马上注册,结交更多好友,享用更多功能,让你轻松玩转社区。
您需要 登录 才可以下载或查看,没有账号?注册
×
双方都是ros2。9。27
朋友给我他那防火墙导出的规则。我不知如何修改在添加到我的ROS,谁能帮忙改一下。。
Flags: X - disabled, I - invalid, D - dynamic
0 ;;; ,
chain=input protocol=tcp psd=21,3s,3,1 action=drop
1 ;;; TCP \( 10\), DoS ,
chain=input protocol=tcp connection-limit=10,32
action=add-src-to-address-list address-list=black_list
address-list-timeout=5d
2 ;;; drop Port
chain=input protocol=tcp dst-port=135-139 action=drop
3 chain=input protocol=udp dst-port=135-139 action=drop
4 chain=input connection-state=established action=accept
5 chain=input connection-state=related action=accept
6 chain=input src-address=127.0.0.1 dst-address=127.0.0.1 action=accept
7 chain=input connection-state=invalid action=drop
8 chain=input dst-address-type=!local action=drop
9 chain=input src-address-type=!unicast action=drop
10 ;;; ping tracert,ICMP
chain=input protocol=icmp icmp-options=0:0-255 limit=5,5 action=accept
11 chain=input protocol=icmp icmp-options=3:3 limit=5,5 action=accept
12 chain=input protocol=icmp icmp-options=3:4 limit=5,5 action=accept
13 chain=input protocol=icmp icmp-options=8:0-255 limit=5,5 action=accept
14 chain=input protocol=icmp icmp-options=11:0-255 limit=5,5 action=accept
15 chain=output protocol=icmp icmp-options=0:0-255 limit=5,5 action=accept
16 chain=output protocol=icmp icmp-options=3:3 limit=5,5 action=accept
17 chain=output protocol=icmp icmp-options=3:4 limit=5,5 action=accept
18 chain=output protocol=icmp icmp-options=8:0-255 limit=5,5 action=accept
19 chain=output protocol=icmp icmp-options=11:0-255 limit=5,5 action=accept
20 chain=forward protocol=icmp icmp-options=0:0-255 limit=5,5 action=accept
21 chain=forward protocol=icmp icmp-options=3:3 limit=5,5 action=accept
22 chain=forward protocol=icmp icmp-options=3:4 limit=5,5 action=accept
23 chain=forward protocol=icmp icmp-options=8:0-255 limit=5,5 action=accept
24 chain=forward protocol=icmp icmp-options=11:0-255 limit=5,5 action=accept
25 chain=input protocol=icmp action=drop
26 chain=output protocol=icmp action=drop
27 chain=forward protocol=icmp action=drop
28 ;;; QQ
chain=forward protocol=udp dst-port=13000-13800 action=drop |