Hi Tom,
Please find the results of "shorewall dump" attached in a txt file.


-----Original Message----- From: Tom Eastep
Sent: Monday, May 18, 2015 5:03 PM
To: [email protected]
Subject: Re: [Shorewall-users] Shorewall with Suricata in IPS mode

------------------------------------------------------------------------------
One dashboard for servers and applications across Physical-Virtual-Cloud
Widest out-of-the-box monitoring support with 50+ applications
Performance metrics, stats and reports that give you Actionable Insights
Deep dive visibility with transaction tracing using APM Insight.
http://ad.doubleclick.net/ddm/clk/290420510;117567292;y





_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users
Shorewall 4.5.21.6 Dump at testmachine01 - Mon May 18 19:34:13 EDT 2015

Shorewall is running
State:Started (Mon May 18 19:34:02 EDT 2015) from /etc/shorewall/
/var/lib/shorewall/firewall was compiled by Shorewall version 4.5.21.6
Counters reset Mon May 18 19:34:02 EDT 2015

Chain INPUT (policy DROP 0 packets, 0 bytes)
pkts bytes target     prot opt in     out     source
destination
  73  5937 net2fw     all  --  p1p1   *       0.0.0.0/0
0.0.0.0/0
3696  354K ACCEPT     all  --  lo     *       0.0.0.0/0
0.0.0.0/0
   0     0 Reject     all  --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 LOG        all  --  *      *       0.0.0.0/0
0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:INPUT:REJECT:"
   0     0 reject     all  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]

Chain FORWARD (policy DROP 0 packets, 0 bytes)
pkts bytes target     prot opt in     out     source
destination
   0     0 Reject     all  --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 LOG        all  --  *      *       0.0.0.0/0
0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:FORWARD:REJECT:"
   0     0 reject     all  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]

Chain OUTPUT (policy DROP 0 packets, 0 bytes)
pkts bytes target     prot opt in     out     source
destination
  66  6734 fw2net     all  --  *      p1p1    0.0.0.0/0
0.0.0.0/0
3696  354K ACCEPT     all  --  *      lo      0.0.0.0/0
0.0.0.0/0
   0     0 Reject     all  --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 LOG        all  --  *      *       0.0.0.0/0
0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:OUTPUT:REJECT:"
   0     0 reject     all  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]

Chain Broadcast (2 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            ADDRTYPE match dst-type BROADCAST
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            ADDRTYPE match dst-type MULTICAST
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            ADDRTYPE match dst-type ANYCAST

Chain Drop (1 references)
pkts bytes target     prot opt in     out     source
destination
   0     0            all  --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 Broadcast  all  --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 ACCEPT     icmp --  *      *       0.0.0.0/0
0.0.0.0/0            icmptype 3 code 4 /* Needed ICMP types */
   0     0 ACCEPT     icmp --  *      *       0.0.0.0/0
0.0.0.0/0            icmptype 11 /* Needed ICMP types */
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate INVALID
   0     0 DROP       udp  --  *      *       0.0.0.0/0
0.0.0.0/0            multiport dports 135,445 /* SMB */
   0     0 DROP       udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpts:137:139 /* SMB */
   0     0 DROP       udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp spt:137 dpts:1024:65535 /* SMB */
   0     0 DROP       tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            multiport dports 135,139,445 /* SMB */
   0     0 DROP       udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:1900 /* UPnP */
   0     0 DROP       tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp flags:!0x17/0x02
   0     0 DROP       udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp spt:53 /* Late DNS Replies */

Chain Reject (3 references)
pkts bytes target     prot opt in     out     source
destination
   0     0            all  --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 Broadcast  all  --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 ACCEPT     icmp --  *      *       0.0.0.0/0
0.0.0.0/0            icmptype 3 code 4 /* Needed ICMP types */
   0     0 ACCEPT     icmp --  *      *       0.0.0.0/0
0.0.0.0/0            icmptype 11 /* Needed ICMP types */
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate INVALID
   0     0 reject     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            multiport dports 135,445 /* SMB */
   0     0 reject     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpts:137:139 /* SMB */
   0     0 reject     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp spt:137 dpts:1024:65535 /* SMB */
   0     0 reject     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            multiport dports 135,139,445 /* SMB */
   0     0 DROP       udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:1900 /* UPnP */
   0     0 DROP       tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp flags:!0x17/0x02
   0     0 DROP       udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp spt:53 /* Late DNS Replies */

Chain dynamic (1 references)
pkts bytes target     prot opt in     out     source
destination

Chain fw2net (1 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 fw2net~    all  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate INVALID,NEW,UNTRACKED
   0     0 ACCEPT     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpts:67:68
  66  6734 ACCEPT     all  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate RELATED,ESTABLISHED
   0     0 NFQUEUE    tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            multiport sports 80,443 NFQUEUE num 0
   0     0 ACCEPT     icmp --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 ACCEPT     icmp --  *      *       0.0.0.0/0
0.0.0.0/0            icmptype 8 /* Ping */
   0     0 ACCEPT     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:53 /* DNS */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:53 /* DNS */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:21 /* FTP */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:25 /* SMTP */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:143 /* IMAP */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:110
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:25
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:465
   0     0 ACCEPT     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:465
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:587
   0     0 ACCEPT     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:587
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:8079
   0     0 ACCEPT     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:8079
   0     0 ACCEPT     all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain fw2net~ (1 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 59.62.0.0-59.62.0.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 59.63.167.0-59.63.167.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 61.174.41.0-61.174.41.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 61.147.110.0-61.147.110.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 15.41.174.0-15.41.174.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 112.0.0.0-112.0.0.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 112.33.19.0-112.33.19.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 119.144.0.0-119.144.0.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 119.145.148.0-119.145.148.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 122.228.242.0-122.228.242.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 162.221.13.0-162.221.13.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 103.25.9.0-103.25.9.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            destination IP range 103.0.0.0-103.0.0.255
   0     0 DROP       tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            multiport dports
901,903,1001,111,222,333,444,555,666,777,888,999,3501

Chain logdrop (0 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain logflags (5 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 LOG        all  --  *      *       0.0.0.0/0
0.0.0.0/0            LOG flags 4 level 6 prefix "Shorewall:logflags:DROP:"
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain logreject (0 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 reject     all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain net2fw (1 references)
pkts bytes target     prot opt in     out     source
destination
   1    60 net2fw~    all  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate INVALID,NEW,UNTRACKED
   1    60 dynamic    all  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate INVALID,NEW,UNTRACKED
   1    60 smurfs     all  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate INVALID,NEW,UNTRACKED
   0     0 ACCEPT     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpts:67:68
  73  5937 tcpflags   tcp  --  *      *       0.0.0.0/0
0.0.0.0/0
  72  5877 ACCEPT     all  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate RELATED,ESTABLISHED
   1    60 NFQUEUE    tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            multiport dports 80,443 NFQUEUE num 0
   0     0 DROP       tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            ctstate INVALID
   0     0 DROP       icmp --  *      *       0.0.0.0/0
0.0.0.0/0            icmptype 8 /* Ping */
   0     0 ACCEPT     icmp --  *      *       0.0.0.0/0
0.0.0.0/0            icmptype 8 /* Ping */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:22 /* SSH */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:21 /* FTP */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:110 /* POP3 */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:143 /* IMAP */
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:110
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:25
   0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:995
   0     0 ACCEPT     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:995
   0     0 Drop       all  --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 LOG        all  --  *      *       0.0.0.0/0
0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:net2fw:DROP:"
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain net2fw~ (1 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 59.62.0.0-59.62.0.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 59.63.167.0-59.63.167.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 61.174.41.0-61.174.41.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 61.147.110.0-61.147.110.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 15.41.174.0-15.41.174.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 112.0.0.0-112.0.0.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 112.33.19.0-112.33.19.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 119.144.0.0-119.144.0.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 119.145.148.0-119.145.148.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 122.228.242.0-122.228.242.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 162.221.13.0-162.221.13.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 103.25.9.0-103.25.9.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 103.0.0.0-103.255.255.255
   0     0 DROP       tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            multiport dports
901,903,1001,111,222,333,444,555,666,777,888,999,3501
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 167.114.61.221-167.114.61.251
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 31.131.248.0-31.131.255.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 60.166.0.0-60.175.255.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 122.225.109.0-122.225.109.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 122.225.97.0-122.225.97.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 188.165.0.0-188.165.255.255
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            source IP range 91.121.0.0-91.121.255.255
   0     0 DROP       all  --  *      *       111.74.238.219
0.0.0.0/0
   0     0 DROP       all  --  *      *       192.126.120.75
0.0.0.0/0
   0     0 DROP       all  --  *      *       208.167.225.22
0.0.0.0/0
   0     0 DROP       all  --  *      *       209.141.38.164
0.0.0.0/0
   0     0 DROP       all  --  *      *       192.126.120.77
0.0.0.0/0
   0     0 DROP       all  --  *      *       192.99.45.170
0.0.0.0/0
   0     0 DROP       all  --  *      *       115.238.240.60
0.0.0.0/0
   0     0 DROP       all  --  *      *       222.186.34.120
0.0.0.0/0
   0     0 DROP       all  --  *      *       61.174.51.207
0.0.0.0/0
   0     0 DROP       all  --  *      *       144.0.0.67
0.0.0.0/0

Chain reject (8 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0            ADDRTYPE match src-type BROADCAST
   0     0 DROP       all  --  *      *       224.0.0.0/4
0.0.0.0/0
   0     0 DROP       2    --  *      *       0.0.0.0/0
0.0.0.0/0
   0     0 REJECT     tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            reject-with tcp-reset
   0     0 REJECT     udp  --  *      *       0.0.0.0/0
0.0.0.0/0            reject-with icmp-port-unreachable
   0     0 REJECT     icmp --  *      *       0.0.0.0/0
0.0.0.0/0            reject-with icmp-host-unreachable
   0     0 REJECT     all  --  *      *       0.0.0.0/0
0.0.0.0/0            reject-with icmp-host-prohibited

Chain shorewall (0 references)
pkts bytes target     prot opt in     out     source
destination
   0     0            all  --  *      *       0.0.0.0/0
0.0.0.0/0            recent: SET name: %CURRENTTIME side: source mask:
255.255.255.255

Chain smurflog (2 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 LOG        all  --  *      *       0.0.0.0/0
0.0.0.0/0            LOG flags 0 level 6 prefix "Shorewall:smurfs:DROP:"
   0     0 DROP       all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain smurfs (1 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 RETURN     all  --  *      *       0.0.0.0
0.0.0.0/0
   0     0 smurflog   all  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]  ADDRTYPE match src-type BROADCAST
   0     0 smurflog   all  --  *      *       224.0.0.0/4
0.0.0.0/0           [goto]

Chain tcpflags (1 references)
pkts bytes target     prot opt in     out     source
destination
   0     0 logflags   tcp  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]  tcp flags:0x3F/0x29
   0     0 logflags   tcp  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]  tcp flags:0x3F/0x00
   0     0 logflags   tcp  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]  tcp flags:0x06/0x06
   0     0 logflags   tcp  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]  tcp flags:0x03/0x03
   0     0 logflags   tcp  --  *      *       0.0.0.0/0
0.0.0.0/0           [goto]  tcp spt:0 flags:0x17/0x02

Log (/var/log/messages)


NAT Table

Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target     prot opt in     out     source
destination

Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target     prot opt in     out     source
destination

Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target     prot opt in     out     source
destination

Chain POSTROUTING (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target     prot opt in     out     source
destination

Mangle Table

Chain PREROUTING (policy ACCEPT 2074 packets, 157K bytes)
pkts bytes target     prot opt in     out     source
destination
3769  360K tcpre      all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain INPUT (policy ACCEPT 2074 packets, 157K bytes)
pkts bytes target     prot opt in     out     source
destination
3769  360K tcin       all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target     prot opt in     out     source
destination
   0     0 MARK       all  --  *      *       0.0.0.0/0
0.0.0.0/0            MARK and 0xffffff00
   0     0 tcfor      all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain OUTPUT (policy ACCEPT 2074 packets, 159K bytes)
pkts bytes target     prot opt in     out     source
destination
3766  362K tcout      all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain POSTROUTING (policy ACCEPT 2074 packets, 159K bytes)
pkts bytes target     prot opt in     out     source
destination
3766  362K tcpost     all  --  *      *       0.0.0.0/0
0.0.0.0/0

Chain tcfor (1 references)
pkts bytes target     prot opt in     out     source
destination

Chain tcin (1 references)
pkts bytes target     prot opt in     out     source
destination

Chain tcout (1 references)
pkts bytes target     prot opt in     out     source
destination

Chain tcpost (1 references)
pkts bytes target     prot opt in     out     source
destination

Chain tcpre (1 references)
pkts bytes target     prot opt in     out     source
destination

Raw Table

Chain PREROUTING (policy ACCEPT 2073 packets, 157K bytes)
pkts bytes target     prot opt in     out     source
destination
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:10080 CT helper amanda
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:21 CT helper ftp
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:1719 CT helper RAS
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:1720 CT helper Q.931
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:6667 CT helper irc
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:137 CT helper netbios-ns
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:1723 CT helper pptp
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:6566 CT helper sane
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:5060 CT helper sip
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:161 CT helper snmp
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:69 CT helper tftp

Chain OUTPUT (policy ACCEPT 2074 packets, 159K bytes)
pkts bytes target     prot opt in     out     source
destination
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:10080 CT helper amanda
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:21 CT helper ftp
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:1719 CT helper RAS
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:1720 CT helper Q.931
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:6667 CT helper irc
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:137 CT helper netbios-ns
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:1723 CT helper pptp
   0     0 CT         tcp  --  *      *       0.0.0.0/0
0.0.0.0/0            tcp dpt:6566 CT helper sane
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:5060 CT helper sip
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:161 CT helper snmp
   0     0 CT         udp  --  *      *       0.0.0.0/0
0.0.0.0/0            udp dpt:69 CT helper tftp

Conntrack Table (293 out of 65536)

grep: /proc/net/nf_conntrack: No such file or directory

IP Configuration

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group
default
   inet 127.0.0.1/8 scope host lo
      valid_lft forever preferred_lft forever
2: p1p1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP group
default qlen 1000
   inet 108.61.140.114/29 brd 108.61.140.119 scope global p1p1
      valid_lft forever preferred_lft forever

IP Stats

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN mode
DEFAULT group default
   link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
   RX: bytes  packets  errors  dropped overrun mcast
   13703243123 119434856 0       0       0       0
   TX: bytes  packets  errors  dropped carrier collsns
   13703243123 119434856 0       0       0       0
2: p1p1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP mode
DEFAULT group default qlen 1000
   link/ether 00:25:90:d9:48:88 brd ff:ff:ff:ff:ff:ff
   RX: bytes  packets  errors  dropped overrun mcast
   591512098  1040424  0       0       0       1818
   TX: bytes  packets  errors  dropped carrier collsns
   191373024  911801   0       0       0       0
3: em1: <BROADCAST,MULTICAST> mtu 1500 qdisc noop state DOWN mode DEFAULT
group default qlen 1000
   link/ether 00:25:90:d9:48:89 brd ff:ff:ff:ff:ff:ff
   RX: bytes  packets  errors  dropped overrun mcast
   0          0        0       0       0       0
   TX: bytes  packets  errors  dropped carrier collsns
   0          0        0       0       0       0

Routing Rules

0:      from all lookup local
32766:  from all lookup main
32767:  from all lookup default

Table default:


Table local:

local 127.0.0.1 dev lo proto kernel scope host src 127.0.0.1
local 108.61.140.114 dev p1p1 proto kernel scope host src 108.61.140.114
broadcast 127.255.255.255 dev lo proto kernel scope link src 127.0.0.1
broadcast 127.0.0.0 dev lo proto kernel scope link src 127.0.0.1
broadcast 108.61.140.119 dev p1p1 proto kernel scope link src 108.61.140.114
broadcast 108.61.140.112 dev p1p1 proto kernel scope link src 108.61.140.114
local 127.0.0.0/8 dev lo proto kernel scope host src 127.0.0.1

Table main:

108.61.140.112/29 dev p1p1 proto kernel scope link src 108.61.140.114
default via 108.61.140.113 dev p1p1

Per-IP Counters

  iptaccount is not installed

NF Accounting

No NF Accounting defined (nfacct not found)

Events


/proc

  /proc/version = Linux version 3.13.0-52-generic (buildd@comet) (gcc
version 4.8.2 (Ubuntu 4.8.2-19ubuntu1) ) #86-Ubuntu SMP Mon May 4 04:32:59
UTC 2015
  /proc/sys/net/ipv4/ip_forward = 1
  /proc/sys/net/ipv4/icmp_echo_ignore_all = 0
  /proc/sys/net/ipv4/conf/all/proxy_arp = 0
  /proc/sys/net/ipv4/conf/all/arp_filter = 0
  /proc/sys/net/ipv4/conf/all/arp_ignore = 0
  /proc/sys/net/ipv4/conf/all/rp_filter = 1
  /proc/sys/net/ipv4/conf/all/log_martians = 0
  /proc/sys/net/ipv4/conf/default/proxy_arp = 0
  /proc/sys/net/ipv4/conf/default/arp_filter = 0
  /proc/sys/net/ipv4/conf/default/arp_ignore = 0
  /proc/sys/net/ipv4/conf/default/rp_filter = 1
  /proc/sys/net/ipv4/conf/default/log_martians = 1
  /proc/sys/net/ipv4/conf/em1/proxy_arp = 0
  /proc/sys/net/ipv4/conf/em1/arp_filter = 0
  /proc/sys/net/ipv4/conf/em1/arp_ignore = 0
  /proc/sys/net/ipv4/conf/em1/rp_filter = 1
  /proc/sys/net/ipv4/conf/em1/log_martians = 1
  /proc/sys/net/ipv4/conf/lo/proxy_arp = 0
  /proc/sys/net/ipv4/conf/lo/arp_filter = 0
  /proc/sys/net/ipv4/conf/lo/arp_ignore = 0
  /proc/sys/net/ipv4/conf/lo/rp_filter = 1
  /proc/sys/net/ipv4/conf/lo/log_martians = 1
  /proc/sys/net/ipv4/conf/p1p1/proxy_arp = 0
  /proc/sys/net/ipv4/conf/p1p1/arp_filter = 0
  /proc/sys/net/ipv4/conf/p1p1/arp_ignore = 0
  /proc/sys/net/ipv4/conf/p1p1/rp_filter = 1
  /proc/sys/net/ipv4/conf/p1p1/log_martians = 1

ARP

? (108.61.140.113) at 74:8e:f8:48:e4:80 [ether] on p1p1

Modules

ip_set                 41249  1 xt_set
iptable_filter         12810  1
iptable_mangle         12695  1
iptable_nat            13011  0
iptable_raw            12678  1
ip_tables              27239  4
iptable_filter,iptable_mangle,iptable_nat,iptable_raw
ipt_ah                 12806  0
ipt_CLUSTERIP          13633  0
ipt_ECN                12529  0
ipt_MASQUERADE         12880  0
ipt_REJECT             12541  4
ipt_rpfilter           12546  0
ipt_ULOG               14273  0
nf_conntrack           96976  35
nf_nat_ftp,nf_nat_irc,nf_nat_sip,nf_nat_amanda,xt_CT,nf_nat_snmp_basic,nf_co
nntrack_netbios_ns,nf_conntrack_proto_gre,xt_helper,ipt_MASQUERADE,nf_conntr
ack_proto_udplite,nf_nat,xt_state,xt_connlimit,nf_nat_h323,nf_nat_ipv4,nf_na
t_pptp,nf_nat_tftp,xt_conntrack,nf_conntrack_amanda,ipt_CLUSTERIP,nf_conntra
ck_proto_sctp,nf_conntrack_netlink,nf_conntrack_broadcast,xt_connmark,nf_con
ntrack_ftp,nf_conntrack_irc,nf_conntrack_sip,iptable_nat,nf_conntrack_h323,n
f_conntrack_ipv4,nf_conntrack_pptp,nf_conntrack_sane,nf_conntrack_snmp,nf_co
nntrack_tftp
nf_conntrack_amanda    13041  3 nf_nat_amanda
nf_conntrack_broadcast    12589  2 nf_conntrack_netbios_ns,nf_conntrack_snmp
nf_conntrack_ftp       18638  3 nf_nat_ftp
nf_conntrack_h323      73895  5 nf_nat_h323
nf_conntrack_ipv4      15012  32
nf_conntrack_irc       13518  3 nf_nat_irc
nf_conntrack_netbios_ns    12665  2
nf_conntrack_netlink    36223  0
nf_conntrack_pptp      19258  3 nf_nat_pptp
nf_conntrack_proto_gre    14434  1 nf_conntrack_pptp
nf_conntrack_proto_sctp    18822  0
nf_conntrack_proto_udplite    13281  0
nf_conntrack_sane      13143  2
nf_conntrack_sip       28460  3 nf_nat_sip
nf_conntrack_snmp      12857  3 nf_nat_snmp_basic
nf_conntrack_tftp      13121  3 nf_nat_tftp
nf_defrag_ipv4         12758  2 xt_TPROXY,nf_conntrack_ipv4
nf_defrag_ipv6         34768  1 xt_TPROXY
nf_nat                 21841  12
nf_nat_ftp,nf_nat_irc,nf_nat_sip,nf_nat_amanda,ipt_MASQUERADE,nf_nat_proto_g
re,nf_nat_h323,nf_nat_ipv4,nf_nat_pptp,nf_nat_tftp,xt_nat,iptable_nat
nf_nat_amanda          12491  0
nf_nat_ftp             12770  0
nf_nat_h323            17720  0
nf_nat_ipv4            13263  1 iptable_nat
nf_nat_irc             12723  0
nf_nat_pptp            13115  0
nf_nat_proto_gre       13009  1 nf_nat_pptp
nf_nat_sip             17186  0
nf_nat_snmp_basic      17302  0
nf_nat_tftp            12489  0
xt_addrtype            12635  5
xt_AUDIT               12678  0
xt_CHECKSUM            12549  0
xt_CLASSIFY            12507  0
xt_comment             12504  28
xt_connlimit           12636  0
xt_connmark            12755  0
xt_conntrack           12760  9
xt_CT                  12956  22
xt_dccp                12606  0
xt_dscp                12597  0
xt_DSCP                12629  0
xt_hashlimit           17618  0
xt_helper              12583  0
xt_iprange             12783  33
xt_length              12536  0
xt_limit               12711  0
xt_LOG                 17717  6
xt_mac                 12492  0
xt_mark                12563  1
xt_multiport           12798  8
xt_nat                 12681  0
xt_NFLOG               12537  0
xt_NFQUEUE             12776  2
xt_owner               12534  0
xt_physdev             12587  0
xt_pkttype             12504  0
xt_policy              12582  0
xt_realm               12498  0
xt_recent              18498  1
xt_sctp                12853  0
xt_set                 13181  0
xt_state               12578  0
xt_statistic           12601  0
xt_tcpmss              12501  0
xt_TCPMSS              12664  0
xt_tcpudp              12884  60
xt_time                12661  0
xt_TPROXY              17356  0

Shorewall has detected the following iptables/netfilter capabilities:
  ACCOUNT Target (ACCOUNT_TARGET): Not available
  Address Type Match (ADDRTYPE): Available
  Amanda Helper: Available
  Arptables JF: Not available
  AUDIT Target (AUDIT_TARGET): Available
  Basic Filter (BASIC_FILTER): Available
  Capabilities Version (CAPVERSION): 40515
  Checksum Target: Available
  CLASSIFY Target (CLASSIFY_TARGET): Available
  Comments (COMMENTS): Available
  Condition Match (CONDITION_MATCH): Not available
  Connection Tracking Match (CONNTRACK_MATCH): Available
  Connlimit Match (CONNLIMIT_MATCH): Available
  Connmark Match (CONNMARK_MATCH): Available
  CONNMARK Target (CONNMARK): Available
  CT Target (CT_TARGET): Available
  DSCP Match (DSCP_MATCH): Available
  DSCP Target (DSCP_TARGET): Available
  Enhanced Multi-port Match (EMULIPORT): Available
  Extended Connection Tracking Match Support (NEW_CONNTRACK_MATCH):
Available
  Extended Connmark Match (XCONNMARK_MATCH): Available
  Extended CONNMARK Target (XCONNMARK): Available
  Extended MARK Target 2 (EXMARK): Available
  Extended MARK Target (XMARK): Available
  Extended Multi-port Match (XMULIPORT): Available
  Extended REJECT (ENHANCED_REJECT): Available
  FLOW Classifier (FLOW_FILTER): Available
  FTP-0 Helper: Not available
  FTP Helper: Available
  fwmark route mask (FWMARK_RT_MASK): Available
  Geo IP match: Not available
  Goto Support (GOTO_TARGET): Available
  H323 Helper: Available
  Hashlimit Match (HASHLIMIT_MATCH): Available
  Header Match (HEADER_MATCH): Not available
  Helper Match (HELPER_MATCH): Available
  IMQ Target (IMQ_TARGET): Not available
  IPMARK Target (IPMARK_TARGET): Not available
  IPP2P Match (IPP2P_MATCH): Not available
  IP range Match(IPRANGE_MATCH): Available
  ipset V5 (IPSET_V5): Not available
  iptables -S (IPTABLES_S): Available
  IRC-0 Helper: Not available
  IRC Helper: Available
  Kernel Version (KERNELVERSION): 31300
  LOGMARK Target (LOGMARK_TARGET): Not available
  LOG Target (LOG_TARGET): Available
  Mangle FORWARD Chain (MANGLE_FORWARD): Available
  Mark in the filter table (MARK_ANYWHERE): Available
  MARK Target (MARK): Available
  MASQUERADE Target: Available
  Multi-port Match (MULTIPORT): Available
  NAT (NAT_ENABLED): Available
  Netbios_ns Helper: Available
  New tos Match: Available
  NFAcct match: Not available
  NFLOG Target (NFLOG_TARGET): Available
  NFQUEUE Target (NFQUEUE_TARGET): Available
  Owner Match (OWNER_MATCH): Available
  Owner Name Match (OWNER_NAME_MATCH): Available
  Packet length Match (LENGTH_MATCH): Available
  Packet Mangling (MANGLE_ENABLED): Available
  Packet Type Match (USEPKTTYPE): Available
  Persistent SNAT (PERSISTENT_SNAT): Available
  Physdev-is-bridged Support (PHYSDEV_BRIDGE): Available
  Physdev Match (PHYSDEV_MATCH): Available
  Policy Match (POLICY_MATCH): Available
  PPTP Helper: Available
  Rawpost Table (RAWPOST_TABLE): Not available
  Raw Table (RAW_TABLE): Available
  Realm Match (REALM_MATCH): Available
  Recent Match "--reap" option (REAP_OPTION): Not available
  Recent Match (RECENT_MATCH): Available
  Repeat match (KLUDGEFREE): Available
  RPFilter match: Available
  SANE-0 Helper: Not available
  SANE Helper: Available
  SIP-0 Helper: Not available
  SIP Helper: Available
  SNMP Helper: Available
  Statistic Match (STATISTIC_MATCH): Available
  TCPMSS Match (TCPMSS_MATCH): Available
  TFTP-0 Helper: Not available
  TFTP Helper: Available
  Time Match (TIME_MATCH): Available
  TPROXY Target (TPROXY_TARGET): Available
  UDPLITE Port Redirection: Not available
  ULOG Target (ULOG_TARGET): Available

Netid  State      Recv-Q Send-Q     Local Address:Port       Peer
Address:Port
tcp    LISTEN     0      128                    *:22                    *:*
users:(("sshd",1522,3))
tcp    LISTEN     0      20                     *:25                    *:*
users:(("exim4",1792,6))
tcp    LISTEN     0      50                     *:3306                  *:*
users:(("mysqld",2480,10))
tcp    LISTEN     0      20                     *:465                   *:*
users:(("exim4",1792,4))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42398
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42538  users:(("mysqld",2480,87))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42499  users:(("mysqld",2480,37))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42510  users:(("mysqld",2480,49))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42513  users:(("mysqld",2480,52))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42475  users:(("mysqld",2480,26))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42518  users:(("mysqld",2480,69))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42460  users:(("mysqld",2480,14))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42472  users:(("mysqld",2480,23))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42390
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42530  users:(("mysqld",2480,79))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42461  users:(("mysqld",2480,15))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42452  users:(("mysqld",2480,98))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42458  users:(("mysqld",2480,95))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42552  users:(("mysqld",2480,96))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42537  users:(("mysqld",2480,86))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42415
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42480  users:(("mysqld",2480,108))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42494  users:(("mysqld",2480,32))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42481  users:(("mysqld",2480,43))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42545  users:(("mysqld",2480,89))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42559  users:(("mysqld",2480,61))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42503  users:(("mysqld",2480,41))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42516  users:(("mysqld",2480,55))
tcp    CLOSE-WAIT 70     0         108.61.140.114:56880
91.189.92.11:443    users:(("unity-scope-hom",3819,22))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42532  users:(("mysqld",2480,81))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42543  users:(("mysqld",2480,100))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42502  users:(("mysqld",2480,40))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42489  users:(("mysqld",2480,66))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42484  users:(("mysqld",2480,58))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42526  users:(("mysqld",2480,75))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42501  users:(("mysqld",2480,39))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42547  users:(("mysqld",2480,91))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42454  users:(("mysqld",2480,105))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42536  users:(("mysqld",2480,85))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42546  users:(("mysqld",2480,90))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42527  users:(("mysqld",2480,76))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42482  users:(("mysqld",2480,56))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42449  users:(("mysqld",2480,104))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42471  users:(("mysqld",2480,22))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42500  users:(("mysqld",2480,38))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42497  users:(("mysqld",2480,35))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42418
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42531  users:(("mysqld",2480,80))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42528  users:(("mysqld",2480,77))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42462  users:(("mysqld",2480,17))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42539  users:(("mysqld",2480,99))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42541  users:(("mysqld",2480,57))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42542  users:(("mysqld",2480,127))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42551  users:(("mysqld",2480,93))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42496  users:(("mysqld",2480,34))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42515  users:(("mysqld",2480,54))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42560  users:(("mysqld",2480,62))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42524  users:(("mysqld",2480,73))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42505  users:(("mysqld",2480,44))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42498  users:(("mysqld",2480,36))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42468  users:(("mysqld",2480,19))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42525  users:(("mysqld",2480,74))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42421
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42486  users:(("mysqld",2480,63))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42478  users:(("mysqld",2480,29))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42427
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42453  users:(("mysqld",2480,103))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42420
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42550  users:(("mysqld",2480,92))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42508  users:(("mysqld",2480,47))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42488  users:(("mysqld",2480,65))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42467  users:(("mysqld",2480,20))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42549  users:(("mysqld",2480,88))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42419
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42517  users:(("mysqld",2480,68))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42555  users:(("mysqld",2480,60))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42466  users:(("mysqld",2480,18))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42529  users:(("mysqld",2480,78))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42507  users:(("mysqld",2480,46))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42553  users:(("mysqld",2480,13))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42490  users:(("mysqld",2480,67))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42519  users:(("mysqld",2480,70))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42473  users:(("mysqld",2480,24))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42514  users:(("mysqld",2480,53))
tcp    ESTAB      0      18228     108.61.140.114:22
186.83.2.183:52944  users:(("sshd",9077,3),("sshd",8957,3))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42533  users:(("mysqld",2480,82))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42554  users:(("mysqld",2480,16))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42506  users:(("mysqld",2480,45))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42487  users:(("mysqld",2480,64))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42504  users:(("mysqld",2480,42))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42492  users:(("mysqld",2480,30))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42474  users:(("mysqld",2480,25))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42534  users:(("mysqld",2480,83))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42436
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42563  users:(("mysqld",2480,97))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42405
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42479  users:(("mysqld",2480,107))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42470  users:(("mysqld",2480,21))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42509  users:(("mysqld",2480,48))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42485  users:(("mysqld",2480,59))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42512  users:(("mysqld",2480,51))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42495  users:(("mysqld",2480,33))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42535  users:(("mysqld",2480,84))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42511  users:(("mysqld",2480,50))
tcp    TIME-WAIT  0      0              127.0.0.1:3306
127.0.0.1:42412
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42523  users:(("mysqld",2480,72))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42450  users:(("mysqld",2480,102))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42459  users:(("mysqld",2480,106))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42562  users:(("mysqld",2480,94))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42561  users:(("mysqld",2480,71))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42493  users:(("mysqld",2480,31))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42477  users:(("mysqld",2480,28))
tcp    ESTAB      0      0              127.0.0.1:3306
127.0.0.1:42476  users:(("mysqld",2480,27))

Traffic Control

Device p1p1:
qdisc mq 0: root
Sent 191390852 bytes 911813 pkt (dropped 0, overlimits 0 requeues 1196)
backlog 0b 0p requeues 1196

class mq :1 root
Sent 52616481 bytes 265127 pkt (dropped 0, overlimits 0 requeues 339)
backlog 0b 0p requeues 339
class mq :2 root
Sent 42754500 bytes 179873 pkt (dropped 0, overlimits 0 requeues 301)
backlog 0b 0p requeues 301
class mq :3 root
Sent 47862746 bytes 239696 pkt (dropped 0, overlimits 0 requeues 268)
backlog 0b 0p requeues 268
class mq :4 root
Sent 48157125 bytes 227117 pkt (dropped 0, overlimits 0 requeues 288)
backlog 0b 0p requeues 288
class mq :5 root
Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0)
backlog 0b 0p requeues 0
class mq :6 root
Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0)
backlog 0b 0p requeues 0
class mq :7 root
Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0)
backlog 0b 0p requeues 0
class mq :8 root
Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0)
backlog 0b 0p requeues 0


TC Filters

Device p1p1:


------------------------------------------------------------------------------
One dashboard for servers and applications across Physical-Virtual-Cloud 
Widest out-of-the-box monitoring support with 50+ applications
Performance metrics, stats and reports that give you Actionable Insights
Deep dive visibility with transaction tracing using APM Insight.
http://ad.doubleclick.net/ddm/clk/290420510;117567292;y
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to