Do you see my mistake ? It's the default iptable config on CentOS.

2016-02-10 11:48 GMT+01:00 Stéphane Klein <[email protected]>:

>
>
> 2016-02-10 11:44 GMT+01:00 Clayton Coleman <[email protected]>:
>
>> Firewall it is :)
>>
>>
> ```
> iptables -L
> Chain INPUT (policy ACCEPT)
> target     prot opt source               destination
> ACCEPT     all  --  anywhere             anywhere             ctstate
> RELATED,ESTABLISHED
> ACCEPT     all  --  anywhere             anywhere
> INPUT_direct  all  --  anywhere             anywhere
> INPUT_ZONES_SOURCE  all  --  anywhere             anywhere
> INPUT_ZONES  all  --  anywhere             anywhere
> ACCEPT     icmp --  anywhere             anywhere
> REJECT     all  --  anywhere             anywhere             reject-with
> icmp-host-prohibited
>
> Chain FORWARD (policy ACCEPT)
> target     prot opt source               destination
> DOCKER     all  --  anywhere             anywhere
> ACCEPT     all  --  anywhere             anywhere             ctstate
> RELATED,ESTABLISHED
> ACCEPT     all  --  anywhere             anywhere
> ACCEPT     all  --  anywhere             anywhere
> ACCEPT     all  --  anywhere             anywhere             ctstate
> RELATED,ESTABLISHED
> ACCEPT     all  --  anywhere             anywhere
> FORWARD_direct  all  --  anywhere             anywhere
> FORWARD_IN_ZONES_SOURCE  all  --  anywhere             anywhere
> FORWARD_IN_ZONES  all  --  anywhere             anywhere
> FORWARD_OUT_ZONES_SOURCE  all  --  anywhere             anywhere
> FORWARD_OUT_ZONES  all  --  anywhere             anywhere
> ACCEPT     icmp --  anywhere             anywhere
> REJECT     all  --  anywhere             anywhere             reject-with
> icmp-host-prohibited
>
> Chain OUTPUT (policy ACCEPT)
> target     prot opt source               destination
> OUTPUT_direct  all  --  anywhere             anywhere
>
> Chain DOCKER (1 references)
> target     prot opt source               destination
>
> Chain FORWARD_IN_ZONES (1 references)
> target     prot opt source               destination
> FWDI_public  all  --  anywhere             anywhere            [goto]
> FWDI_public  all  --  anywhere             anywhere            [goto]
>
> Chain FORWARD_IN_ZONES_SOURCE (1 references)
> target     prot opt source               destination
>
> Chain FORWARD_OUT_ZONES (1 references)
> target     prot opt source               destination
> FWDO_public  all  --  anywhere             anywhere            [goto]
> FWDO_public  all  --  anywhere             anywhere            [goto]
>
> Chain FORWARD_OUT_ZONES_SOURCE (1 references)
> target     prot opt source               destination
>
> Chain FORWARD_direct (1 references)
> target     prot opt source               destination
>
> Chain FWDI_public (2 references)
> target     prot opt source               destination
> FWDI_public_log  all  --  anywhere             anywhere
> FWDI_public_deny  all  --  anywhere             anywhere
> FWDI_public_allow  all  --  anywhere             anywhere
>
> Chain FWDI_public_allow (1 references)
> target     prot opt source               destination
>
> Chain FWDI_public_deny (1 references)
> target     prot opt source               destination
>
> Chain FWDI_public_log (1 references)
> target     prot opt source               destination
>
> Chain FWDO_public (2 references)
> target     prot opt source               destination
> FWDO_public_log  all  --  anywhere             anywhere
> FWDO_public_deny  all  --  anywhere             anywhere
> FWDO_public_allow  all  --  anywhere             anywhere
>
> Chain FWDO_public_allow (1 references)
> target     prot opt source               destination
>
> Chain FWDO_public_deny (1 references)
> target     prot opt source               destination
>
> Chain FWDO_public_log (1 references)
> target     prot opt source               destination
>
> Chain INPUT_ZONES (1 references)
> target     prot opt source               destination
> IN_public  all  --  anywhere             anywhere            [goto]
> IN_public  all  --  anywhere             anywhere            [goto]
>
> Chain INPUT_ZONES_SOURCE (1 references)
> target     prot opt source               destination
>
> Chain INPUT_direct (1 references)
> target     prot opt source               destination
>
> Chain IN_public (2 references)
> target     prot opt source               destination
> IN_public_log  all  --  anywhere             anywhere
> IN_public_deny  all  --  anywhere             anywhere
> IN_public_allow  all  --  anywhere             anywhere
>
> Chain IN_public_allow (1 references)
> target     prot opt source               destination
> ACCEPT     tcp  --  anywhere             anywhere             tcp dpt:ssh
> ctstate NEW
>
> Chain IN_public_deny (1 references)
> target     prot opt source               destination
>
> Chain IN_public_log (1 references)
> target     prot opt source               destination
>
> Chain OUTPUT_direct (1 references)
> target     prot opt source               destination
> [root@localhost vagrant]#
> ```
>



-- 
Stéphane Klein <[email protected]>
blog: http://stephane-klein.info
cv : http://cv.stephane-klein.info
Twitter: http://twitter.com/klein_stephane
_______________________________________________
users mailing list
[email protected]
http://lists.openshift.redhat.com/openshiftmm/listinfo/users

Reply via email to