iptables保存,开机由rc.local来启动
iptables-save > /etc/sysconfig/iptables
echo "iptables-restore /etc/sysconfig/iptables" >> /etc/rc.d/rc.local
iptables-restore /etc/sysconfig/iptables
iptables添加IP、端口
iptables -I INPUT -m iprange -src-range 192.168.100.11-192.168.100.18 -j ACCEPT
iptables -I INPUT -s 192.168.100.11 -p tcp -m multiport --dports 1521 -j ACCEPT
iptables -I INPUT -s 192.168.100.11 -j ACCEPT
iptables的DROP
iptables -A INPUT -i team0 -j DROP
iptables -A INPUT -p tcp --dport 22 -j DROP
iptable打开ping
iptables -I INPUT -p icmp --icmp-type echo-request -m iprange --src-range 192.168.100.11-192.168.100.18 -j ACCEPT
iptables -I INPUT -p icmp --icmp-type echo-request -j ACCEPT
iptalbe 删除策略
iptables -L -n --line
### 查看当前策略的行号
iptables -D INPUT 3
### 删除INPUT键里的行号
iptables
最新推荐文章于 2025-04-23 11:38:43 发布