|
发表于 2011-1-29 17:19:56
|
显示全部楼层
另外更新一下我从RG200E-AB里拿到的ebtables:
# ebtables --list
Bridge table: filter
Bridge chain: INPUT, entries: 8, policy: ACCEPT
-p PPP_DISC -i wl0 -j DROP
-p PPP_DISC -i eth0.4 -j DROP
-i eth0.2.51 -j DROP
-p IPv4 -i eth0.4 --ip-proto 17 --ip-sport 68 -j DROP
-p IPv6 -i eth0.4 --ip-proto 17 --ip-sport 546 -j DROP
-d Broadcast -i eth0.4 -j ACCEPT
-p IPv4 -i eth0.4 --ip-dst ! 192.168.1.1 -j DROP
-p IPv4 -i eth0.2.85_0 --ip-proto 17 --ip-sport 68 -j DROP
Bridge chain: FORWARD, entries: 7, policy: ACCEPT
-o eth0.2.51 -j DROP
-i eth0.2.51 -j DROP
-i eth0.4 -o eth0.2.85_0 -j ACCEPT
-i eth0.2.85_0 -o eth0.4 -j ACCEPT
-o eth0.2.85_0 -j DROP
-i eth0.2.85_0 -j DROP
-p IPv4 -i wl0 --ip-proto 17 --ip-sport 68 -j DROP
Bridge chain: OUTPUT, entries: 2, policy: ACCEPT
-o eth0.2.51 -j DROP
-p IPv6 -o eth0.4 -j DROP |
|