差異處
這裏顯示兩個版本的差異處。
|
iptables [2018/09/05 00:38] jz 建立 |
iptables [2018/09/05 00:41] (目前版本) jz |
||
|---|---|---|---|
| 行 1: | 行 1: | ||
| ====== NFS ====== | ====== NFS ====== | ||
| + | |||
| + | **Persistent iptables rules** | ||
| + | <code> | ||
| + | sudo apt-get install iptables-persistent | ||
| + | </code> | ||
| + | |||
| + | **Fixed port** | ||
| <code> | <code> | ||
| /etc/default/nfs-kernel-server | /etc/default/nfs-kernel-server | ||
| 行 7: | 行 14: | ||
| <code> | <code> | ||
| + | vi /etc/iptables/rules.v4 | ||
| *filter | *filter | ||
| :INPUT DROP [0:0] | :INPUT DROP [0:0] | ||
| 行 28: | 行 36: | ||
| -A OUTPUT -p tcp -m tcp --sport 22 -m conntrack --ctstate ESTABLISHED -j ACCEPT | -A OUTPUT -p tcp -m tcp --sport 22 -m conntrack --ctstate ESTABLISHED -j ACCEPT | ||
| COMMIT | COMMIT | ||
| + | </code> | ||
| + | |||
| + | **Apply** | ||
| + | <code> | ||
| + | sudo iptables-restore < /etc/iptables/rules.v4 | ||
| </code> | </code> | ||
