Linux Learning (Linux should learn this) 6

Source: Internet
Author: User

  • RHEL7 replaces iptables with FIREWALLD, but iptables can still be used

  • The rule table is to accommodate the rule chain, if the rule table is allowed state, that rule chain is set to the forbidden rule, if the rule table is a forbidden state, that rule chain is set to allow the rules, the personal feel like a blacklist whitelist

  • The common types of control in Iptables are: accept permission to pass; LOG: Logs are then passed to the next rule to continue the match; REJECT: Refuse to pass, give hints when necessary; drop: Discard directly, without giving any response.

  • Rule chain

    650) this.width=650; "title=" _20170320161331.png "src=" https://s2.51cto.com/wyfs02/M01/8E/F1/ Wkiol1jpj0xgrca2aabej5706s0994.png "alt=" Wkiol1jpj0xgrca2aabej5706s0994.png "/>

    650) this.width=650; "title=" _20170320161741.png "src=" https://s4.51cto.com/wyfs02/M02/8E/F3/ Wkiom1jpkdmglvcqaaaoeyxqgmg878.png "alt=" Wkiom1jpkdmglvcqaaaoeyxqgmg878.png "/>

  • Rules table

    650) this.width=650; "title=" _20170320161520.png "src=" https://s4.51cto.com/wyfs02/M00/8E/F3/ Wkiom1jpj8ts82b4aaau3dxxrry101.png "alt=" Wkiom1jpj8ts82b4aaau3dxxrry101.png "/>

    Order of rules table: Raw--mangle--nat--filter

  • Precautions

    The default Fifter table is not specified for the rule table

    Not specifying a rule chain means all the chain of rules within a table

    Matching rules in the rule chain is checked in turn, the match is stopped, and the default state of the chain is processed if no orange items

  • 650) this.width=650; "title=" _20170320162427.png "src=" https://s2.51cto.com/wyfs02/M01/8E/F3/ Wkiom1jpkcmaueczaackyhk_bv0629.png "alt=" Wkiom1jpkcmaueczaackyhk_bv0629.png "/>



Linux Learning (Linux should learn this) 6

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.