{"id":3510,"date":"2018-03-13T16:44:09","date_gmt":"2018-03-13T08:44:09","guid":{"rendered":"https:\/\/yanjingang.com\/blog\/?p=3510"},"modified":"2020-07-06T16:04:19","modified_gmt":"2020-07-06T08:04:19","slug":"%e5%8f%b2%e4%b8%8a%e6%9c%80%e8%af%a6%e7%bb%86%e7%9a%84iptables%e8%af%b4%e6%98%8e","status":"publish","type":"post","link":"https:\/\/yanjingang.com\/blog\/?p=3510","title":{"rendered":"\u53f2\u4e0a\u6700\u8be6\u7ec6\u7684iptables\u8bf4\u660e"},"content":{"rendered":"<p><a href=\"http:\/\/www.zsythink.net\/archives\/1199\" target=\"_blank\" rel=\"noopener noreferrer\">iptables\u57fa\u672c\u6982\u5ff5<\/a><\/p>\n<p><a href=\"http:\/\/www.zsythink.net\/archives\/1764\" target=\"_blank\" rel=\"noopener noreferrer\">iptables\u52a8\u4f5c\u603b\u7ed3<\/a><\/p>\n<p><a href=\"http:\/\/www.zsythink.net\/archives\/1869\" target=\"_blank\" rel=\"noopener noreferrer\">iptables\u5e38\u7528\u5c0f\u7ed3<\/a><\/p>\n<p>&nbsp;<\/p>\n<pre class=\"pure-highlightjs\"><code class=\"\"># \u9650\u5236redis\u7aef\u53e3\u53ea\u80fd\u88ab\u5236\u5b9aip\u8bbf\u95ee\r\nvim \/etc\/sysconfig\/iptables\r\n\r\n    *filter\r\n    :INPUT ACCEPT [0:0]\r\n    :FORWARD ACCEPT [0:0]\r\n    :OUTPUT ACCEPT [0:0]\r\n    #-A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT\r\n    #-A INPUT -p icmp -j ACCEPT\r\n    #-A INPUT -i lo -j ACCEPT\r\n    #-A INPUT -m state --state NEW -m tcp -p tcp --dport 22 -j ACCEPT\r\n    #-A INPUT -j REJECT --reject-with icmp-host-prohibited\r\n    #-A FORWARD -j REJECT --reject-with icmp-host-prohibited\r\n\r\n    # <span style=\"color: #ff0000;\">\u9664127.0.0.1\u300110.10.67.77\u8fd9\u4e24\u53f0\u673a\u5668\u5916\u7981\u6b62\u94fe\u63a5\u672c\u673aredis 6379\u7aef\u53e3<\/span>\r\n    -A INPUT -s 127.0.0.1 -p tcp --dport 6379 -j ACCEPT\r\n    -A INPUT -s 10.10.67.77 -p tcp --dport 6379 -j ACCEPT\r\n    -A INPUT -p TCP --dport 6379 -j REJECT\r\n    COMMIT\r\n\r\nservice iptables restart\r\nservice iptables status<\/code><\/pre>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>iptables\u57fa\u672c\u6982\u5ff5 iptables\u52a8\u4f5c\u603b\u7ed3 iptables\u5e38\u7528\u5c0f\u7ed3 &nbsp; # \u9650\u5236redis [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[31],"tags":[650],"_links":{"self":[{"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=\/wp\/v2\/posts\/3510"}],"collection":[{"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=3510"}],"version-history":[{"count":0,"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=\/wp\/v2\/posts\/3510\/revisions"}],"wp:attachment":[{"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=3510"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=3510"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/yanjingang.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=3510"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}