Fujitsu PRIMEQUEST 1000 Series Installation Manual page 269

Hide thumbs Also See for PRIMEQUEST 1000 Series:
Table of Contents

Advertisement

PRIMEQUEST 1000 Series Installation Manual
APPENDIX B Manual PSA Installation and Uninstallation
ACCEPT
tcp
ACCEPT
tcp
2. Add the jump setting for the PSA-MMB_LAN chain to INPUT and OUTPUT chains.
Make the setting such that there are no interruptions by an existing REJECT setting in an INPUT or OUTPUT
chain or by a user definition chain.
Here, use the following command to add the setting to the fifth INPUT chain (before the REJECT setting)
and to the OUTPUT chain. (For details on the iptables option, see the man manual.)
# /sbin/iptables –I INPUT 5 –j PSA-MMB_LAN
# /sbin/iptables –A OUTPUT –j PSA-MMB_LAN
3. Execute the iptables -L command, and confirm that the PSA-MMB_LAN chains added to the INPUT and
OUTPUT chains are not interrupted by the previous REJECT, DROP, or other settings.
Example of settings:
# iptables –L
Chain INPUT (policy ACCEPT)
target
prot
ACCEPT
all
RELATED,ESTABLISHED
ACCEPT
icmp
ACCEPT
all
ACCEPT
tcp
PSA-MMB_LAN
all
REJECT
all
prohibited
Chain FORWARD (policy ACCEPT)
target
prot
REJECT
all
prohibited
Chain OUTPUT (policy ACCEPT)
target
prot
PSA-MMB_LAN
all
Chain MMLAN (2 references)
target
prot
ACCEPT
all
ACCEPT
all
--
0.0.0.0/0
--
0.0.0.0/0
opt source
--
0.0.0.0/0
--
0.0.0.0/0
--
0.0.0.0/0
--
0.0.0.0/0
--
0.0.0.0/0
--
0.0.0.0/0
opt source
--
0.0.0.0/0
opt source
--
0.0.0.0/0
opt source
--
0.0.0.0/0
--
0.0.0.0/0
241
0.0.0.0/0
tcp spt:5000
0.0.0.0/0
tcp dpt:5000
destination
0.0.0.0/0
state
0.0.0.0/0
0.0.0.0/0
0.0.0.0/0
state NEW tcp dpt:22
0.0.0.0/0
0.0.0.0/0
reject-with icmp-host-
destination
0.0.0.0/0
reject-with icmp-host-
destination
0.0.0.0/0
destination
0.0.0.0/0
0.0.0.0/0
C122-E107-09EN

Advertisement

Table of Contents
loading

This manual is also suitable for:

Primequest 1800e2Primequest 1800e

Table of Contents