- $IPT -N officeNets
- for port in 137 138 17500 5678
- do
- $IPT -A officeNets -i ${PUB_IF} -d ${SERVER_IP} -p udp --dport $port -s ${PROVIDER_IPS} -j DROP
- done
- $IPT -I INPUT -j officeNets
- $IPT -I OUTPUT -j officeNets
- $IPT -I FORWARD -j officeNets
- #######################
- echo "drop and log everything else"
- $IPT -A INPUT -m limit --limit 5/m --limit-burst 7 -j LOG --log-prefix " DEFAULT DROP "
- $IPT -A INPUT -j DROP
|