Chain INPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID 145 19828 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED 0 0 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0 1 52 syn_flood tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x17/0x02 1025 88330 input_rule all -- * * 0.0.0.0/0 0.0.0.0/0 1025 88330 input all -- * * 0.0.0.0/0 0.0.0.0/0 Chain FORWARD (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID 311 25862 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED 285 23909 forwarding_rule all -- * * 0.0.0.0/0 0.0.0.0/0 285 23909 forward all -- * * 0.0.0.0/0 0.0.0.0/0 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID 241 24588 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED 0 0 ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0 51 3364 output_rule all -- * * 0.0.0.0/0 0.0.0.0/0 51 3364 output all -- * * 0.0.0.0/0 0.0.0.0/0 Chain forward (1 references) pkts bytes target prot opt in out source destination 285 23909 zone_lan_forward all -- br-lan * 0.0.0.0/0 0.0.0.0/0 0 0 zone_wan_forward all -- eth1 * 0.0.0.0/0 0.0.0.0/0 Chain forwarding_lan (1 references) pkts bytes target prot opt in out source destination Chain forwarding_rule (1 references) pkts bytes target prot opt in out source destination Chain forwarding_wan (1 references) pkts bytes target prot opt in out source destination Chain input (1 references) pkts bytes target prot opt in out source destination 95 5919 zone_lan all -- br-lan * 0.0.0.0/0 0.0.0.0/0 930 82411 zone_wan all -- eth1 * 0.0.0.0/0 0.0.0.0/0 Chain input_lan (1 references) pkts bytes target prot opt in out source destination Chain input_rule (1 references) pkts bytes target prot opt in out source destination Chain input_wan (1 references) pkts bytes target prot opt in out source destination Chain output (1 references) pkts bytes target prot opt in out source destination 51 3364 zone_lan_ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 48 2660 zone_wan_ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 Chain output_rule (1 references) pkts bytes target prot opt in out source destination Chain reject (4 references) pkts bytes target prot opt in out source destination 0 0 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 reject-with tcp-reset 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable Chain syn_flood (1 references) pkts bytes target prot opt in out source destination 1 52 RETURN tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x17/0x02 limit: avg 25/sec burst 50 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 Chain zone_lan (1 references) pkts bytes target prot opt in out source destination 95 5919 input_lan all -- * * 0.0.0.0/0 0.0.0.0/0 95 5919 zone_lan_ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 Chain zone_lan_ACCEPT (3 references) pkts bytes target prot opt in out source destination 380 29828 ACCEPT all -- br-lan * 0.0.0.0/0 0.0.0.0/0 3 704 ACCEPT all -- * br-lan 0.0.0.0/0 0.0.0.0/0 Chain zone_lan_DROP (0 references) pkts bytes target prot opt in out source destination 0 0 DROP all -- br-lan * 0.0.0.0/0 0.0.0.0/0 0 0 DROP all -- * br-lan 0.0.0.0/0 0.0.0.0/0 Chain zone_lan_MSSFIX (0 references) pkts bytes target prot opt in out source destination 0 0 TCPMSS tcp -- * br-lan 0.0.0.0/0 0.0.0.0/0 tcp flags:0x06/0x02 TCPMSS clamp to PMTU Chain zone_lan_REJECT (0 references) pkts bytes target prot opt in out source destination 0 0 reject all -- br-lan * 0.0.0.0/0 0.0.0.0/0 0 0 reject all -- * br-lan 0.0.0.0/0 0.0.0.0/0 Chain zone_lan_forward (1 references) pkts bytes target prot opt in out source destination 285 23909 forwarding_lan all -- * * 0.0.0.0/0 0.0.0.0/0 285 23909 zone_lan_ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 Chain zone_wan (1 references) pkts bytes target prot opt in out source destination 930 82411 input_wan all -- * * 0.0.0.0/0 0.0.0.0/0 930 82411 zone_wan_ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 Chain zone_wan_ACCEPT (3 references) pkts bytes target prot opt in out source destination 930 82411 ACCEPT all -- eth1 * 0.0.0.0/0 0.0.0.0/0 48 2660 ACCEPT all -- * eth1 0.0.0.0/0 0.0.0.0/0 Chain zone_wan_DROP (0 references) pkts bytes target prot opt in out source destination 0 0 DROP all -- eth1 * 0.0.0.0/0 0.0.0.0/0 0 0 DROP all -- * eth1 0.0.0.0/0 0.0.0.0/0 Chain zone_wan_MSSFIX (0 references) pkts bytes target prot opt in out source destination 0 0 TCPMSS tcp -- * eth1 0.0.0.0/0 0.0.0.0/0 tcp flags:0x06/0x02 TCPMSS clamp to PMTU Chain zone_wan_REJECT (0 references) pkts bytes target prot opt in out source destination 0 0 reject all -- eth1 * 0.0.0.0/0 0.0.0.0/0 0 0 reject all -- * eth1 0.0.0.0/0 0.0.0.0/0 Chain zone_wan_forward (1 references) pkts bytes target prot opt in out source destination 0 0 forwarding_wan all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 zone_wan_ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0