在使用Ubuntu的iptables时,用户可能会遇到各种常见问题。以下是一些常见问题的解决方案:
iptables -A INPUT -p tcp --dport 22 -j ACCEPTiptables -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPTiptables -P INPUT DROPiptables -A INPUT -p icmp --icmp-type 8 -m limit --limit 5/s -j ACCEPTiptables -A INPUT -p icmp -j LOG --log-prefix "ICMP_Attack: "iptables -A INPUT -p icmp -j DROPiptables -A INPUT -p tcp --dport 80 -j ACCEPTiptables -A FORWARD -i eth0 -o eth1 -j ACCEPTiptables -t nat -A PREROUTING -p tcp --dport 8080 -j DNAT --to 192.168.1.100:80iptables-save > /etc/iptables.rulesiptables-restore < /etc/iptables.rulesservice iptables saveapt install iptables-persistent 和 netfilter-persistent saveiptables-save > /etc/iptables.rules 和 echo "pre-up iptables-restore < /etc/iptables.rules" >> /etc/network/interfacesipset create blacklist hash:ip timeout 86400iptables -A INPUT -m set --match-set blacklist src -j DROPiptables -A INPUT -p tcp --dport 22 -m connlimit --connlimit-above 3 -j REJECT