cd ../etc/sysconfig/
vi iptables
vi iptables
:INPUT ACCEPT [25012:10720757]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [46390994:21989468466]
:RH-Firewall-1-INPUT - [0:0]
-A INPUT -p tcp -m tcp --dport 20 -j ACCEPT
-A INPUT -p udp -m udp --dport 20 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 21 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 8801 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 8802 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 3306 -j ACCEPT
-A INPUT -s 127.0.0.1 -d 127.0.0.1 -i lo -j ACCEPT
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A INPUT -p tcp -j DROP
-A INPUT -p udp -j DROP
-A FORWARD -p tcp -j DROP
-A FORWARD -p udp -j DROP
COMMIT