18 lines
1.2 KiB
Plaintext
18 lines
1.2 KiB
Plaintext
# Generated by iptables-save v1.8.9 (nf_tables) on Thu Sep 5 12:02:50 2024
|
|
*filter
|
|
:INPUT DROP [78122:5351686]
|
|
:FORWARD DROP [0:0]
|
|
-A INPUT -p tcp -m tcp --dport 22 -m state --state NEW -m recent --update --seconds 10 --hitcount 10 --name DEFAULT --mask 255.255.255.255 --rsource -j DROP
|
|
-A INPUT -p tcp -m tcp --dport 22 -m state --state NEW -m recent --set --name DEFAULT --mask 255.255.255.255 --rsource
|
|
-A INPUT -i eth0 -m set --match-set hostile-countries src -j DROP
|
|
-A INPUT -p tcp -m tcp --dport 22 -m state --state NEW -m recent --set --name DEFAULT --mask 255.255.255.255 --rsource
|
|
-A INPUT -p tcp -m tcp --dport 22 -m state --state NEW -m recent --update --seconds 10 --hitcount 10 --name DEFAULT --mask 255.255.255.255 --rsource -j DROP
|
|
-A INPUT -i wg2 -j ACCEPT
|
|
-A INPUT -p udp -m udp --dport 51823 -j ACCEPT
|
|
-A INPUT -p tcp -m multiport --dports 22 -j f2b-sshd
|
|
-A INPUT -i wg0 -j ACCEPT
|
|
-A INPUT -p udp -m udp --dport 52821 -j ACCEPT
|
|
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
|
|
-A INPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
|
|
-A INPUT -p tcp -m tcp --dport 22 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
|