{"id":451,"date":"2026-04-25T21:11:21","date_gmt":"2026-04-25T12:11:21","guid":{"rendered":"https:\/\/falcon21.space\/kazuya\/work\/?p=451"},"modified":"2026-04-25T21:11:21","modified_gmt":"2026-04-25T12:11:21","slug":"filter%e3%83%86%e3%83%bc%e3%83%96%e3%83%ab%e3%81%ae%e3%83%81%e3%82%a7%e3%83%bc%e3%83%b3%e3%81%ae%e3%83%95%e3%82%a1%e3%82%a4%e3%82%a2%e3%82%a6%e3%82%a9%e3%83%bc%e3%83%ab%e3%83%bb%e3%83%ab%e3%83%bc","status":"publish","type":"post","link":"https:\/\/falcon21.space\/kazuya\/work\/?p=451","title":{"rendered":"filter\u30c6\u30fc\u30d6\u30eb\u306e\u30c1\u30a7\u30fc\u30f3\u306e\u30d5\u30a1\u30a4\u30a2\u30a6\u30a9\u30fc\u30eb\u30fb\u30eb\u30fc\u30eb\u3092\u30ea\u30b9\u30c8\u3059\u308bip\u30a2\u30c9\u30ec\u30b9 DROP \u3092\u78ba\u8a8d"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">root@falcon21:~#<strong> iptables &#8211;list-rules<\/strong><br>-P INPUT ACCEPT<br>-P FORWARD ACCEPT<br>-P OUTPUT ACCEPT<br>-A INPUT -s 118.41.245.222\/32 -j DROP<br>-A INPUT -s 91.92.242.96\/32 -j DROP<br>-A INPUT -s 158.94.211.198\/32 -j DROP<br>-A INPUT -s 141.98.9.70\/32 -j DROP<br>-A INPUT -s 77.83.39.169\/32 -j DROP<br>-A INPUT -s 178.16.54.219\/32 -j DROP<br>-A INPUT -s 91.92.240.214\/32 -j DROP<br>-A INPUT -s 45.144.212.43\/32 -j DROP<br>-A INPUT -s 77.83.39.169\/32 -j DROP<br>-A INPUT -s 141.98.9.105\/32 -j DROP<br>-A INPUT -s 45.144.212.43\/32 -j DROP<br>-A INPUT -s 137.184.32.56\/32 -j DROP<br>-A INPUT -s 18.218.118.203\/32 -j DROP<br>-A INPUT -s 46.190.153.30\/32 -j DROP<br>-A INPUT -s 18.218.118.203\/32 -j DROP<br>-A INPUT -s 77.83.39.169\/32 -j DROP<br>-A INPUT -s 34.182.217.30\/32 -j DROP<br>-A INPUT -s 45.144.212.43\/32 -j DROP<br>-A INPUT -s 8.229.9.8\/32 -j DROP<br>-A INPUT -s 34.182.230.122\/32 -j DROP<br>-A INPUT -s 136.109.206.133\/32 -j DROP<br>-A INPUT -s 77.83.39.241\/32 -j DROP<br>-A INPUT -s 178.16.54.219\/32 -j DROP<br>-A INPUT -s 91.92.240.214\/32 -j DROP<br>-A INPUT -s 161.248.147.102\/32 -j DROP<br>-A INPUT -s 178.16.53.241\/32 -j DROP<br>-A INPUT -s 104.152.52.228\/32 -j DROP<br>-A INPUT -s 35.201.1.167\/32 -j DROP<br>-A INPUT -s 34.129.109.7\/32 -j DROP<br>-A INPUT -s 34.116.198.70\/32 -j DROP<br>-A INPUT -s 34.95.141.233\/32 -j DROP<br>-A INPUT -s 35.197.174.219\/32 -j DROP<br>-A INPUT -s 35.241.197.14\/32 -j DROP<br>-A INPUT -s 34.79.230.15\/32 -j DROP<br>-A INPUT -s 35.246.236.71\/32 -j DROP<br>-A INPUT -s 34.142.115.181\/32 -j DROP<br>-A INPUT -s 34.185.137.227\/32 -j DROP<br>-A INPUT -s 34.105.231.162\/32 -j DROP<br>-A INPUT -s 35.230.28.229\/32 -j DROP<br>-A INPUT -s 34.94.107.161\/32 -j DROP<br>-A INPUT -s 34.94.123.223\/32 -j DROP<br>-A INPUT -s 34.125.0.138\/32 -j DROP<br>-A INPUT -s 34.97.241.51\/32 -j DROP<br>-A INPUT -s 77.83.39.169\/32 -j DROP<br>-A INPUT -s 178.16.53.241\/32 -j DROP<br>-A INPUT -s 203.181.3.94\/32 -j DROP<br>-A INPUT -s 104.152.52.228\/32 -j DROP<br>-A INPUT -s 141.98.9.105\/32 -j DROP<br>-A INPUT -s 45.144.212.43\/32 -j DROP<br>-A INPUT -s 141.98.11.33\/32 -j DROP<br>-A INPUT -s 178.16.52.71\/32 -j DROP<br>-A INPUT -s 35.185.223.148\/32 -j DROP<br>-A INPUT -s 34.82.221.4\/32 -j DROP<br>-A INPUT -s 34.186.143.115\/32 -j DROP<br>-A INPUT -s 34.106.52.219\/32 -j DROP<br>-A INPUT -s 34.82.97.210\/32 -j DROP<br>-A INPUT -s 35.236.122.157\/32 -j DROP<br>-A INPUT -s 34.106.146.251\/32 -j DROP<br>-A INPUT -s 141.98.9.104\/32 -j DROP<br>-A INPUT -s 178.16.53.80\/32 -j DROP<br>-A INPUT -s 178.16.53.230\/32 -j DROP<br>-A INPUT -s 141.98.11.33\/32 -j DROP<br>-A INPUT -s 178.16.52.71\/32 -j DROP<br>-A INPUT -s 141.98.9.104\/32 -j DROP<br>-A INPUT -s 45.94.31.100\/32 -j DROP<br>-A INPUT -s 64.225.74.178\/32 -j DROP<br>-A INPUT -s 147.182.241.81\/32 -j DROP<br>-A INPUT -s 34.82.97.210\/32 -j DROP<br>-A INPUT -s 118.41.245.222\/32 -j DROP<br>-A INPUT -s 91.92.242.96\/32 -j DROP<br>-A INPUT -s 158.94.211.198\/32 -j DROP<br>-A INPUT -s 178.16.53.80\/32 -j DROP<br>-A INPUT -s 178.16.53.230\/32 -j DROP<br>-A INPUT -s 45.94.31.250\/32 -j DROP<br>-A INPUT -s 141.98.9.70\/32 -j DROP<br>-A INPUT -s 3.129.187.38\/32 -j DROP<br>-A INPUT -s 130.12.180.52\/32 -j DROP<br>-A INPUT -s 3.129.187.38\/32 -j DROP<br>-A INPUT -s 158.94.211.198\/32 -j DROP<br>-A INPUT -s 141.98.9.70\/32 -j DROP<br>-A INPUT -s 45.94.31.250\/32 -j DROP<br>-A INPUT -s 35.233.32.170\/32 -j DROP<br>-A INPUT -s 34.125.138.17\/32 -j DROP<br>-A INPUT -s 34.106.141.159\/32 -j DROP<br>-A INPUT -s 34.106.203.77\/32 -j DROP<br>-A INPUT -s 34.21.47.209\/32 -j DROP<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">*********************************************************************************<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">iptables -L -v\u3068\u5b9f\u884c -v\u306fverbose\u3067\u8a73\u7d30\u3092\u51fa\u529b<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">root@falcon21:~# <strong>iptables -L -v<\/strong><br>Chain INPUT (policy ACCEPT 3031K packets, 365M bytes)<br>pkts bytes target prot opt in out source destination<br>0 0 DROP all &#8212; any any 118.41.245.222 anywhere<br>0 0 DROP all &#8212; any any 91.92.242.96 anywhere<br>0 0 DROP all &#8212; any any 158.94.211.198 anywhere<br>0 0 DROP all &#8212; any any 141.98.9.70 anywhere<br>0 0 DROP all &#8212; any any 77.83.39.169 anywhere<br>0 0 DROP all &#8212; any any 178.16.54.219 anywhere<br>17 748 DROP all &#8212; any any 91.92.240.214 anywhere<br>1 52 DROP all &#8212; any any 45.144.212.43 anywhere<br>1 44 DROP all &#8212; any any 77.83.39.169 anywhere<br>0 0 DROP all &#8212; any any 141.98.9.105 anywhere<br>0 0 DROP all &#8212; any any 45.144.212.43 anywhere<br>420 20488 DROP all &#8212; any any lava.census.shodan.io anywhere<br>175 10500 DROP all &#8212; any any scan.visionheight.com anywhere<br>0 0 DROP all &#8212; any any 46.190.153.30 anywhere<br>0 0 DROP all &#8212; any any scan.visionheight.com anywhere<br>0 0 DROP all &#8212; any any 77.83.39.169 anywhere<br>0 0 DROP all &#8212; any any 30.217.182.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 45.144.212.43 anywhere<br>0 0 DROP all &#8212; any any 8.9.229.8.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 122.230.182.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 133.206.109.136.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 77.83.39.241 anywhere<br>0 0 DROP all &#8212; any any 178.16.54.219 anywhere<br>0 0 DROP all &#8212; any any 91.92.240.214 anywhere<br>0 0 DROP all &#8212; any any 161.248.147.102 anywhere<br>0 0 DROP all &#8212; any any 178.16.53.241 anywhere<br>0 0 DROP all &#8212; any any internettl.org anywhere<br>0 0 DROP all &#8212; any any 167.1.201.35.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 7.109.129.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 70.198.116.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 233.141.95.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 219.174.197.35.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 14.197.241.35.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 15.230.79.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 71.236.246.35.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 181.115.142.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 227.137.185.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 162.231.105.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 229.28.230.35.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 161.107.94.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 223.123.94.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 138.0.125.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 51.241.97.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 77.83.39.169 anywhere<br>0 0 DROP all &#8212; any any 178.16.53.241 anywhere<br>10 400 DROP all &#8212; any any q003094.ppp.asahi-net.or.jp anywhere<br>0 0 DROP all &#8212; any any internettl.org anywhere<br>0 0 DROP all &#8212; any any 141.98.9.105 anywhere<br>0 0 DROP all &#8212; any any 45.144.212.43 anywhere<br>0 0 DROP all &#8212; any any srv-141-98-11-33.serveroffer.net anywhere<br>0 0 DROP all &#8212; any any 178.16.52.71 anywhere<br>0 0 DROP all &#8212; any any 148.223.185.35.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 4.221.82.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 115.143.186.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 219.52.106.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 210.97.82.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 157.122.236.35.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 251.146.106.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 141.98.9.104 anywhere<br>0 0 DROP all &#8212; any any 178.16.53.80 anywhere<br>0 0 DROP all &#8212; any any 178.16.53.230 anywhere<br>0 0 DROP all &#8212; any any srv-141-98-11-33.serveroffer.net anywhere<br>0 0 DROP all &#8212; any any 178.16.52.71 anywhere<br>0 0 DROP all &#8212; any any 141.98.9.104 anywhere<br>228 11856 DROP all &#8212; any any brightmy.com anywhere<br>68 3042 DROP all &#8212; any any butter.scanf.shodan.io anywhere<br>126 5615 DROP all &#8212; any any bacon.scanf.shodan.io anywhere<br>0 0 DROP all &#8212; any any 210.97.82.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 118.41.245.222 anywhere<br>0 0 DROP all &#8212; any any 91.92.242.96 anywhere<br>0 0 DROP all &#8212; any any 158.94.211.198 anywhere<br>0 0 DROP all &#8212; any any 178.16.53.80 anywhere<br>0 0 DROP all &#8212; any any 178.16.53.230 anywhere<br>0 0 DROP all &#8212; any any 45.94.31.250 anywhere<br>0 0 DROP all &#8212; any any 141.98.9.70 anywhere<br>0 0 DROP all &#8212; any any scan.visionheight.com anywhere<br>0 0 DROP all &#8212; any any 130.12.180.52 anywhere<br>0 0 DROP all &#8212; any any scan.visionheight.com anywhere<br>0 0 DROP all &#8212; any any 158.94.211.198 anywhere<br>0 0 DROP all &#8212; any any 141.98.9.70 anywhere<br>0 0 DROP all &#8212; any any 45.94.31.250 anywhere<br>0 0 DROP all &#8212; any any 170.32.233.35.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 17.138.125.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 159.141.106.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 77.203.106.34.bc.googleusercontent.com anywhere<br>0 0 DROP all &#8212; any any 209.47.21.34.bc.googleusercontent.com anywhere<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)<br>pkts bytes target prot opt in out source destination<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes)<br>pkts bytes target prot opt in out source destination<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">**************************************************************************************************<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">FORWARD\u30c1\u30a7\u30a4\u30f3\u3068OUTPUT\u30c1\u30a7\u30a4\u30f3<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u4ee5\u4e0a\u304cINPUT\u30c1\u30a7\u30a4\u30f3\u306e\u8aac\u660e\u3067\u3057\u305f\u3002\u4ed6\u306b\u3082OUTPUT\u3068FORWARD\u3068\u3044\u3046\u30c1\u30a7\u30a4\u30f3\u304c\u3042\u308a\u307e\u3059\u304c\u3001INPUT\u30c1\u30a7\u30a4\u30f3\u306b\u6bd4\u3079\u308c\u3070\u3068\u3066\u3082\u30b7\u30f3\u30d7\u30eb\u3067\u3059\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Chain FORWARD (policy ACCEPT)<br>target prot opt source destination<br>REJECT all &#8212; anywhere anywhere reject-with icmp-host-prohibited<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Chain OUTPUT (policy ACCEPT)<br>target prot opt source destination<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<p class=\"wp-block-paragraph\">root@falcon21:~# <strong>iptables -L &#8211;line-numbers<\/strong><br>Chain INPUT (policy ACCEPT)<br>num target prot opt source destination<br>1 DROP all &#8212; 118.41.245.222 anywhere<br>2 DROP all &#8212; 91.92.242.96 anywhere<br>3 DROP all &#8212; 158.94.211.198 anywhere<br>4 DROP all &#8212; 141.98.9.70 anywhere<br>5 DROP all &#8212; 77.83.39.169 anywhere<br>6 DROP all &#8212; 178.16.54.219 anywhere<br>7 DROP all &#8212; 91.92.240.214 anywhere<br>8 DROP all &#8212; 45.144.212.43 anywhere<br>9 DROP all &#8212; 77.83.39.169 anywhere<br>10 DROP all &#8212; 141.98.9.105 anywhere<br>11 DROP all &#8212; 45.144.212.43 anywhere<br>12 DROP all &#8212; lava.census.shodan.io anywhere<br>13 DROP all &#8212; scan.visionheight.com anywhere<br>14 DROP all &#8212; 46.190.153.30 anywhere<br>15 DROP all &#8212; scan.visionheight.com anywhere<br>16 DROP all &#8212; 77.83.39.169 anywhere<br>17 DROP all &#8212; 30.217.182.34.bc.googleusercontent.com anywhere<br>18 DROP all &#8212; 45.144.212.43 anywhere<br>19 DROP all &#8212; 8.9.229.8.bc.googleusercontent.com anywhere<br>20 DROP all &#8212; 122.230.182.34.bc.googleusercontent.com anywhere<br>21 DROP all &#8212; 133.206.109.136.bc.googleusercontent.com anywhere<br>22 DROP all &#8212; 77.83.39.241 anywhere<br>23 DROP all &#8212; 178.16.54.219 anywhere<br>24 DROP all &#8212; 91.92.240.214 anywhere<br>25 DROP all &#8212; 161.248.147.102 anywhere<br>26 DROP all &#8212; 178.16.53.241 anywhere<br>27 DROP all &#8212; internettl.org anywhere<br>28 DROP all &#8212; 167.1.201.35.bc.googleusercontent.com anywhere<br>29 DROP all &#8212; 7.109.129.34.bc.googleusercontent.com anywhere<br>30 DROP all &#8212; 70.198.116.34.bc.googleusercontent.com anywhere<br>31 DROP all &#8212; 233.141.95.34.bc.googleusercontent.com anywhere<br>32 DROP all &#8212; 219.174.197.35.bc.googleusercontent.com anywhere<br>33 DROP all &#8212; 14.197.241.35.bc.googleusercontent.com anywhere<br>34 DROP all &#8212; 15.230.79.34.bc.googleusercontent.com anywhere<br>35 DROP all &#8212; 71.236.246.35.bc.googleusercontent.com anywhere<br>36 DROP all &#8212; 181.115.142.34.bc.googleusercontent.com anywhere<br>37 DROP all &#8212; 227.137.185.34.bc.googleusercontent.com anywhere<br>38 DROP all &#8212; 162.231.105.34.bc.googleusercontent.com anywhere<br>39 DROP all &#8212; 229.28.230.35.bc.googleusercontent.com anywhere<br>40 DROP all &#8212; 161.107.94.34.bc.googleusercontent.com anywhere<br>41 DROP all &#8212; 223.123.94.34.bc.googleusercontent.com anywhere<br>42 DROP all &#8212; 138.0.125.34.bc.googleusercontent.com anywhere<br>43 DROP all &#8212; 51.241.97.34.bc.googleusercontent.com anywhere<br>44 DROP all &#8212; 77.83.39.169 anywhere<br>45 DROP all &#8212; 178.16.53.241 anywhere<br>46 DROP all &#8212; q003094.ppp.asahi-net.or.jp anywhere<br>47 DROP all &#8212; internettl.org anywhere<br>48 DROP all &#8212; 141.98.9.105 anywhere<br>49 DROP all &#8212; 45.144.212.43 anywhere<br>50 DROP all &#8212; srv-141-98-11-33.serveroffer.net anywhere<br>51 DROP all &#8212; 178.16.52.71 anywhere<br>52 DROP all &#8212; 148.223.185.35.bc.googleusercontent.com anywhere<br>53 DROP all &#8212; 4.221.82.34.bc.googleusercontent.com anywhere<br>54 DROP all &#8212; 115.143.186.34.bc.googleusercontent.com anywhere<br>55 DROP all &#8212; 219.52.106.34.bc.googleusercontent.com anywhere<br>56 DROP all &#8212; 210.97.82.34.bc.googleusercontent.com anywhere<br>57 DROP all &#8212; 157.122.236.35.bc.googleusercontent.com anywhere<br>58 DROP all &#8212; 251.146.106.34.bc.googleusercontent.com anywhere<br>59 DROP all &#8212; 141.98.9.104 anywhere<br>60 DROP all &#8212; 178.16.53.80 anywhere<br>61 DROP all &#8212; 178.16.53.230 anywhere<br>62 DROP all &#8212; srv-141-98-11-33.serveroffer.net anywhere<br>63 DROP all &#8212; 178.16.52.71 anywhere<br>64 DROP all &#8212; 141.98.9.104 anywhere<br>65 DROP all &#8212; brightmy.com anywhere<br>66 DROP all &#8212; butter.scanf.shodan.io anywhere<br>67 DROP all &#8212; bacon.scanf.shodan.io anywhere<br>68 DROP all &#8212; 210.97.82.34.bc.googleusercontent.com anywhere<br>69 DROP all &#8212; 118.41.245.222 anywhere<br>70 DROP all &#8212; 91.92.242.96 anywhere<br>71 DROP all &#8212; 158.94.211.198 anywhere<br>72 DROP all &#8212; 178.16.53.80 anywhere<br>73 DROP all &#8212; 178.16.53.230 anywhere<br>74 DROP all &#8212; 45.94.31.250 anywhere<br>75 DROP all &#8212; 141.98.9.70 anywhere<br>76 DROP all &#8212; scan.visionheight.com anywhere<br>77 DROP all &#8212; 130.12.180.52 anywhere<br>78 DROP all &#8212; scan.visionheight.com anywhere<br>79 DROP all &#8212; 158.94.211.198 anywhere<br>80 DROP all &#8212; 141.98.9.70 anywhere<br>81 DROP all &#8212; 45.94.31.250 anywhere<br>82 DROP all &#8212; 170.32.233.35.bc.googleusercontent.com anywhere<br>83 DROP all &#8212; 17.138.125.34.bc.googleusercontent.com anywhere<br>84 DROP all &#8212; 159.141.106.34.bc.googleusercontent.com anywhere<br>85 DROP all &#8212; 77.203.106.34.bc.googleusercontent.com anywhere<br>86 DROP all &#8212; 209.47.21.34.bc.googleusercontent.com anywhere<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Chain FORWARD (policy ACCEPT)<br>num target prot opt source destination<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Chain OUTPUT (policy ACCEPT)<br>num target prot opt source destination<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">******************************************************************************************<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u30c1\u30a7\u30fc\u30f3\u3092\u30af\u30ea\u30a2\uff06\u30c7\u30d5\u30a9\u30eb\u30c8\u30dd\u30ea\u30b7\u30fc\u8a2d\u5b9a<br>\u73fe\u5728\u306e\u30eb\u30fc\u30eb\u3092\u30af\u30ea\u30a2\uff08\u30d5\u30e9\u30c3\u30b7\u30e5\uff09:<br>sudo iptables -F sudo iptables -X<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>       -F: \u5168\u30c1\u30a7\u30fc\u30f3\u306e\u30eb\u30fc\u30eb\u3092\u524a\u9664\n       -X: \u30e6\u30fc\u30b6\u30fc\u5b9a\u7fa9\u30c1\u30a7\u30fc\u30f3\u3092\u524a\u9664<\/code><\/pre>\n\n\n\n<p class=\"wp-block-paragraph\">\u30c7\u30d5\u30a9\u30eb\u30c8\u30dd\u30ea\u30b7\u30fc\u8a2d\u5b9a:<br>sudo iptables -P INPUT DROP sudo iptables -P FORWARD DROP sudo iptables -P OUTPUT ACCEPT<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>       INPUT: \u3059\u3079\u3066\u62d2\u5426 (DROP)\n       FORWARD: \u3059\u3079\u3066\u62d2\u5426\n       OUTPUT: \u3059\u3079\u3066\u8a31\u53ef (ACCEPT)<\/code><\/pre>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<p class=\"wp-block-paragraph\">root@falcon21:~# <strong>iptables &#8211;help<\/strong><br>iptables v1.8.11 (nf_tables)<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Usage: iptables -[ACD] chain rule-specification [options]<br>iptables -I chain [rulenum] rule-specification [options]<br>iptables -R chain rulenum rule-specification [options]<br>iptables -D chain rulenum [options]<br>iptables -[LS] [chain [rulenum]] [options]<br>iptables -[FZ] [chain] [options]<br>iptables -[NX] chain<br>iptables -E old-chain-name new-chain-name<br>iptables -P chain target [options]<br>iptables -h (print this help information)<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Commands:<br>Either long or short options are allowed.<br>&#8211;append -A chain Append to chain<br>&#8211;check -C chain Check for the existence of a rule<br>&#8211;delete -D chain Delete matching rule from chain<br>&#8211;delete -D chain rulenum<br>Delete rule rulenum (1 = first) from chain<br>&#8211;insert -I chain [rulenum]<br>Insert in chain as rulenum (default 1=first)<br>&#8211;replace -R chain rulenum<br>Replace rule rulenum (1 = first) in chain<br>&#8211;list -L [chain [rulenum]]<br>List the rules in a chain or all chains<br>&#8211;list-rules -S [chain [rulenum]]<br>Print the rules in a chain or all chains<br>&#8211;flush -F [chain] Delete all rules in chain or all chains<br>&#8211;zero -Z [chain [rulenum]]<br>Zero counters in chain or all chains<br>&#8211;new -N chain Create a new user-defined chain<br>&#8211;delete-chain<br>-X [chain] Delete a user-defined chain<br>&#8211;policy -P chain target<br>Change policy on chain to target<br>&#8211;rename-chain<br>-E old-chain new-chain<br>Change chain name, (moving any references)<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Options:<br>&#8211;ipv4 -4 Nothing (line is ignored by ip6tables-restore)<br>&#8211;ipv6 -6 Error (line is ignored by iptables-restore)<br>[!] &#8211;protocol -p proto protocol: by number or name, eg. <code>tcp' [!] --source -s address[\/mask][...] source specification [!] --destination -d address[\/mask][...] destination specification [!] --in-interface -i input name[+] network interface name ([+] for wildcard) --jump -j target target for rule (may load target extension) --goto -g chain jump to chain with no return --match -m match extended match (may load extension) --numeric -n numeric output of addresses and ports [!] --out-interface -o output name[+] network interface name ([+] for wildcard) --table -t table table to manipulate (default:<\/code>filter&#8217;)<br>&#8211;verbose -v verbose mode<br>&#8211;wait -w [seconds] maximum wait to acquire xtables lock before give up<br>&#8211;line-numbers print line numbers when listing<br>&#8211;exact -x expand numbers (display exact values)<br>[!] &#8211;fragment -f match second or further fragments only<br>&#8211;modprobe= try to insert modules using this command<br>&#8211;set-counters -c PKTS BYTES set the counter during insert\/append<br>[!] &#8211;version -V print package version.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">****************************************************************************************************************<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a\uff0a root@falcon21:~# iptables &#8211;list-rules-P INPUT ACCEPT-P F [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-451","post","type-post","status-publish","format-standard","hentry","category-1"],"_links":{"self":[{"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=\/wp\/v2\/posts\/451","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=451"}],"version-history":[{"count":1,"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=\/wp\/v2\/posts\/451\/revisions"}],"predecessor-version":[{"id":452,"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=\/wp\/v2\/posts\/451\/revisions\/452"}],"wp:attachment":[{"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=451"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=451"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/falcon21.space\/kazuya\/work\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=451"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}