0/0            0.0.0.0/0            icmptype 0 MARK set 0x2
4111K  228M MARK       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:7777:7787 MARK set 0x3
  926 31682 MARK       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:8777:8787 MARK set 0x3
    0     0 MARK       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpts:9777:9787 MARK set 0x3
    0     0 MARK       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpts:7777:7787 MARK set 0x3
    0     0 MARK       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:64738 MARK set 0x4
1662K   74M MARK       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            multiport dports 80,443,21,25 MARK set 0x5
 3229 4083K MARK       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            multiport sports 80,443,21,25 MARK set 0x5
 3438  236K MARK       udp  --  *      *       0.0.0.0/0            0.0.0.0/0            udp dpt:53 MARK set 0x6
    0     0 MARK       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:53 MARK set 0x6
 357K   50M MARK       tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:5432 MARK set 0x7

Raw Table

Chain PREROUTING (policy ACCEPT 6911K packets, 796M bytes)
 pkts bytes target     prot opt in     out     source               destination         

Chain OUTPUT (policy ACCEPT 6164K packets, 6016M bytes)
 pkts bytes target     prot opt in     out     source               destination         

Conntrack Table (32 out of 65536)

tcp      6 429577 ESTABLISHED src=127.0.0.1 dst=127.0.0.1 sport=38713 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=38713 [ASSURED] mark=4 use=2
udp      17 159 src=78.110.162.234 dst=216.98.52.148 sport=6780 dport=41006 src=216.98.52.148 dst=78.110.162.234 sport=41006 dport=6780 [ASSURED] mark=0 use=2
tcp      6 429577 ESTABLISHED src=127.0.0.1 dst=127.0.0.1 sport=38707 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=38707 [ASSURED] mark=4 use=2
tcp      6 429183 ESTABLISHED src=127.0.0.1 dst=127.0.0.1 sport=38700 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=38700 [ASSURED] mark=4 use=2
tcp      6 429577 ESTABLISHED src=127.0.0.1 dst=127.0.0.1 sport=38709 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=38709 [ASSURED] mark=4 use=2
udp      17 166 src=78.110.162.234 dst=216.98.52.148 sport=6779 dport=41006 src=216.98.52.148 dst=78.110.162.234 sport=41006 dport=6779 [ASSURED] mark=0 use=2
tcp      6 57 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3834 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3834 [ASSURED] mark=0 use=2
tcp      6 83 TIME_WAIT src=127.0.0.1 dst=127.0.0.1 sport=42215 dport=9000 src=127.0.0.1 dst=127.0.0.1 sport=9000 dport=42215 [ASSURED] mark=0 use=2
tcp      6 57 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3835 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3835 [ASSURED] mark=0 use=2
tcp      6 431958 ESTABLISHED src=127.0.0.1 dst=127.0.0.1 sport=38711 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=38711 [ASSURED] mark=4 use=2
tcp      6 1 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3825 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3825 [ASSURED] mark=0 use=2
tcp      6 431993 ESTABLISHED src=127.0.0.1 dst=127.0.0.1 sport=38701 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=38701 [ASSURED] mark=4 use=2
tcp      6 57 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3833 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3833 [ASSURED] mark=0 use=2
udp      17 160 src=78.110.162.234 dst=216.98.52.137 sport=5777 dport=44000 src=216.98.52.137 dst=78.110.162.234 sport=44000 dport=5777 [ASSURED] mark=0 use=2
udp      17 179 src=83.10.8.217 dst=78.110.162.234 sport=1253 dport=7778 src=78.110.162.234 dst=83.10.8.217 sport=7778 dport=1253 [ASSURED] mark=0 use=2
tcp      6 2 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3827 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3827 [ASSURED] mark=0 use=2
udp      17 178 src=127.0.0.1 dst=127.0.0.1 sport=44704 dport=44704 src=127.0.0.1 dst=127.0.0.1 sport=44704 dport=44704 [ASSURED] mark=1 use=2
tcp      6 2 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3828 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3828 [ASSURED] mark=0 use=2
tcp      6 14 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3830 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3830 [ASSURED] mark=0 use=2
tcp      6 83 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3840 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3840 [ASSURED] mark=0 use=2
tcp      6 3 CLOSE src=127.0.0.1 dst=127.0.0.1 sport=33901 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=33901 [ASSURED] mark=0 use=2
tcp      6 113 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3841 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3841 [ASSURED] mark=0 use=2
udp      17 172 src=78.110.162.234 dst=216.98.52.148 sport=6778 dport=41006 src=216.98.52.148 dst=78.110.162.234 sport=41006 dport=6778 [ASSURED] mark=0 use=2
tcp      6 429577 ESTABLISHED src=127.0.0.1 dst=127.0.0.1 sport=38704 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=38704 [ASSURED] mark=4 use=2
tcp      6 52 TIME_WAIT src=127.0.0.1 dst=127.0.0.1 sport=42213 dport=9000 src=127.0.0.1 dst=127.0.0.1 sport=9000 dport=42213 [ASSURED] mark=0 use=2
udp      17 174 src=78.110.162.234 dst=216.98.52.148 sport=6777 dport=41006 src=216.98.52.148 dst=78.110.162.234 sport=41006 dport=6777 [ASSURED] mark=0 use=2
udp      17 159 src=78.110.162.234 dst=216.98.52.136 sport=5778 dport=44000 src=216.98.52.136 dst=78.110.162.234 sport=44000 dport=5778 [ASSURED] mark=0 use=2
tcp      6 431999 ESTABLISHED src=91.214.231.154 dst=78.110.162.234 sport=3837 dport=22 src=78.110.162.234 dst=91.214.231.154 sport=22 dport=3837 [ASSURED] mark=0 use=2
tcp      6 113 TIME_WAIT src=127.0.0.1 dst=127.0.0.1 sport=42217 dport=9000 src=127.0.0.1 dst=127.0.0.1 sport=9000 dport=42217 [ASSURED] mark=0 use=2
tcp      6 429577 ESTABLISHED src=127.0.0.1 dst=127.0.0.1 sport=38705 dport=5432 src=127.0.0.1 dst=127.0.0.1 sport=5432 dport=38705 [ASSURED] mark=4 use=2
icmp     1 29 src=83.10.8.217 dst=78.110.162.234 type=8 code=0 id=45065 src=78.110.162.234 dst=83.10.8.217 type=0 code=0 id=45065 mark=0 use=2
tcp      6 52 TIME_WAIT src=91.214.231.154 dst=78.110.162.234 sport=3832 dport=80 src=78.110.162.234 dst=91.214.231.154 sport=80 dport=3832 [ASSURED] mark=0 use=2

IP Configuration

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 16436 qdisc noqueue state UNKNOWN 
    inet 127.0.0.1/8 scope host lo
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc htb state UP qlen 1000
    inet 78.110.162.234/29 brd 78.110.162.239 scope global eth0

IP Stats

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 16436 qdisc noqueue state UNKNOWN mode DEFAULT 
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    RX: bytes  packets  errors  dropped overrun mcast   
    26431095100 79902181 0       0       0       0      
    TX: bytes  packets  errors  dropped carrier collsns 
    26431095100 79902181 0       0       0       0      
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc htb state UP mode DEFAULT qlen 1000
    link/ether 00:30:48:00:d2:9a brd ff:ff:ff:ff:ff:ff
    RX: bytes  packets  errors  dropped overrun mcast   
    53975270127 325237510 0       0       0       2      
    TX: bytes  packets  errors  dropped carrier collsns 
    241597506529 413294752 0       0       0       0      
3: eth1: <BROADCAST,MULTICAST> mtu 1500 qdisc noop state DOWN mode DEFAULT qlen 1000
    link/ether 00:30:48:00:d2:9b brd ff:ff:ff:ff:ff:ff
    RX: bytes  packets  errors  dropped overrun mcast   
    0          0        0       0       0       0      
    TX: bytes  packets  errors  dropped carrier collsns 
    0          0        0       0       0       0      

Per-IP Counters

   iptaccount is not installed

/proc

   /proc/version = Linux version 3.2.0-4-amd64 (debian-kernel@lists.debian.org) (gcc version 4.6.3 (Debian 4.6.3-14) ) #1 SMP Debian 3.2.35-2
   /proc/sys/net/ipv4/ip_forward = 1
   /proc/sys/net/ipv4/icmp_echo_ignore_all = 0
   /proc/sys/net/ipv4/conf/all/proxy_arp = 0
   /proc/sys/net/ipv4/conf/all/arp_filter = 0
   /proc/sys/net/ipv4/conf/all/arp_ignore = 0
   /proc/sys/net/ipv4/conf/all/rp_filter = 1
   /proc/sys/net/ipv4/conf/all/log_martians = 0
   /proc/sys/net/ipv4/conf/default/proxy_arp = 0
   /proc/sys/net/ipv4/conf/default/arp_filter = 0
   /proc/sys/net/ipv4/conf/default/arp_ignore = 0
   /proc/sys/net/ipv4/conf/default/rp_filter = 1
   /proc/sys/net/ipv4/conf/default/log_martians = 1
   /proc/sys/net/ipv4/conf/eth0/proxy_arp = 0
   /proc/sys/net/ipv4/conf/eth0/arp_filter = 0
   /proc/sys/net/ipv4/conf/eth0/arp_ignore = 0
   /proc/sys/net/ipv4/conf/eth0/rp_filter = 1
   /proc/sys/net/ipv4/conf/eth0/log_martians = 1
   /proc/sys/net/ipv4/conf/eth1/proxy_arp = 0
   /proc/sys/net/ipv4/conf/eth1/arp_filter = 0
   /proc/sys/net/ipv4/conf/eth1/arp_ignore = 0
   /proc/sys/net/ipv4/conf/eth1/rp_filter = 1
   /proc/sys/net/ipv4/conf/eth1/log_martians = 1
   /proc/sys/net/ipv4/conf/lo/proxy_arp = 0
   /proc/sys/net/ipv4/conf/lo/arp_filter = 0
   /proc/sys/net/ipv4/conf/lo/arp_ignore = 0
   /proc/sys/net/ipv4/conf/lo/rp_filter = 1
   /proc/sys/net/ipv4/conf/lo/log_martians = 1

Routing Rules

0:	from all lookup local 
32766:	from all lookup main 
32767:	from all lookup default 

Table default:


Table local:

local 78.110.162.234 dev eth0 proto kernel scope host src 78.110.162.234
local 127.0.0.1 dev lo proto kernel scope host src 127.0.0.1
local 127.0.0.0/8 dev lo proto kernel scope host src 127.0.0.1
broadcast 78.110.162.239 dev eth0 proto kernel scope link src 78.110.162.234
broadcast 78.110.162.232 dev eth0 proto kernel scope link src 78.110.162.234
broadcast 127.255.255.255 dev lo proto kernel scope link src 127.0.0.1
broadcast 127.0.0.0 dev lo proto kernel scope link src 127.0.0.1

Table main:

78.110.162.232/29 dev eth0 proto kernel scope link src 78.110.162.234
default via 78.110.162.233 dev eth0

ARP

? (78.110.162.233) at ac:4b:c8:2a:51:01 [ether] on eth0

Modules

ip_set                 26649  1 xt_set
iptable_filter         12536  1 
iptable_mangle         12536  1 
iptable_nat            12928  0 
iptable_raw            12524  0 
ip_tables              22042  4 iptable_filter,iptable_mangle,iptable_nat,iptable_raw
ipt_ah                 12453  0 
ipt_CLUSTERIP          13045  0 
ipt_ecn                12456  0 
ipt_ECN                12456  0 
ipt_LOG                12605  5 
ipt_MASQUERADE         12594  0 
ipt_NETMAP             12465  0 
ipt_REDIRECT           12471  0 
ipt_REJECT             12502  4 
ipt_ULOG               16833  0 
nf_conntrack           52720  35 xt_conntrack,nf_conntrack_ipv6,xt_state,xt_connmark,nf_conntrack_ipv4,nf_nat,iptable_nat,xt_helper,nf_conntrack_amanda,nf_conntrack_ftp,nf_conntrack_h323,nf_conntrack_irc,nf_conntrack_broadcast,nf_conntrack_netbios_ns,nf_conntrack_netlink,nf_conntrack_proto_gre,nf_conntrack_pptp,nf_conntrack_proto_sctp,nf_conntrack_proto_udplite,nf_conntrack_sip,nf_conntrack_tftp,nf_conntrack_sane,nf_nat_amanda,nf_nat_ftp,nf_nat_h323,nf_nat_irc,nf_nat_pptp,nf_nat_sip,nf_conntrack_snmp,nf_nat_snmp_basic,nf_nat_tftp,ipt_CLUSTERIP,ipt_MASQUERADE,xt_connlimit,xt_CT
nf_conntrack_amanda    12437  1 nf_nat_amanda
nf_conntrack_broadcast    12365  2 nf_conntrack_netbios_ns,nf_conntrack_snmp
nf_conntrack_ftp       12605  1 nf_nat_ftp
nf_conntrack_h323      42413  1 nf_nat_h323
nf_conntrack_ipv4      14078  9 nf_nat,iptable_nat
nf_conntrack_ipv6      13316  5 
nf_conntrack_irc       12427  1 nf_nat_irc
nf_conntrack_netbios_ns    12445  0 
nf_conntrack_netlink    23101  0 
nf_conntrack_pptp      12769  1 nf_nat_pptp
nf_conntrack_proto_gre    12974  1 nf_conntrack_pptp
nf_conntrack_proto_sctp    12941  0 
nf_conntrack_proto_udplite    12655  0 
nf_conntrack_sane      12428  0 
nf_conntrack_sip       26054  1 nf_nat_sip
nf_conntrack_snmp      12443  1 nf_nat_snmp_basic
nf_conntrack_tftp      12433  1 nf_nat_tftp
nf_defrag_ipv4         12483  2 nf_conntrack_ipv4,xt_TPROXY
nf_defrag_ipv6         12832  2 nf_conntrack_ipv6,xt_TPROXY
nf_nat                 18242  12 iptable_nat,nf_nat_amanda,nf_nat_ftp,nf_nat_h323,nf_nat_irc,nf_nat_proto_gre,nf_nat_pptp,nf_nat_sip,nf_nat_tftp,ipt_MASQUERADE,ipt_NETMAP,ipt_REDIRECT
nf_nat_amanda          12424  0 
nf_nat_ftp             12460  0 
nf_nat_h323            12918  0 
nf_nat_irc             12454  0 
nf_nat_pptp            12603  0 
nf_nat_proto_gre       12517  1 nf_nat_pptp
nf_nat_sip             12923  0 
nf_nat_snmp_basic      16995  0 
nf_nat_tftp            12422  0 
nf_tproxy_core         12404  1 xt_TPROXY
xt_addrtype            12557  5 
xt_AUDIT               12646  0 
xt_CLASSIFY            12429  0 
xt_comment             12427  66 
xt_connlimit           12622  0 
xt_connmark            12698  0 
xt_conntrack           12681  11 
xt_CT                  12507  0 
xt_dccp                12498  0 
xt_dscp                12523  0 
xt_DSCP                12643  0 
xt_hashlimit           13172  26 
xt_helper              12507  0 
xt_iprange             12504  0 
xt_length              12460  0 
xt_limit               12638  0 
xt_mac                 12419  0 
xt_mark                12453  16 
xt_multiport           12548  10 
xt_NFLOG               12462  0 
xt_NFQUEUE             12544  0 
xt_owner               12423  0 
xt_physdev             12468  0 
xt_pkttype             12427  0 
xt_policy              12506  0 
xt_realm               12423  0 
xt_recent              13188  0 
xt_sctp                12532  0 
xt_set                 12989  0 
xt_state               12503  0 
xt_statistic           12519  0 
xt_tcpmss              12425  0 
xt_TCPMSS              12670  0 
xt_tcpudp              12570  66 
xt_time                12459  0 
xt_TPROXY              12907  0 

Shorewall has detected the following iptables/netfilter capabilities:
   NAT (NAT_ENABLED): Available
   Packet Mangling (MANGLE_ENABLED): Available
   Multi-port Match (MULTIPORT): Available
   Extended Multi-port Match (XMULIPORT): Available
   Connection Tracking Match (CONNTRACK_MATCH): Available
   Extended Connection Tracking Match Support (NEW_CONNTRACK_MATCH): Available
   Packet Type Match (USEPKTTYPE): Available
   Policy Match (POLICY_MATCH): Available
   Physdev Match (PHYSDEV_MATCH): Available
   Physdev-is-bridged Support (PHYSDEV_BRIDGE): Available
   Packet length Match (LENGTH_MATCH): Available
   IP range Match(IPRANGE_MATCH): Available
   Recent Match (RECENT_MATCH): Available
   Owner Match (OWNER_MATCH): Available
   Owner Name Match (OWNER_NAME_MATCH): Available
   CONNMARK Target (CONNMARK): Available
   Extended CONNMARK Target (XCONNMARK): Available
   Connmark Match (CONNMARK_MATCH): Available
   Extended Connmark Match (XCONNMARK_MATCH): Available
   Raw Table (RAW_TABLE): Available
   Rawpost Table (RAWPOST_TABLE): Not available
   IPP2P Match (IPP2P_MATCH): Not available
   CLASSIFY Target (CLASSIFY_TARGET): Available
   Extended REJECT (ENHANCED_REJECT): Available
   Repeat match (KLUDGEFREE): Available
   MARK Target (MARK): Available
   Extended MARK Target (XMARK): Available
   Extended MARK Target 2 (EXMARK): Available
   Mangle FORWARD Chain (MANGLE_FORWARD): Available
   Comments (COMMENTS): Available
   Address Type Match (ADDRTYPE): Available
   TCPMSS Match (TCPMSS_MATCH): Available
   Hashlimit Match (HASHLIMIT_MATCH): Available
   NFQUEUE Target (NFQUEUE_TARGET): Available
   Realm Match (REALM_MATCH): Available
   Helper Match (HELPER_MATCH): Available
   Connlimit Match (CONNLIMIT_MATCH): Available
   Time Match (TIME_MATCH): Available
   Goto Support (GOTO_TARGET): Available
   LOGMARK Target (LOGMARK_TARGET): Not available
   IPMARK Target (IPMARK_TARGET): Not available
   LOG Target (LOG_TARGET): Available
   ULOG Target (ULOG_TARGET): Available
   NFLOG Target (NFLOG_TARGET): Available
   Persistent SNAT (PERSISTENT_SNAT): Available
   TPROXY Target (TPROXY_TARGET): Available
   FLOW Classifier (FLOW_FILTER): Available
   fwmark route mask (FWMARK_RT_MASK): Available
   Mark in any table (MARK_ANYWHERE): Available
   Header Match (HEADER_MATCH): Not available
   ACCOUNT Target (ACCOUNT_TARGET): Not available
   AUDIT Target (AUDIT_TARGET): Available
   ipset V5 (IPSET_V5): Not available
   Condition Match (CONDITION_MATCH): Not available
   Statistic Match (STATISTIC_MATCH): Available
   IMQ Target (IMQ_TARGET): Not available
   DSCP Match (DSCP_MATCH): Available
   DSCP Target (DSCP_TARGET): Available
   Geo IP match: Not available
   iptables -S (IPTABLES_S): Available
   Basic Filter (BASIC_FILTER): Available
   CT Target (CT_TARGET): Available

Active Internet connections (servers and established)
Proto Recv-Q Send-Q Local Address           Foreign Address         State       PID/Program name
tcp        0      0 127.0.0.1:6502          0.0.0.0:*               LISTEN      24389/murmurd   
tcp        0      0 0.0.0.0:9000            0.0.0.0:*               LISTEN      14080/php-fpm: pool
tcp        0      0 0.0.0.0:143             0.0.0.0:*               LISTEN      19904/dovecot   
tcp        0      0 0.0.0.0:111             0.0.0.0:*               LISTEN      1667/portmap    
tcp        0      0 0.0.0.0:80              0.0.0.0:*               LISTEN      25230/nginx     
tcp        0      0 78.110.162.234:53       0.0.0.0:*               LISTEN      26230/pdns_server-i
tcp        0      0 127.0.0.1:53            0.0.0.0:*               LISTEN      26230/pdns_server-i
tcp        0      0 127.0.0.2:53            0.0.0.0:*               LISTEN      2809/pdns_recursor
tcp        0      0 0.0.0.0:22              0.0.0.0:*               LISTEN      7549/sshd       
tcp        0      0 0.0.0.0:5432            0.0.0.0:*               LISTEN      24371/postgres  
tcp        0      0 0.0.0.0:25              0.0.0.0:*               LISTEN      23968/master    
tcp        0      0 0.0.0.0:993             0.0.0.0:*               LISTEN      19904/dovecot   
tcp        0      0 127.0.0.1:9000          127.0.0.1:42215         TIME_WAIT   -               
tcp        0      0 78.110.162.234:22       91.214.231.154:3837     ESTABLISHED 7600/sshd: gsadmin 
tcp        0      0 127.0.0.1:38701         127.0.0.1:5432          ESTABLISHED 26230/pdns_server-i
tcp        0      0 127.0.0.1:5432          127.0.0.1:38701         ESTABLISHED 26239/postgres: pdn
tcp        0      0 127.0.0.1:38700         127.0.0.1:5432          ESTABLISHED 26230/pdns_server-i
tcp        0      0 127.0.0.1:5432          127.0.0.1:38700         ESTABLISHED 26238/postgres: pdn
tcp        0      0 127.0.0.1:5432          127.0.0.1:38705         ESTABLISHED 26243/postgres: pdn
tcp        0      0 127.0.0.1:9000          127.0.0.1:42217         TIME_WAIT   -               
tcp        0      0 127.0.0.1:5432          127.0.0.1:38709         ESTABLISHED 26249/postgres: pdn
tcp        0      0 127.0.0.1:38711         127.0.0.1:5432          ESTABLISHED 26230/pdns_server-i
tcp        0      0 127.0.0.1:5432          127.0.0.1:38707         ESTABLISHED 26247/postgres: pdn
tcp        0      0 127.0.0.1:38704         127.0.0.1:5432          ESTABLISHED 26230/pdns_server-i
tcp        0      0 127.0.0.1:38709         127.0.0.1:5432          ESTABLISHED 26230/pdns_server-i
tcp        0      0 127.0.0.1:5432          127.0.0.1:38711         ESTABLISHED 26252/postgres: pdn
tcp        0      0 127.0.0.1:5432          127.0.0.1:38713         ESTABLISHED 26254/postgres: pdn
tcp        0      0 127.0.0.1:38705         127.0.0.1:5432          ESTABLISHED 26230/pdns_server-i
tcp        0      0 127.0.0.1:5432          127.0.0.1:38704         ESTABLISHED 26242/postgres: pdn
tcp        0      0 127.0.0.1:38707         127.0.0.1:5432          ESTABLISHED 26230/pdns_server-i
tcp        0      0 127.0.0.1:38713         127.0.0.1:5432          ESTABLISHED 26230/pdns_server-i
udp        0      0 0.0.0.0:10777           0.0.0.0:*                           6807/UCC.exe    
udp        0      0 0.0.0.0:10778           0.0.0.0:*                           8104/UCC.exe    
udp        0      0 0.0.0.0:10779           0.0.0.0:*                           8147/UCC.exe    
udp        0      0 0.0.0.0:10780           0.0.0.0:*                           8186/UCC.exe    
udp        0      0 0.0.0.0:8777            0.0.0.0:*                           6807/UCC.exe    
udp        0      0 0.0.0.0:8778            0.0.0.0:*                           8104/UCC.exe    
udp        0      0 0.0.0.0:8779            0.0.0.0:*                           8147/UCC.exe    
udp        0      0 0.0.0.0:8780            0.0.0.0:*                           8186/UCC.exe    
udp        0      0 0.0.0.0:6777            0.0.0.0:*                           6807/UCC.exe    
udp        0      0 0.0.0.0:6778            0.0.0.0:*                           8104/UCC.exe    
udp        0      0 0.0.0.0:6779            0.0.0.0:*                           8147/UCC.exe    
udp        0      0 0.0.0.0:6780            0.0.0.0:*                           8186/UCC.exe    
udp        0      0 0.0.0.0:58191           0.0.0.0:*                           26230/pdns_server-i
udp        0      0 127.0.0.1:36287         127.0.0.2:53            ESTABLISHED 26230/pdns_server-i
udp        0      0 0.0.0.0:7777            0.0.0.0:*                           6807/UCC.exe    
udp        0      0 0.0.0.0:7778            0.0.0.0:*                           8104/UCC.exe    
udp        0      0 0.0.0.0:7779            0.0.0.0:*                           8147/UCC.exe    
udp        0      0 0.0.0.0:7780            0.0.0.0:*                           8186/UCC.exe    
udp        0      0 0.0.0.0:5777            0.0.0.0:*                           6807/UCC.exe    
udp        0      0 0.0.0.0:5778            0.0.0.0:*                           8104/UCC.exe    
udp        0      0 0.0.0.0:5779            0.0.0.0:*                           8147/UCC.exe    
udp        0      0 0.0.0.0:5780            0.0.0.0:*                           8186/UCC.exe    
udp        0      0 127.0.0.1:44704         127.0.0.1:44704         ESTABLISHED 24371/postgres  
udp        0      0 78.110.162.234:53       0.0.0.0:*                           26230/pdns_server-i
udp        0      0 127.0.0.1:53            0.0.0.0:*                           26230/pdns_server-i
udp        0      0 127.0.0.2:53            0.0.0.0:*                           2809/pdns_recursor
udp        0      0 0.0.0.0:111             0.0.0.0:*                           1667/portmap    

Traffic Control

Device eth0:
qdisc htb 1: root refcnt 2 r2q 500 default 2 direct_packets_stat 0 ver 3.17
 Sent 5604220476 bytes 8328526 pkt (dropped 0, overlimits 162273 requeues 50192) 
 backlog 0b 0p requeues 50192 
qdisc sfq 2: parent 1:2 limit 127p quantum 7500b flows 127/1024 divisor 1024 perturb 10sec 
 Sent 5604220476 bytes 8328526 pkt (dropped 0, overlimits 0 requeues 0) 
 backlog 0b 0p requeues 0 
qdisc sfq 3: parent 1:3 limit 127p quantum 12500b flows 127/1024 divisor 1024 perturb 10sec 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 backlog 0b 0p requeues 0 
qdisc sfq 4: parent 1:4 limit 127p quantum 1500b flows 127/1024 divisor 1024 perturb 10sec 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 backlog 0b 0p requeues 0 
qdisc sfq 5: parent 1:5 limit 127p quantum 7500b flows 127/1024 divisor 1024 perturb 10sec 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 backlog 0b 0p requeues 0 
qdisc sfq 6: parent 1:6 limit 127p quantum 15000b flows 127/1024 divisor 1024 perturb 10sec 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 backlog 0b 0p requeues 0 
qdisc sfq 7: parent 1:7 limit 127p quantum 1500b flows 127/1024 divisor 1024 perturb 10sec 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 backlog 0b 0p requeues 0 
qdisc sfq 8: parent 1:8 limit 127p quantum 15000b flows 127/1024 divisor 1024 perturb 10sec 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 backlog 0b 0p requeues 0 
qdisc ingress ffff: parent ffff:fff1 ---------------- 
 Sent 335083244 bytes 5931964 pkt (dropped 1416, overlimits 0 requeues 0) 
 backlog 0b 0p requeues 0 

class htb 1:1 root rate 100000Kbit ceil 100000Kbit burst 1600b/8 mpu 0b overhead 0b cburst 1600b/8 mpu 0b overhead 0b level 7 
 Sent 5604220476 bytes 8328526 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 13504bit 15pps backlog 0b 0p requeues 0 
 lended: 113877 borrowed: 0 giants: 0
 tokens: 1907 ctokens: 1907

class htb 1:2 parent 1:1 leaf 2: prio 1 quantum 7500 rate 30000Kbit ceil 90000Kbit burst 1593b/8 mpu 0b overhead 0b cburst 1586b/8 mpu 0b overhead 0b level 0 
 Sent 5604220476 bytes 8328526 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 13504bit 15pps backlog 0b 0p requeues 0 
 lended: 5049568 borrowed: 113877 giants: 0
 tokens: 6328 ctokens: 2109

class htb 1:3 parent 1:1 leaf 3: prio 2 quantum 12500 rate 50000Kbit ceil 100000Kbit burst 1600b/8 mpu 0b overhead 0b cburst 1600b/8 mpu 0b overhead 0b level 0 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 
 lended: 0 borrowed: 0 giants: 0
 tokens: 4000 ctokens: 2000

class htb 1:4 parent 1:1 leaf 4: prio 3 quantum 1500 rate 768000bit ceil 1000Kbit burst 1599b/8 mpu 0b overhead 0b cburst 1600b/8 mpu 0b overhead 0b level 0 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 
 lended: 0 borrowed: 0 giants: 0
 tokens: 260406 ctokens: 200000

class htb 1:5 parent 1:1 leaf 5: prio 4 quantum 7500 rate 30000Kbit ceil 50000Kbit burst 1593b/8 mpu 0b overhead 0b cburst 1600b/8 mpu 0b overhead 0b level 0 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 
 lended: 0 borrowed: 0 giants: 0
 tokens: 6656 ctokens: 4000

class htb 1:6 parent 1:1 leaf 6: prio 5 quantum 15000 rate 60000Kbit ceil 90000Kbit burst 1590b/8 mpu 0b overhead 0b cburst 1586b/8 mpu 0b overhead 0b level 0 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 
 lended: 0 borrowed: 0 giants: 0
 tokens: 3328 ctokens: 2218

class htb 1:7 parent 1:1 leaf 7: prio 6 quantum 1500 rate 10000bit ceil 10000bit burst 1600b/8 mpu 0b overhead 0b cburst 1600b/8 mpu 0b overhead 0b level 0 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 
 lended: 0 borrowed: 0 giants: 0
 tokens: 20000000 ctokens: 20000000

class htb 1:8 parent 1:1 leaf 8: prio 7 quantum 15000 rate 60000Kbit ceil 90000Kbit burst 1590b/8 mpu 0b overhead 0b cburst 1586b/8 mpu 0b overhead 0b level 0 
 Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0) 
 rate 0bit 0pps backlog 0b 0p requeues 0 
 lended: 0 borrowed: 0 giants: 0
 tokens: 3328 ctokens: 2218



TC Filters

Device eth0:
filter parent 1: protocol all pref 276 fw 
filter parent 1: protocol all pref 276 fw handle 0x1 classid 1:2 
filter parent 1: protocol all pref 532 fw 
filter parent 1: protocol all pref 532 fw handle 0x2 classid 1:3 
filter parent 1: protocol all pref 788 fw 
filter parent 1: protocol all pref 788 fw handle 0x3 classid 1:4 
filter parent 1: protocol all pref 1044 fw 
filter parent 1: protocol all pref 1044 fw handle 0x4 classid 1:5 
filter parent 1: protocol all pref 1300 fw 
filter parent 1: protocol all pref 1300 fw handle 0x5 classid 1:6 
filter parent 1: protocol all pref 1556 fw 
filter parent 1: protocol all pref 1556 fw handle 0x6 classid 1:7 
filter parent 1: protocol all pref 1812 fw 
filter parent 1: protocol all pref 1812 fw handle 0x7 classid 1:8 

