|
楼主 |
发表于 2003-5-23 15:43:25
|
显示全部楼层
转悠悠兄,有错呀,我把iptables写在/etc/rc.d/firewall
执行时,出现以下错误:
iptables: Chain already exists
iptables: No chain/target/match by that name
这是iptables配置文件
iptables -F INPUT
iptables -F OUTPUT
iptables -F FORWARD
iptables -P INPUT DROP
iptables -P OUTPUT DROP
iptables -P FORWARD DROP
#iptables -A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
#iptables -A INPUT -p tcp -m tcp --dport 21 -j ACCEPT
#iptables -A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
#iptables -A INPUT -p tcp -m tcp --dport 25 -j ACCEPT
#iptables -A INPUT -p tcp -m tcp --dport 110 -j ACCEPT
#iptables -A INPUT -i eth0 -m state --state ESTABLISHED,RELATED -j ACCEPT
iptables -N mine
iptables -A mine -m state --state ESTABLISHED,RELATED -j ACCEPT
iptables -A mine -m state --state NEW -i ! ppp0 -j ACCEPT
iptables -A INPUT -j mine
iptables -A output -j mine
iptables -A FORWARD -j mine
是哪边错了??苦呀, |
|