<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0">
    <channel>
        <title>防火墙 - 标签 - lihuu — 系统工程、AI 工具链与 Rust 开发博客</title>
        <link>https://silentstormic.top/tags/%E9%98%B2%E7%81%AB%E5%A2%99/</link>
        <description>防火墙 - 标签 - lihuu — 系统工程、AI 工具链与 Rust 开发博客</description>
        <generator>Hugo -- gohugo.io</generator><language>zh-CN</language><lastBuildDate>Wed, 16 Oct 2024 09:20:21 &#43;0800</lastBuildDate><atom:link href="https://silentstormic.top/tags/%E9%98%B2%E7%81%AB%E5%A2%99/" rel="self" type="application/rss+xml" /><item>
    <title>iptables 简易使用手册</title>
    <link>https://silentstormic.top/post/iptables/</link>
    <pubDate>Wed, 16 Oct 2024 09:20:21 &#43;0800</pubDate>
    <author>lihuu</author>
    <guid>https://silentstormic.top/post/iptables/</guid>
    <description><![CDATA[<h3 id="iptables-简易使用手册"><code>iptables</code> 简易使用手册</h3>
<p><code>iptables</code> 是一个强大而灵活的 Linux 防火墙工具，用于管理网络包过滤和网络地址转换 (NAT)。它基于 Netfilter 框架工作，允许你定义详细的规则来管理入站和出站流量。</p>
<h4 id="1-查看现有规则">1. <strong>查看现有规则</strong></h4>
<ul>
<li>
<p>查看所有表的规则：</p>
<div class="code-block code-line-numbers open" style="counter-reset: code-block 0">
    <div class="code-header language-bash">
        <span class="code-title"><i class="arrow fas fa-angle-right fa-fw" aria-hidden="true"></i></span>
        <span class="ellipses"><i class="fas fa-ellipsis-h fa-fw" aria-hidden="true"></i></span>
        <span class="copy" title="复制到剪贴板"><i class="far fa-copy fa-fw" aria-hidden="true"></i></span>
    </div><div class="highlight"><pre tabindex="0" class="chroma"><code class="language-bash" data-lang="bash"><span class="line"><span class="cl">
</span></span><span class="line"><span class="cl">sudo iptables -L</span></span></code></pre></div></div>
</li>
<li>
<p>查看特定链（例如<code>INPUT</code>链）的规则：</p>
<div class="code-block code-line-numbers open" style="counter-reset: code-block 0">
    <div class="code-header language-bash">
        <span class="code-title"><i class="arrow fas fa-angle-right fa-fw" aria-hidden="true"></i></span>
        <span class="ellipses"><i class="fas fa-ellipsis-h fa-fw" aria-hidden="true"></i></span>
        <span class="copy" title="复制到剪贴板"><i class="far fa-copy fa-fw" aria-hidden="true"></i></span>
    </div><div class="highlight"><pre tabindex="0" class="chroma"><code class="language-bash" data-lang="bash"><span class="line"><span class="cl">
</span></span><span class="line"><span class="cl">sudo iptables -L INPUT</span></span></code></pre></div></div>
</li>
</ul>
<h4 id="2-允许或拒绝端口">2. <strong>允许或拒绝端口</strong></h4>
<ul>
<li>
<p>允许某个端口（例如允许 22 端口的 SSH 流量）：</p>]]></description>
</item>
</channel>
</rss>
