Hi Tom,
Please find the results of "shorewall dump" attached in a txt file.
-----Original Message-----
From: Tom Eastep
Sent: Monday, May 18, 2015 5:03 PM
To: [email protected]
Subject: Re: [Shorewall-users] Shorewall with Suricata in IPS mode
------------------------------------------------------------------------------
One dashboard for servers and applications across Physical-Virtual-Cloud
Widest out-of-the-box monitoring support with 50+ applications
Performance metrics, stats and reports that give you Actionable Insights
Deep dive visibility with transaction tracing using APM Insight.
http://ad.doubleclick.net/ddm/clk/290420510;117567292;y
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users
Shorewall 4.5.21.6 Dump at testmachine01 - Mon May 18 19:34:13 EDT 2015
Shorewall is running
State:Started (Mon May 18 19:34:02 EDT 2015) from /etc/shorewall/
/var/lib/shorewall/firewall was compiled by Shorewall version 4.5.21.6
Counters reset Mon May 18 19:34:02 EDT 2015
Chain INPUT (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
73 5937 net2fw all -- p1p1 * 0.0.0.0/0
0.0.0.0/0
3696 354K ACCEPT all -- lo * 0.0.0.0/0
0.0.0.0/0
0 0 Reject all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0
0.0.0.0/0 LOG flags 0 level 6 prefix "Shorewall:INPUT:REJECT:"
0 0 reject all -- * * 0.0.0.0/0
0.0.0.0/0 [goto]
Chain FORWARD (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
0 0 Reject all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0
0.0.0.0/0 LOG flags 0 level 6 prefix "Shorewall:FORWARD:REJECT:"
0 0 reject all -- * * 0.0.0.0/0
0.0.0.0/0 [goto]
Chain OUTPUT (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
66 6734 fw2net all -- * p1p1 0.0.0.0/0
0.0.0.0/0
3696 354K ACCEPT all -- * lo 0.0.0.0/0
0.0.0.0/0
0 0 Reject all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0
0.0.0.0/0 LOG flags 0 level 6 prefix "Shorewall:OUTPUT:REJECT:"
0 0 reject all -- * * 0.0.0.0/0
0.0.0.0/0 [goto]
Chain Broadcast (2 references)
pkts bytes target prot opt in out source
destination
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 ADDRTYPE match dst-type BROADCAST
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 ADDRTYPE match dst-type MULTICAST
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 ADDRTYPE match dst-type ANYCAST
Chain Drop (1 references)
pkts bytes target prot opt in out source
destination
0 0 all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 Broadcast all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 ACCEPT icmp -- * * 0.0.0.0/0
0.0.0.0/0 icmptype 3 code 4 /* Needed ICMP types */
0 0 ACCEPT icmp -- * * 0.0.0.0/0
0.0.0.0/0 icmptype 11 /* Needed ICMP types */
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 ctstate INVALID
0 0 DROP udp -- * * 0.0.0.0/0
0.0.0.0/0 multiport dports 135,445 /* SMB */
0 0 DROP udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpts:137:139 /* SMB */
0 0 DROP udp -- * * 0.0.0.0/0
0.0.0.0/0 udp spt:137 dpts:1024:65535 /* SMB */
0 0 DROP tcp -- * * 0.0.0.0/0
0.0.0.0/0 multiport dports 135,139,445 /* SMB */
0 0 DROP udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:1900 /* UPnP */
0 0 DROP tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp flags:!0x17/0x02
0 0 DROP udp -- * * 0.0.0.0/0
0.0.0.0/0 udp spt:53 /* Late DNS Replies */
Chain Reject (3 references)
pkts bytes target prot opt in out source
destination
0 0 all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 Broadcast all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 ACCEPT icmp -- * * 0.0.0.0/0
0.0.0.0/0 icmptype 3 code 4 /* Needed ICMP types */
0 0 ACCEPT icmp -- * * 0.0.0.0/0
0.0.0.0/0 icmptype 11 /* Needed ICMP types */
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 ctstate INVALID
0 0 reject udp -- * * 0.0.0.0/0
0.0.0.0/0 multiport dports 135,445 /* SMB */
0 0 reject udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpts:137:139 /* SMB */
0 0 reject udp -- * * 0.0.0.0/0
0.0.0.0/0 udp spt:137 dpts:1024:65535 /* SMB */
0 0 reject tcp -- * * 0.0.0.0/0
0.0.0.0/0 multiport dports 135,139,445 /* SMB */
0 0 DROP udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:1900 /* UPnP */
0 0 DROP tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp flags:!0x17/0x02
0 0 DROP udp -- * * 0.0.0.0/0
0.0.0.0/0 udp spt:53 /* Late DNS Replies */
Chain dynamic (1 references)
pkts bytes target prot opt in out source
destination
Chain fw2net (1 references)
pkts bytes target prot opt in out source
destination
0 0 fw2net~ all -- * * 0.0.0.0/0
0.0.0.0/0 ctstate INVALID,NEW,UNTRACKED
0 0 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpts:67:68
66 6734 ACCEPT all -- * * 0.0.0.0/0
0.0.0.0/0 ctstate RELATED,ESTABLISHED
0 0 NFQUEUE tcp -- * * 0.0.0.0/0
0.0.0.0/0 multiport sports 80,443 NFQUEUE num 0
0 0 ACCEPT icmp -- * * 0.0.0.0/0
0.0.0.0/0
0 0 ACCEPT icmp -- * * 0.0.0.0/0
0.0.0.0/0 icmptype 8 /* Ping */
0 0 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:53 /* DNS */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:53 /* DNS */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:21 /* FTP */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:25 /* SMTP */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:143 /* IMAP */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:110
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:25
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:465
0 0 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:465
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:587
0 0 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:587
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:8079
0 0 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:8079
0 0 ACCEPT all -- * * 0.0.0.0/0
0.0.0.0/0
Chain fw2net~ (1 references)
pkts bytes target prot opt in out source
destination
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 59.62.0.0-59.62.0.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 59.63.167.0-59.63.167.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 61.174.41.0-61.174.41.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 61.147.110.0-61.147.110.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 15.41.174.0-15.41.174.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 112.0.0.0-112.0.0.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 112.33.19.0-112.33.19.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 119.144.0.0-119.144.0.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 119.145.148.0-119.145.148.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 122.228.242.0-122.228.242.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 162.221.13.0-162.221.13.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 103.25.9.0-103.25.9.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 destination IP range 103.0.0.0-103.0.0.255
0 0 DROP tcp -- * * 0.0.0.0/0
0.0.0.0/0 multiport dports
901,903,1001,111,222,333,444,555,666,777,888,999,3501
Chain logdrop (0 references)
pkts bytes target prot opt in out source
destination
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0
Chain logflags (5 references)
pkts bytes target prot opt in out source
destination
0 0 LOG all -- * * 0.0.0.0/0
0.0.0.0/0 LOG flags 4 level 6 prefix "Shorewall:logflags:DROP:"
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0
Chain logreject (0 references)
pkts bytes target prot opt in out source
destination
0 0 reject all -- * * 0.0.0.0/0
0.0.0.0/0
Chain net2fw (1 references)
pkts bytes target prot opt in out source
destination
1 60 net2fw~ all -- * * 0.0.0.0/0
0.0.0.0/0 ctstate INVALID,NEW,UNTRACKED
1 60 dynamic all -- * * 0.0.0.0/0
0.0.0.0/0 ctstate INVALID,NEW,UNTRACKED
1 60 smurfs all -- * * 0.0.0.0/0
0.0.0.0/0 ctstate INVALID,NEW,UNTRACKED
0 0 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpts:67:68
73 5937 tcpflags tcp -- * * 0.0.0.0/0
0.0.0.0/0
72 5877 ACCEPT all -- * * 0.0.0.0/0
0.0.0.0/0 ctstate RELATED,ESTABLISHED
1 60 NFQUEUE tcp -- * * 0.0.0.0/0
0.0.0.0/0 multiport dports 80,443 NFQUEUE num 0
0 0 DROP tcp -- * * 0.0.0.0/0
0.0.0.0/0 ctstate INVALID
0 0 DROP icmp -- * * 0.0.0.0/0
0.0.0.0/0 icmptype 8 /* Ping */
0 0 ACCEPT icmp -- * * 0.0.0.0/0
0.0.0.0/0 icmptype 8 /* Ping */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:22 /* SSH */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:21 /* FTP */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:110 /* POP3 */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:143 /* IMAP */
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:110
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:25
0 0 ACCEPT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:995
0 0 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:995
0 0 Drop all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0
0.0.0.0/0 LOG flags 0 level 6 prefix "Shorewall:net2fw:DROP:"
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0
Chain net2fw~ (1 references)
pkts bytes target prot opt in out source
destination
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 59.62.0.0-59.62.0.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 59.63.167.0-59.63.167.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 61.174.41.0-61.174.41.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 61.147.110.0-61.147.110.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 15.41.174.0-15.41.174.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 112.0.0.0-112.0.0.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 112.33.19.0-112.33.19.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 119.144.0.0-119.144.0.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 119.145.148.0-119.145.148.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 122.228.242.0-122.228.242.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 162.221.13.0-162.221.13.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 103.25.9.0-103.25.9.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 103.0.0.0-103.255.255.255
0 0 DROP tcp -- * * 0.0.0.0/0
0.0.0.0/0 multiport dports
901,903,1001,111,222,333,444,555,666,777,888,999,3501
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 167.114.61.221-167.114.61.251
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 31.131.248.0-31.131.255.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 60.166.0.0-60.175.255.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 122.225.109.0-122.225.109.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 122.225.97.0-122.225.97.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 188.165.0.0-188.165.255.255
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 source IP range 91.121.0.0-91.121.255.255
0 0 DROP all -- * * 111.74.238.219
0.0.0.0/0
0 0 DROP all -- * * 192.126.120.75
0.0.0.0/0
0 0 DROP all -- * * 208.167.225.22
0.0.0.0/0
0 0 DROP all -- * * 209.141.38.164
0.0.0.0/0
0 0 DROP all -- * * 192.126.120.77
0.0.0.0/0
0 0 DROP all -- * * 192.99.45.170
0.0.0.0/0
0 0 DROP all -- * * 115.238.240.60
0.0.0.0/0
0 0 DROP all -- * * 222.186.34.120
0.0.0.0/0
0 0 DROP all -- * * 61.174.51.207
0.0.0.0/0
0 0 DROP all -- * * 144.0.0.67
0.0.0.0/0
Chain reject (8 references)
pkts bytes target prot opt in out source
destination
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0 ADDRTYPE match src-type BROADCAST
0 0 DROP all -- * * 224.0.0.0/4
0.0.0.0/0
0 0 DROP 2 -- * * 0.0.0.0/0
0.0.0.0/0
0 0 REJECT tcp -- * * 0.0.0.0/0
0.0.0.0/0 reject-with tcp-reset
0 0 REJECT udp -- * * 0.0.0.0/0
0.0.0.0/0 reject-with icmp-port-unreachable
0 0 REJECT icmp -- * * 0.0.0.0/0
0.0.0.0/0 reject-with icmp-host-unreachable
0 0 REJECT all -- * * 0.0.0.0/0
0.0.0.0/0 reject-with icmp-host-prohibited
Chain shorewall (0 references)
pkts bytes target prot opt in out source
destination
0 0 all -- * * 0.0.0.0/0
0.0.0.0/0 recent: SET name: %CURRENTTIME side: source mask:
255.255.255.255
Chain smurflog (2 references)
pkts bytes target prot opt in out source
destination
0 0 LOG all -- * * 0.0.0.0/0
0.0.0.0/0 LOG flags 0 level 6 prefix "Shorewall:smurfs:DROP:"
0 0 DROP all -- * * 0.0.0.0/0
0.0.0.0/0
Chain smurfs (1 references)
pkts bytes target prot opt in out source
destination
0 0 RETURN all -- * * 0.0.0.0
0.0.0.0/0
0 0 smurflog all -- * * 0.0.0.0/0
0.0.0.0/0 [goto] ADDRTYPE match src-type BROADCAST
0 0 smurflog all -- * * 224.0.0.0/4
0.0.0.0/0 [goto]
Chain tcpflags (1 references)
pkts bytes target prot opt in out source
destination
0 0 logflags tcp -- * * 0.0.0.0/0
0.0.0.0/0 [goto] tcp flags:0x3F/0x29
0 0 logflags tcp -- * * 0.0.0.0/0
0.0.0.0/0 [goto] tcp flags:0x3F/0x00
0 0 logflags tcp -- * * 0.0.0.0/0
0.0.0.0/0 [goto] tcp flags:0x06/0x06
0 0 logflags tcp -- * * 0.0.0.0/0
0.0.0.0/0 [goto] tcp flags:0x03/0x03
0 0 logflags tcp -- * * 0.0.0.0/0
0.0.0.0/0 [goto] tcp spt:0 flags:0x17/0x02
Log (/var/log/messages)
NAT Table
Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
Chain POSTROUTING (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
Mangle Table
Chain PREROUTING (policy ACCEPT 2074 packets, 157K bytes)
pkts bytes target prot opt in out source
destination
3769 360K tcpre all -- * * 0.0.0.0/0
0.0.0.0/0
Chain INPUT (policy ACCEPT 2074 packets, 157K bytes)
pkts bytes target prot opt in out source
destination
3769 360K tcin all -- * * 0.0.0.0/0
0.0.0.0/0
Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
0 0 MARK all -- * * 0.0.0.0/0
0.0.0.0/0 MARK and 0xffffff00
0 0 tcfor all -- * * 0.0.0.0/0
0.0.0.0/0
Chain OUTPUT (policy ACCEPT 2074 packets, 159K bytes)
pkts bytes target prot opt in out source
destination
3766 362K tcout all -- * * 0.0.0.0/0
0.0.0.0/0
Chain POSTROUTING (policy ACCEPT 2074 packets, 159K bytes)
pkts bytes target prot opt in out source
destination
3766 362K tcpost all -- * * 0.0.0.0/0
0.0.0.0/0
Chain tcfor (1 references)
pkts bytes target prot opt in out source
destination
Chain tcin (1 references)
pkts bytes target prot opt in out source
destination
Chain tcout (1 references)
pkts bytes target prot opt in out source
destination
Chain tcpost (1 references)
pkts bytes target prot opt in out source
destination
Chain tcpre (1 references)
pkts bytes target prot opt in out source
destination
Raw Table
Chain PREROUTING (policy ACCEPT 2073 packets, 157K bytes)
pkts bytes target prot opt in out source
destination
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:10080 CT helper amanda
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:21 CT helper ftp
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:1719 CT helper RAS
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:1720 CT helper Q.931
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:6667 CT helper irc
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:137 CT helper netbios-ns
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:1723 CT helper pptp
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:6566 CT helper sane
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:5060 CT helper sip
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:161 CT helper snmp
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:69 CT helper tftp
Chain OUTPUT (policy ACCEPT 2074 packets, 159K bytes)
pkts bytes target prot opt in out source
destination
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:10080 CT helper amanda
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:21 CT helper ftp
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:1719 CT helper RAS
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:1720 CT helper Q.931
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:6667 CT helper irc
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:137 CT helper netbios-ns
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:1723 CT helper pptp
0 0 CT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:6566 CT helper sane
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:5060 CT helper sip
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:161 CT helper snmp
0 0 CT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp dpt:69 CT helper tftp
Conntrack Table (293 out of 65536)
grep: /proc/net/nf_conntrack: No such file or directory
IP Configuration
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group
default
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
2: p1p1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP group
default qlen 1000
inet 108.61.140.114/29 brd 108.61.140.119 scope global p1p1
valid_lft forever preferred_lft forever
IP Stats
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN mode
DEFAULT group default
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
RX: bytes packets errors dropped overrun mcast
13703243123 119434856 0 0 0 0
TX: bytes packets errors dropped carrier collsns
13703243123 119434856 0 0 0 0
2: p1p1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP mode
DEFAULT group default qlen 1000
link/ether 00:25:90:d9:48:88 brd ff:ff:ff:ff:ff:ff
RX: bytes packets errors dropped overrun mcast
591512098 1040424 0 0 0 1818
TX: bytes packets errors dropped carrier collsns
191373024 911801 0 0 0 0
3: em1: <BROADCAST,MULTICAST> mtu 1500 qdisc noop state DOWN mode DEFAULT
group default qlen 1000
link/ether 00:25:90:d9:48:89 brd ff:ff:ff:ff:ff:ff
RX: bytes packets errors dropped overrun mcast
0 0 0 0 0 0
TX: bytes packets errors dropped carrier collsns
0 0 0 0 0 0
Routing Rules
0: from all lookup local
32766: from all lookup main
32767: from all lookup default
Table default:
Table local:
local 127.0.0.1 dev lo proto kernel scope host src 127.0.0.1
local 108.61.140.114 dev p1p1 proto kernel scope host src 108.61.140.114
broadcast 127.255.255.255 dev lo proto kernel scope link src 127.0.0.1
broadcast 127.0.0.0 dev lo proto kernel scope link src 127.0.0.1
broadcast 108.61.140.119 dev p1p1 proto kernel scope link src 108.61.140.114
broadcast 108.61.140.112 dev p1p1 proto kernel scope link src 108.61.140.114
local 127.0.0.0/8 dev lo proto kernel scope host src 127.0.0.1
Table main:
108.61.140.112/29 dev p1p1 proto kernel scope link src 108.61.140.114
default via 108.61.140.113 dev p1p1
Per-IP Counters
iptaccount is not installed
NF Accounting
No NF Accounting defined (nfacct not found)
Events
/proc
/proc/version = Linux version 3.13.0-52-generic (buildd@comet) (gcc
version 4.8.2 (Ubuntu 4.8.2-19ubuntu1) ) #86-Ubuntu SMP Mon May 4 04:32:59
UTC 2015
/proc/sys/net/ipv4/ip_forward = 1
/proc/sys/net/ipv4/icmp_echo_ignore_all = 0
/proc/sys/net/ipv4/conf/all/proxy_arp = 0
/proc/sys/net/ipv4/conf/all/arp_filter = 0
/proc/sys/net/ipv4/conf/all/arp_ignore = 0
/proc/sys/net/ipv4/conf/all/rp_filter = 1
/proc/sys/net/ipv4/conf/all/log_martians = 0
/proc/sys/net/ipv4/conf/default/proxy_arp = 0
/proc/sys/net/ipv4/conf/default/arp_filter = 0
/proc/sys/net/ipv4/conf/default/arp_ignore = 0
/proc/sys/net/ipv4/conf/default/rp_filter = 1
/proc/sys/net/ipv4/conf/default/log_martians = 1
/proc/sys/net/ipv4/conf/em1/proxy_arp = 0
/proc/sys/net/ipv4/conf/em1/arp_filter = 0
/proc/sys/net/ipv4/conf/em1/arp_ignore = 0
/proc/sys/net/ipv4/conf/em1/rp_filter = 1
/proc/sys/net/ipv4/conf/em1/log_martians = 1
/proc/sys/net/ipv4/conf/lo/proxy_arp = 0
/proc/sys/net/ipv4/conf/lo/arp_filter = 0
/proc/sys/net/ipv4/conf/lo/arp_ignore = 0
/proc/sys/net/ipv4/conf/lo/rp_filter = 1
/proc/sys/net/ipv4/conf/lo/log_martians = 1
/proc/sys/net/ipv4/conf/p1p1/proxy_arp = 0
/proc/sys/net/ipv4/conf/p1p1/arp_filter = 0
/proc/sys/net/ipv4/conf/p1p1/arp_ignore = 0
/proc/sys/net/ipv4/conf/p1p1/rp_filter = 1
/proc/sys/net/ipv4/conf/p1p1/log_martians = 1
ARP
? (108.61.140.113) at 74:8e:f8:48:e4:80 [ether] on p1p1
Modules
ip_set 41249 1 xt_set
iptable_filter 12810 1
iptable_mangle 12695 1
iptable_nat 13011 0
iptable_raw 12678 1
ip_tables 27239 4
iptable_filter,iptable_mangle,iptable_nat,iptable_raw
ipt_ah 12806 0
ipt_CLUSTERIP 13633 0
ipt_ECN 12529 0
ipt_MASQUERADE 12880 0
ipt_REJECT 12541 4
ipt_rpfilter 12546 0
ipt_ULOG 14273 0
nf_conntrack 96976 35
nf_nat_ftp,nf_nat_irc,nf_nat_sip,nf_nat_amanda,xt_CT,nf_nat_snmp_basic,nf_co
nntrack_netbios_ns,nf_conntrack_proto_gre,xt_helper,ipt_MASQUERADE,nf_conntr
ack_proto_udplite,nf_nat,xt_state,xt_connlimit,nf_nat_h323,nf_nat_ipv4,nf_na
t_pptp,nf_nat_tftp,xt_conntrack,nf_conntrack_amanda,ipt_CLUSTERIP,nf_conntra
ck_proto_sctp,nf_conntrack_netlink,nf_conntrack_broadcast,xt_connmark,nf_con
ntrack_ftp,nf_conntrack_irc,nf_conntrack_sip,iptable_nat,nf_conntrack_h323,n
f_conntrack_ipv4,nf_conntrack_pptp,nf_conntrack_sane,nf_conntrack_snmp,nf_co
nntrack_tftp
nf_conntrack_amanda 13041 3 nf_nat_amanda
nf_conntrack_broadcast 12589 2 nf_conntrack_netbios_ns,nf_conntrack_snmp
nf_conntrack_ftp 18638 3 nf_nat_ftp
nf_conntrack_h323 73895 5 nf_nat_h323
nf_conntrack_ipv4 15012 32
nf_conntrack_irc 13518 3 nf_nat_irc
nf_conntrack_netbios_ns 12665 2
nf_conntrack_netlink 36223 0
nf_conntrack_pptp 19258 3 nf_nat_pptp
nf_conntrack_proto_gre 14434 1 nf_conntrack_pptp
nf_conntrack_proto_sctp 18822 0
nf_conntrack_proto_udplite 13281 0
nf_conntrack_sane 13143 2
nf_conntrack_sip 28460 3 nf_nat_sip
nf_conntrack_snmp 12857 3 nf_nat_snmp_basic
nf_conntrack_tftp 13121 3 nf_nat_tftp
nf_defrag_ipv4 12758 2 xt_TPROXY,nf_conntrack_ipv4
nf_defrag_ipv6 34768 1 xt_TPROXY
nf_nat 21841 12
nf_nat_ftp,nf_nat_irc,nf_nat_sip,nf_nat_amanda,ipt_MASQUERADE,nf_nat_proto_g
re,nf_nat_h323,nf_nat_ipv4,nf_nat_pptp,nf_nat_tftp,xt_nat,iptable_nat
nf_nat_amanda 12491 0
nf_nat_ftp 12770 0
nf_nat_h323 17720 0
nf_nat_ipv4 13263 1 iptable_nat
nf_nat_irc 12723 0
nf_nat_pptp 13115 0
nf_nat_proto_gre 13009 1 nf_nat_pptp
nf_nat_sip 17186 0
nf_nat_snmp_basic 17302 0
nf_nat_tftp 12489 0
xt_addrtype 12635 5
xt_AUDIT 12678 0
xt_CHECKSUM 12549 0
xt_CLASSIFY 12507 0
xt_comment 12504 28
xt_connlimit 12636 0
xt_connmark 12755 0
xt_conntrack 12760 9
xt_CT 12956 22
xt_dccp 12606 0
xt_dscp 12597 0
xt_DSCP 12629 0
xt_hashlimit 17618 0
xt_helper 12583 0
xt_iprange 12783 33
xt_length 12536 0
xt_limit 12711 0
xt_LOG 17717 6
xt_mac 12492 0
xt_mark 12563 1
xt_multiport 12798 8
xt_nat 12681 0
xt_NFLOG 12537 0
xt_NFQUEUE 12776 2
xt_owner 12534 0
xt_physdev 12587 0
xt_pkttype 12504 0
xt_policy 12582 0
xt_realm 12498 0
xt_recent 18498 1
xt_sctp 12853 0
xt_set 13181 0
xt_state 12578 0
xt_statistic 12601 0
xt_tcpmss 12501 0
xt_TCPMSS 12664 0
xt_tcpudp 12884 60
xt_time 12661 0
xt_TPROXY 17356 0
Shorewall has detected the following iptables/netfilter capabilities:
ACCOUNT Target (ACCOUNT_TARGET): Not available
Address Type Match (ADDRTYPE): Available
Amanda Helper: Available
Arptables JF: Not available
AUDIT Target (AUDIT_TARGET): Available
Basic Filter (BASIC_FILTER): Available
Capabilities Version (CAPVERSION): 40515
Checksum Target: Available
CLASSIFY Target (CLASSIFY_TARGET): Available
Comments (COMMENTS): Available
Condition Match (CONDITION_MATCH): Not available
Connection Tracking Match (CONNTRACK_MATCH): Available
Connlimit Match (CONNLIMIT_MATCH): Available
Connmark Match (CONNMARK_MATCH): Available
CONNMARK Target (CONNMARK): Available
CT Target (CT_TARGET): Available
DSCP Match (DSCP_MATCH): Available
DSCP Target (DSCP_TARGET): Available
Enhanced Multi-port Match (EMULIPORT): Available
Extended Connection Tracking Match Support (NEW_CONNTRACK_MATCH):
Available
Extended Connmark Match (XCONNMARK_MATCH): Available
Extended CONNMARK Target (XCONNMARK): Available
Extended MARK Target 2 (EXMARK): Available
Extended MARK Target (XMARK): Available
Extended Multi-port Match (XMULIPORT): Available
Extended REJECT (ENHANCED_REJECT): Available
FLOW Classifier (FLOW_FILTER): Available
FTP-0 Helper: Not available
FTP Helper: Available
fwmark route mask (FWMARK_RT_MASK): Available
Geo IP match: Not available
Goto Support (GOTO_TARGET): Available
H323 Helper: Available
Hashlimit Match (HASHLIMIT_MATCH): Available
Header Match (HEADER_MATCH): Not available
Helper Match (HELPER_MATCH): Available
IMQ Target (IMQ_TARGET): Not available
IPMARK Target (IPMARK_TARGET): Not available
IPP2P Match (IPP2P_MATCH): Not available
IP range Match(IPRANGE_MATCH): Available
ipset V5 (IPSET_V5): Not available
iptables -S (IPTABLES_S): Available
IRC-0 Helper: Not available
IRC Helper: Available
Kernel Version (KERNELVERSION): 31300
LOGMARK Target (LOGMARK_TARGET): Not available
LOG Target (LOG_TARGET): Available
Mangle FORWARD Chain (MANGLE_FORWARD): Available
Mark in the filter table (MARK_ANYWHERE): Available
MARK Target (MARK): Available
MASQUERADE Target: Available
Multi-port Match (MULTIPORT): Available
NAT (NAT_ENABLED): Available
Netbios_ns Helper: Available
New tos Match: Available
NFAcct match: Not available
NFLOG Target (NFLOG_TARGET): Available
NFQUEUE Target (NFQUEUE_TARGET): Available
Owner Match (OWNER_MATCH): Available
Owner Name Match (OWNER_NAME_MATCH): Available
Packet length Match (LENGTH_MATCH): Available
Packet Mangling (MANGLE_ENABLED): Available
Packet Type Match (USEPKTTYPE): Available
Persistent SNAT (PERSISTENT_SNAT): Available
Physdev-is-bridged Support (PHYSDEV_BRIDGE): Available
Physdev Match (PHYSDEV_MATCH): Available
Policy Match (POLICY_MATCH): Available
PPTP Helper: Available
Rawpost Table (RAWPOST_TABLE): Not available
Raw Table (RAW_TABLE): Available
Realm Match (REALM_MATCH): Available
Recent Match "--reap" option (REAP_OPTION): Not available
Recent Match (RECENT_MATCH): Available
Repeat match (KLUDGEFREE): Available
RPFilter match: Available
SANE-0 Helper: Not available
SANE Helper: Available
SIP-0 Helper: Not available
SIP Helper: Available
SNMP Helper: Available
Statistic Match (STATISTIC_MATCH): Available
TCPMSS Match (TCPMSS_MATCH): Available
TFTP-0 Helper: Not available
TFTP Helper: Available
Time Match (TIME_MATCH): Available
TPROXY Target (TPROXY_TARGET): Available
UDPLITE Port Redirection: Not available
ULOG Target (ULOG_TARGET): Available
Netid State Recv-Q Send-Q Local Address:Port Peer
Address:Port
tcp LISTEN 0 128 *:22 *:*
users:(("sshd",1522,3))
tcp LISTEN 0 20 *:25 *:*
users:(("exim4",1792,6))
tcp LISTEN 0 50 *:3306 *:*
users:(("mysqld",2480,10))
tcp LISTEN 0 20 *:465 *:*
users:(("exim4",1792,4))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42398
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42538 users:(("mysqld",2480,87))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42499 users:(("mysqld",2480,37))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42510 users:(("mysqld",2480,49))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42513 users:(("mysqld",2480,52))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42475 users:(("mysqld",2480,26))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42518 users:(("mysqld",2480,69))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42460 users:(("mysqld",2480,14))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42472 users:(("mysqld",2480,23))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42390
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42530 users:(("mysqld",2480,79))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42461 users:(("mysqld",2480,15))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42452 users:(("mysqld",2480,98))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42458 users:(("mysqld",2480,95))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42552 users:(("mysqld",2480,96))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42537 users:(("mysqld",2480,86))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42415
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42480 users:(("mysqld",2480,108))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42494 users:(("mysqld",2480,32))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42481 users:(("mysqld",2480,43))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42545 users:(("mysqld",2480,89))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42559 users:(("mysqld",2480,61))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42503 users:(("mysqld",2480,41))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42516 users:(("mysqld",2480,55))
tcp CLOSE-WAIT 70 0 108.61.140.114:56880
91.189.92.11:443 users:(("unity-scope-hom",3819,22))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42532 users:(("mysqld",2480,81))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42543 users:(("mysqld",2480,100))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42502 users:(("mysqld",2480,40))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42489 users:(("mysqld",2480,66))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42484 users:(("mysqld",2480,58))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42526 users:(("mysqld",2480,75))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42501 users:(("mysqld",2480,39))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42547 users:(("mysqld",2480,91))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42454 users:(("mysqld",2480,105))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42536 users:(("mysqld",2480,85))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42546 users:(("mysqld",2480,90))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42527 users:(("mysqld",2480,76))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42482 users:(("mysqld",2480,56))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42449 users:(("mysqld",2480,104))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42471 users:(("mysqld",2480,22))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42500 users:(("mysqld",2480,38))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42497 users:(("mysqld",2480,35))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42418
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42531 users:(("mysqld",2480,80))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42528 users:(("mysqld",2480,77))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42462 users:(("mysqld",2480,17))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42539 users:(("mysqld",2480,99))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42541 users:(("mysqld",2480,57))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42542 users:(("mysqld",2480,127))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42551 users:(("mysqld",2480,93))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42496 users:(("mysqld",2480,34))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42515 users:(("mysqld",2480,54))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42560 users:(("mysqld",2480,62))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42524 users:(("mysqld",2480,73))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42505 users:(("mysqld",2480,44))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42498 users:(("mysqld",2480,36))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42468 users:(("mysqld",2480,19))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42525 users:(("mysqld",2480,74))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42421
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42486 users:(("mysqld",2480,63))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42478 users:(("mysqld",2480,29))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42427
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42453 users:(("mysqld",2480,103))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42420
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42550 users:(("mysqld",2480,92))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42508 users:(("mysqld",2480,47))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42488 users:(("mysqld",2480,65))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42467 users:(("mysqld",2480,20))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42549 users:(("mysqld",2480,88))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42419
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42517 users:(("mysqld",2480,68))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42555 users:(("mysqld",2480,60))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42466 users:(("mysqld",2480,18))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42529 users:(("mysqld",2480,78))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42507 users:(("mysqld",2480,46))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42553 users:(("mysqld",2480,13))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42490 users:(("mysqld",2480,67))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42519 users:(("mysqld",2480,70))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42473 users:(("mysqld",2480,24))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42514 users:(("mysqld",2480,53))
tcp ESTAB 0 18228 108.61.140.114:22
186.83.2.183:52944 users:(("sshd",9077,3),("sshd",8957,3))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42533 users:(("mysqld",2480,82))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42554 users:(("mysqld",2480,16))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42506 users:(("mysqld",2480,45))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42487 users:(("mysqld",2480,64))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42504 users:(("mysqld",2480,42))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42492 users:(("mysqld",2480,30))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42474 users:(("mysqld",2480,25))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42534 users:(("mysqld",2480,83))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42436
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42563 users:(("mysqld",2480,97))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42405
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42479 users:(("mysqld",2480,107))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42470 users:(("mysqld",2480,21))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42509 users:(("mysqld",2480,48))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42485 users:(("mysqld",2480,59))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42512 users:(("mysqld",2480,51))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42495 users:(("mysqld",2480,33))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42535 users:(("mysqld",2480,84))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42511 users:(("mysqld",2480,50))
tcp TIME-WAIT 0 0 127.0.0.1:3306
127.0.0.1:42412
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42523 users:(("mysqld",2480,72))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42450 users:(("mysqld",2480,102))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42459 users:(("mysqld",2480,106))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42562 users:(("mysqld",2480,94))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42561 users:(("mysqld",2480,71))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42493 users:(("mysqld",2480,31))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42477 users:(("mysqld",2480,28))
tcp ESTAB 0 0 127.0.0.1:3306
127.0.0.1:42476 users:(("mysqld",2480,27))
Traffic Control
Device p1p1:
qdisc mq 0: root
Sent 191390852 bytes 911813 pkt (dropped 0, overlimits 0 requeues 1196)
backlog 0b 0p requeues 1196
class mq :1 root
Sent 52616481 bytes 265127 pkt (dropped 0, overlimits 0 requeues 339)
backlog 0b 0p requeues 339
class mq :2 root
Sent 42754500 bytes 179873 pkt (dropped 0, overlimits 0 requeues 301)
backlog 0b 0p requeues 301
class mq :3 root
Sent 47862746 bytes 239696 pkt (dropped 0, overlimits 0 requeues 268)
backlog 0b 0p requeues 268
class mq :4 root
Sent 48157125 bytes 227117 pkt (dropped 0, overlimits 0 requeues 288)
backlog 0b 0p requeues 288
class mq :5 root
Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0)
backlog 0b 0p requeues 0
class mq :6 root
Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0)
backlog 0b 0p requeues 0
class mq :7 root
Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0)
backlog 0b 0p requeues 0
class mq :8 root
Sent 0 bytes 0 pkt (dropped 0, overlimits 0 requeues 0)
backlog 0b 0p requeues 0
TC Filters
Device p1p1:
------------------------------------------------------------------------------
One dashboard for servers and applications across Physical-Virtual-Cloud
Widest out-of-the-box monitoring support with 50+ applications
Performance metrics, stats and reports that give you Actionable Insights
Deep dive visibility with transaction tracing using APM Insight.
http://ad.doubleclick.net/ddm/clk/290420510;117567292;y
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users