马上注册,结交更多好友,享用更多功能,让你轻松玩转社区。
您需要 登录 才可以下载或查看,没有账号?注册 
 
 
 
×
 
双方都是ros2。9。27 
朋友给我他那防火墙导出的规则。我不知如何修改在添加到我的ROS,谁能帮忙改一下。。 
Flags: X - disabled, I - invalid, D - dynamic  
 0   ;;;                                                         ,         
     chain=input protocol=tcp psd=21,3s,3,1 action=drop  
 
 1   ;;;                     TCP    \(    10\),    DoS            ,         
     chain=input protocol=tcp connection-limit=10,32  
     action=add-src-to-address-list address-list=black_list  
     address-list-timeout=5d  
 
 2   ;;; drop Port 
     chain=input protocol=tcp dst-port=135-139 action=drop  
 
 3   chain=input protocol=udp dst-port=135-139 action=drop  
 
 4   chain=input connection-state=established action=accept  
 
 5   chain=input connection-state=related action=accept  
 
 6   chain=input src-address=127.0.0.1 dst-address=127.0.0.1 action=accept  
 
 7   chain=input connection-state=invalid action=drop  
 
 8   chain=input dst-address-type=!local action=drop  
 
 9   chain=input src-address-type=!unicast action=drop  
 
10   ;;; ping tracert,ICMP 
     chain=input protocol=icmp icmp-options=0:0-255 limit=5,5 action=accept  
 
11   chain=input protocol=icmp icmp-options=3:3 limit=5,5 action=accept  
 
12   chain=input protocol=icmp icmp-options=3:4 limit=5,5 action=accept  
 
13   chain=input protocol=icmp icmp-options=8:0-255 limit=5,5 action=accept  
 
14   chain=input protocol=icmp icmp-options=11:0-255 limit=5,5 action=accept  
 
15   chain=output protocol=icmp icmp-options=0:0-255 limit=5,5 action=accept  
 
16   chain=output protocol=icmp icmp-options=3:3 limit=5,5 action=accept  
 
17   chain=output protocol=icmp icmp-options=3:4 limit=5,5 action=accept  
 
18   chain=output protocol=icmp icmp-options=8:0-255 limit=5,5 action=accept  
 
19   chain=output protocol=icmp icmp-options=11:0-255 limit=5,5 action=accept  
 
20   chain=forward protocol=icmp icmp-options=0:0-255 limit=5,5 action=accept  
 
21   chain=forward protocol=icmp icmp-options=3:3 limit=5,5 action=accept  
 
22   chain=forward protocol=icmp icmp-options=3:4 limit=5,5 action=accept  
 
23   chain=forward protocol=icmp icmp-options=8:0-255 limit=5,5 action=accept  
 
24   chain=forward protocol=icmp icmp-options=11:0-255 limit=5,5 action=accept  
 
25   chain=input protocol=icmp action=drop  
 
26   chain=output protocol=icmp action=drop  
 
27   chain=forward protocol=icmp action=drop  
 
28   ;;; QQ 
     chain=forward protocol=udp dst-port=13000-13800 action=drop   |