NgixProxy_Pathfinder/ufw/user.rules

120 lines
6.5 KiB
Plaintext

*filter
:ufw-user-input - [0:0]
:ufw-user-output - [0:0]
:ufw-user-forward - [0:0]
:ufw-before-logging-input - [0:0]
:ufw-before-logging-output - [0:0]
:ufw-before-logging-forward - [0:0]
:ufw-user-logging-input - [0:0]
:ufw-user-logging-output - [0:0]
:ufw-user-logging-forward - [0:0]
:ufw-after-logging-input - [0:0]
:ufw-after-logging-output - [0:0]
:ufw-after-logging-forward - [0:0]
:ufw-logging-deny - [0:0]
:ufw-logging-allow - [0:0]
:ufw-user-limit - [0:0]
:ufw-user-limit-accept - [0:0]
### RULES ###
### tuple ### reject any any 0.0.0.0/0 any 45.130.203.146 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e737420627573696e6573732e6974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 45.130.203.146 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 45.130.203.172 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e737420627573696e6573732e6974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 45.130.203.172 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 45.130.203.140 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e737420627573696e6573732e6974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 45.130.203.140 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 66.186.37.187 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 66.186.37.187 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 45.130.203.163 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e737420627573696e6573732e6974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 45.130.203.163 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 66.249.88.34 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 66.249.88.34 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 165.22.34.189 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 165.22.34.189 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 177.205.209.190 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 177.205.209.190 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 54.81.40.13 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e737420627573696e6573732e6974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 54.81.40.13 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 45.130.203.134 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 45.130.203.134 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 66.249.88.35 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 66.249.88.35 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 147.182.149.75 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e737420627573696e6573732e6974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 147.182.149.75 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 159.89.165.4 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e737420616e617472616d2e636f6d2e62722d626164626f7473
-A ufw-user-input -s 159.89.165.4 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 103.109.103.44 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206b6174616c6f672e6974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 103.109.103.44 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 103.173.139.235 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e737420616e617472616d2e636f6d2e62722d626164626f7473
-A ufw-user-input -s 103.173.139.235 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 216.81.248.71 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 216.81.248.71 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 174.129.137.28 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206d696d69722e6974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 174.129.137.28 -j REJECT
### tuple ### reject any any 0.0.0.0/0 any 139.59.17.201 in comment=6279204661696c3242616e206166746572203120617474656d70747320616761696e7374206974677579732e636f6d2e62722d626164626f7473
-A ufw-user-input -s 139.59.17.201 -j REJECT
### tuple ### allow tcp 22 0.0.0.0/0 any 0.0.0.0/0 in
-A ufw-user-input -p tcp --dport 22 -j ACCEPT
### tuple ### allow tcp 80 0.0.0.0/0 any 0.0.0.0/0 in
-A ufw-user-input -p tcp --dport 80 -j ACCEPT
### tuple ### allow any 443 0.0.0.0/0 any 0.0.0.0/0 in
-A ufw-user-input -p tcp --dport 443 -j ACCEPT
-A ufw-user-input -p udp --dport 443 -j ACCEPT
### tuple ### allow any any 0.0.0.0/0 any 172.16.254.11 in
-A ufw-user-input -s 172.16.254.11 -j ACCEPT
### tuple ### allow any any 0.0.0.0/0 any 172.16.254.125 in
-A ufw-user-input -s 172.16.254.125 -j ACCEPT
### tuple ### allow udp 443 0.0.0.0/0 any 0.0.0.0/0 in
-A ufw-user-input -p udp --dport 443 -j ACCEPT
### tuple ### allow udp 80 0.0.0.0/0 any 0.0.0.0/0 in
-A ufw-user-input -p udp --dport 80 -j ACCEPT
### tuple ### allow tcp 10051 0.0.0.0/0 any 0.0.0.0/0 in
-A ufw-user-input -p tcp --dport 10051 -j ACCEPT
### tuple ### allow tcp 6162 0.0.0.0/0 any 0.0.0.0/0 in comment=566565616d207472616e73706f72742072756c65
-A ufw-user-input -p tcp --dport 6162 -j ACCEPT
### tuple ### allow tcp 6160 0.0.0.0/0 any 0.0.0.0/0 in comment=566565616d206465706c6f796d656e742072756c65
-A ufw-user-input -p tcp --dport 6160 -j ACCEPT
### END RULES ###
### LOGGING ###
-A ufw-after-logging-forward -j LOG --log-prefix "[UFW BLOCK] " -m limit --limit 3/min --limit-burst 10
-I ufw-logging-deny -m conntrack --ctstate INVALID -j RETURN -m limit --limit 3/min --limit-burst 10
-A ufw-logging-deny -j LOG --log-prefix "[UFW BLOCK] " -m limit --limit 3/min --limit-burst 10
-A ufw-logging-allow -j LOG --log-prefix "[UFW ALLOW] " -m limit --limit 3/min --limit-burst 10
### END LOGGING ###
### RATE LIMITING ###
-A ufw-user-limit -m limit --limit 3/minute -j LOG --log-prefix "[UFW LIMIT BLOCK] "
-A ufw-user-limit -j REJECT
-A ufw-user-limit-accept -j ACCEPT
### END RATE LIMITING ###
COMMIT