First page Back Continue Last page Overview Graphics
Log & Drop 2
There is a lot of IGMP (PROTO=2) noise hitting my firewall. Log & drop it:
iptables -A INPUT -i eth0 -p 2 -j LOG --log-level debug --log-prefix “IPTABLES IGMP-IN: “
iptables -A INPUT -i eth0 -p 2 -j DROP
Almost everything else should be TCP, log & drop it:
iptables -A INPUT -i eth0 -p tcp -j LOG --log-level debug --log-prefix “IPTABLES TCP-IN: “
iptables -A INPUT -i eth0 -p tcp -j DROP
Anything else that tries to sneak past, log & drop it as UNKNOWN:
iptables -A INPUT -i eth0 -j LOG --log-level debug --log-prefix “IPTABLES UNKNOWN-IN: “
iptables -A INPUT -i eth0 -j DROP
Second verse, same as the first, a little bit louder and a whole lot worse. Each log & drop is two rules, a log and a drop. The log rule is one line, line wrapped.
Notes: