Difference between revisions of "OPS535 Linux Firewall Review"
(Created page with "= Concepts = * Netfilter * iptables * firewall = Command line tools = * iptables * ip6tables * arptables * ebtables * nft = iptables = * raw table ** PREROUTING chain ** OUTPU...") |
|||
Line 1: | Line 1: | ||
+ | [[Category:OPS535]] | ||
= Concepts = | = Concepts = | ||
* Netfilter | * Netfilter | ||
Line 32: | Line 33: | ||
**FORWARD | **FORWARD | ||
**OUTPUT | **OUTPUT | ||
+ | = rules = | ||
+ | <pre> | ||
+ | iptables -t filter -A INPUT -p tcp --dport 22 -j ACCEPT | ||
+ | |---------------| |---------------| |--------| | ||
+ | where and when match spec. action | ||
+ | </pre> |
Revision as of 23:17, 11 October 2016
Contents
Concepts
- Netfilter
- iptables
- firewall
Command line tools
- iptables
- ip6tables
- arptables
- ebtables
- nft
iptables
- raw table
- PREROUTING chain
- OUTPUT chain
- managle table
- PREROUTING
- INPUT
- FORWARD
- OUTPUT
- POSTROUTING
- nat table
- PREROUTING
- INPUT
- OUTPUT
- POSTROUTING
- filter table
- INPUT
- FORWARD
- OUTPUT
- security table
- INPUT
- FORWARD
- OUTPUT
rules
iptables -t filter -A INPUT -p tcp --dport 22 -j ACCEPT |---------------| |---------------| |--------| where and when match spec. action