目前的iptables如附
-A OUTPUT -o lo -j ACCEPT
-A OUTPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A OUTPUT -m state --state INVALID -j DROP
-A OUTPUT -p tcp -m tcp --sport 22 -j ACCEPT
-A OUTPUT -p tcp -m tcp --dport 80 -m state --state RELATED,ESTABLISHED -j ACCEPT
-A OUTPUT -p tcp -m tcp --dport 443 -m state --state RELATED,ESTABLISHED -j ACCEPT
-A OUTPUT -p tcp -m tcp --dport 53 -m state --state RELATED,ESTABLISHED -j ACCEPT
-A OUTPUT -p udp -m udp --dport 53 -m state --state RELATED,ESTABLISHED -j ACCEPT
-A OUTPUT -p icmp -j ACCEPT
-A OUTPUT -p udp -m udp --dport 68 -j ACCEPT
-A OUTPUT -p tcp -m tcp --dport 68 -j ACCEPT
-A OUTPUT -p udp -m udp --dport 67 -j ACCEPT
僅僅只要看OUTPUT就行了。
因為我一旦把OUTPUT默認規(guī)則設成ACCEPT.立馬就能夠ssh其他主機了。
但是我看不懂還需要開什么端口?
67好像一定要開的,我看messages要發(fā)送DHCP package
這是fail log
Jul 30 06:14:37 localhost dhclient[99799]: DHCPREQUEST on ens33 to 192.168.27.254 port 67 (xid=0x2a4c9dda)
Jul 30 06:14:37 localhost dhclient[99799]: DHCPACK from 192.168.27.254 (xid=0x2a4c9dda)
Jul 30 06:14:37 localhost NetworkManager[897]: <info> [1532945677.2777] dhcp4 (ens33): address 192.168.27.148
Jul 30 06:14:37 localhost NetworkManager[897]: <info> [1532945677.2782] dhcp4 (ens33): plen 24 (255.255.255.0)
Jul 30 06:14:37 localhost NetworkManager[897]: <info> [1532945677.2783] dhcp4 (ens33): gateway 192.168.27.2
Jul 30 06:14:37 localhost NetworkManager[897]: <info> [1532945677.2783] dhcp4 (ens33): lease time 1800
Jul 30 06:14:37 localhost NetworkManager[897]: <info> [1532945677.2783] dhcp4 (ens33): nameserver '192.168.27.2'
Jul 30 06:14:37 localhost NetworkManager[897]: <info> [1532945677.2783] dhcp4 (ens33): domain name 'localdomain'
Jul 30 06:14:37 localhost NetworkManager[897]: <info> [1532945677.2783] dhcp4 (ens33): state changed bound -> bound
Jul 30 06:14:37 localhost dhclient[99799]: bound to 192.168.27.148 -- renewal in 710 seconds.
Jul 30 06:14:37 localhost dbus-daemon: dbus[762]: [system] Activating via systemd: service name='org.freedesktop.nm_dispatcher' unit='dbus-org.freedesktop.nm-dispatcher.service'
Jul 30 06:14:37 localhost dbus[762]: [system] Activating via systemd: service name='org.freedesktop.nm_dispatcher' unit='dbus-org.freedesktop.nm-dispatcher.service'
Jul 30 06:14:37 localhost systemd: Starting Network Manager Script Dispatcher Service...
Jul 30 06:14:37 localhost dbus[762]: [system] Successfully activated service 'org.freedesktop.nm_dispatcher'
Jul 30 06:14:37 localhost dbus-daemon: dbus[762]: [system] Successfully activated service 'org.freedesktop.nm_dispatcher'
Jul 30 06:14:37 localhost systemd: Started Network Manager Script Dispatcher Service.
Jul 30 06:14:37 localhost nm-dispatcher: req:1 'dhcp4-change' [ens33]: new request (4 scripts)
Jul 30 06:14:37 localhost nm-dispatcher: req:1 'dhcp4-change' [ens33]: start running ordered scripts...
Jul 30 06:20:01 localhost systemd: Created slice User Slice of root.
Jul 30 06:20:01 localhost systemd: Starting User Slice of root.
Jul 30 06:20:01 localhost systemd: Started Session 326 of user root.
Jul 30 06:20:01 localhost systemd: Starting Session 326 of user root.
Jul 30 06:20:01 localhost systemd: Removed slice User Slice of root.
Jul 30 06:20:01 localhost systemd: Stopping User Slice of root.
這是成功的log
Jul 30 07:04:44 localhost dhclient[99799]: DHCPREQUEST on ens33 to 192.168.27.254 port 67 (xid=0x2a4c9dda)
Jul 30 07:04:44 localhost dhclient[99799]: DHCPACK from 192.168.27.254 (xid=0x2a4c9dda)
Jul 30 07:04:44 localhost NetworkManager[897]: <info> [1532948684.6818] dhcp4 (ens33): address 192.168.27.148
Jul 30 07:04:44 localhost NetworkManager[897]: <info> [1532948684.6822] dhcp4 (ens33): plen 24 (255.255.255.0)
Jul 30 07:04:44 localhost NetworkManager[897]: <info> [1532948684.6822] dhcp4 (ens33): gateway 192.168.27.2
Jul 30 07:04:44 localhost NetworkManager[897]: <info> [1532948684.6822] dhcp4 (ens33): lease time 1800
Jul 30 07:04:44 localhost NetworkManager[897]: <info> [1532948684.6823] dhcp4 (ens33): nameserver '192.168.27.2'
Jul 30 07:04:44 localhost NetworkManager[897]: <info> [1532948684.6823] dhcp4 (ens33): domain name 'localdomain'
Jul 30 07:04:44 localhost NetworkManager[897]: <info> [1532948684.6823] dhcp4 (ens33): state changed bound -> bound
Jul 30 07:04:44 localhost dhclient[99799]: bound to 192.168.27.148 -- renewal in 855 seconds.
Jul 30 07:04:44 localhost dbus-daemon: dbus[762]: [system] Activating via systemd: service name='org.freedesktop.nm_dispatcher' unit='dbus-org.freedesktop.nm-dispatcher.service'
Jul 30 07:04:44 localhost dbus[762]: [system] Activating via systemd: service name='org.freedesktop.nm_dispatcher' unit='dbus-org.freedesktop.nm-dispatcher.service'
Jul 30 07:04:44 localhost systemd: Starting Network Manager Script Dispatcher Service...
Jul 30 07:04:44 localhost dbus[762]: [system] Successfully activated service 'org.freedesktop.nm_dispatcher'
Jul 30 07:04:44 localhost dbus-daemon: dbus[762]: [system] Successfully activated service 'org.freedesktop.nm_dispatcher'
Jul 30 07:04:44 localhost systemd: Started Network Manager Script Dispatcher Service.
Jul 30 07:04:44 localhost nm-dispatcher: req:1 'dhcp4-change' [ens33]: new request (4 scripts)
Jul 30 07:04:44 localhost nm-dispatcher: req:1 'dhcp4-change' [ens33]: start running ordered scripts...
Jul 30 07:10:02 localhost systemd: Created slice User Slice of root.
Jul 30 07:10:02 localhost systemd: Starting User Slice of root.
Jul 30 07:10:02 localhost systemd: Started Session 332 of user root.
Jul 30 07:10:02 localhost systemd: Starting Session 332 of user root.
Jul 30 07:10:02 localhost systemd: Removed slice User Slice of root.
Jul 30 07:10:02 localhost systemd: Stopping User Slice of root.
Jul 30 07:10:30 localhost chronyd[63481]: Selected source 120.25.115.19
看不出來啥啊,怎么讓日志詳細點
先謝謝各位了
北大青鳥APTECH成立于1999年。依托北京大學優(yōu)質雄厚的教育資源和背景,秉承“教育改變生活”的發(fā)展理念,致力于培養(yǎng)中國IT技能型緊缺人才,是大數(shù)據(jù)專業(yè)的國家
北大青鳥中博軟件學院創(chuàng)立于2003年,作為華東區(qū)著名互聯(lián)網(wǎng)學院和江蘇省首批服務外包人才培訓基地,中博成功培育了近30000名軟件工程師走向高薪崗位,合作企業(yè)超4
中公教育集團創(chuàng)建于1999年,經(jīng)過二十年潛心發(fā)展,已由一家北大畢業(yè)生自主創(chuàng)業(yè)的信息技術與教育服務機構,發(fā)展為教育服務業(yè)的綜合性企業(yè)集團,成為集合面授教學培訓、網(wǎng)
達內(nèi)教育集團成立于2002年,是一家由留學海歸創(chuàng)辦的高端職業(yè)教育培訓機構,是中國一站式人才培養(yǎng)平臺、一站式人才輸送平臺。2014年4月3日在美國成功上市,融資1
曾工作于聯(lián)想擔任系統(tǒng)開發(fā)工程師,曾在博彥科技股份有限公司擔任項目經(jīng)理從事移動互聯(lián)網(wǎng)管理及研發(fā)工作,曾創(chuàng)辦藍懿科技有限責任公司從事總經(jīng)理職務負責iOS教學及管理工作。
浪潮集團項目經(jīng)理。精通Java與.NET 技術, 熟練的跨平臺面向對象開發(fā)經(jīng)驗,技術功底深厚。 授課風格 授課風格清新自然、條理清晰、主次分明、重點難點突出、引人入勝。
精通HTML5和CSS3;Javascript及主流js庫,具有快速界面開發(fā)的能力,對瀏覽器兼容性、前端性能優(yōu)化等有深入理解。精通網(wǎng)頁制作和網(wǎng)頁游戲開發(fā)。
具有10 年的Java 企業(yè)應用開發(fā)經(jīng)驗。曾經(jīng)歷任德國Software AG 技術顧問,美國Dachieve 系統(tǒng)架構師,美國AngelEngineers Inc. 系統(tǒng)架構師。