Chain INPUT (policy DROP) target prot opt source destination ACCEPT all -- anywhere anywhere ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED ACCEPT icmp -- anywhere anywhere ACCEPT tcp -- anywhere anywhere tcp dpt:7636 ACCEPT tcp -- anywhere anywhere tcp dpt:sunrpc ACCEPT tcp -- anywhere anywhere tcp dpts:32765:32769 ACCEPT tcp -- anywhere anywhere tcp dpts:netbios-ns:netbios-ssn ACCEPT tcp -- anywhere anywhere tcp dpt:kshell ACCEPT udp -- anywhere anywhere udp dpt:4660 ACCEPT tcp -- anywhere anywhere tcp dpt:kerberos ACCEPT tcp -- anywhere anywhere tcp dpt:7389 ACCEPT tcp -- anywhere anywhere tcp dpt:time ACCEPT tcp -- anywhere anywhere tcp dpt:3268 ACCEPT tcp -- anywhere anywhere tcp dpt:8888 ACCEPT tcp -- anywhere anywhere tcp dpt:6670 ACCEPT udp -- anywhere anywhere udp dpt:kerberos ACCEPT udp -- anywhere anywhere udp dpt:nfs ACCEPT udp -- anywhere anywhere udp dpt:isakmp ACCEPT tcp -- anywhere anywhere tcp dpt:4660 ACCEPT udp -- anywhere anywhere udp dpts:32765:32769 ACCEPT tcp -- anywhere anywhere tcp dpt:domain ACCEPT udp -- anywhere anywhere udp dpt:ntp ACCEPT tcp -- anywhere anywhere tcp dpt:3269 ACCEPT udp -- anywhere anywhere udp dpt:kpasswd ACCEPT tcp -- anywhere anywhere tcp dpt:http ACCEPT tcp -- anywhere anywhere tcp dpt:5555 ACCEPT udp -- anywhere anywhere udp dpt:ldap ACCEPT tcp -- anywhere anywhere tcp dpt:https ACCEPT udp -- anywhere anywhere udp dpt:domain ACCEPT tcp -- anywhere anywhere tcp dpt:nfs ACCEPT tcp -- anywhere anywhere tcp dpt:nrpe ACCEPT tcp -- anywhere anywhere tcp dpt:ldaps ACCEPT udp -- anywhere anywhere udp dpts:netbios-ns:netbios-ssn ACCEPT udp -- anywhere anywhere udp dpt:microsoft-ds ACCEPT tcp -- anywhere anywhere tcp dpt:kpasswd ACCEPT tcp -- anywhere anywhere tcp dpt:microsoft-ds ACCEPT tcp -- anywhere anywhere tcp dpt:ssh ACCEPT tcp -- anywhere anywhere tcp dpt:kerberos-adm ACCEPT tcp -- anywhere anywhere tcp dpt:7777 ACCEPT udp -- anywhere anywhere udp dpt:4500 ACCEPT udp -- anywhere anywhere udp dpt:7777 ACCEPT tcp -- anywhere anywhere tcp dpt:6669 ACCEPT tcp -- anywhere anywhere tcp dpt:ldap ACCEPT tcp -- anywhere anywhere tcp dpt:loc-srv ACCEPT udp -- anywhere anywhere udp dpt:sunrpc ACCEPT tcp -- anywhere anywhere tcp dpt:1024 REJECT all -- anywhere anywhere reject-with icmp-port-unreachable Chain FORWARD (policy ACCEPT) target prot opt source destination Chain OUTPUT (policy ACCEPT) target prot opt source destination ACCEPT all -- anywhere anywhere