My appologies. I have several servers running and in my rush I accessed the wrong one. iptables -L output is:
[root@mss2 root]# iptables -L
Chain INPUT (policy DROP)
target prot opt source destination
ACCEPT all -- anywhere anywhere
ppp0_in all -- anywhere anywhere
eth0_in all -- anywhere anywhere
eth1_in all -- anywhere anywhere
eth2_in all -- anywhere anywhere
common all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info prefi
x `Shorewall:INPUT:REJECT:'
reject all -- anywhere anywhere
Chain FORWARD (policy DROP)
target prot opt source destination
ppp0_fwd all -- anywhere anywhere
eth0_fwd all -- anywhere anywhere
eth1_fwd all -- anywhere anywhere
eth2_fwd all -- anywhere anywhere
common all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info prefi
x `Shorewall:FORWARD:REJECT:'
reject all -- anywhere anywhere
Chain OUTPUT (policy DROP)
target prot opt source destination
ACCEPT all -- anywhere anywhere
ACCEPT icmp -- anywhere anywhere state NEW,RELATED,ES
TABLISHED
fw2net all -- anywhere anywhere
fw2masq all -- anywhere anywhere
all2all all -- anywhere anywhere
all2all all -- anywhere anywhere
common all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info prefi
x `Shorewall:OUTPUT:REJECT:'
reject all -- anywhere anywhere
Chain all2all (11 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
newnotsyn tcp -- anywhere anywhere state NEW tcp flags:
!SYN,RST,ACK/SYN
common all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info prefi
x `Shorewall:all2all:REJECT:'
reject all -- anywhere anywhere
Chain common (5 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere icmp echo-request
icmpdef icmp -- anywhere anywhere
DROP tcp -- anywhere anywhere state INVALID
REJECT udp -- anywhere anywhere udp dpts:netbios-ns:
netbios-ssn reject-with icmp-port-unreachable
REJECT udp -- anywhere anywhere udp dpt:microsoft-ds
reject-with icmp-port-unreachable
reject tcp -- anywhere anywhere tcp dpt:135
DROP udp -- anywhere anywhere udp dpt:1900
DROP all -- anywhere 255.255.255.255
DROP all -- anywhere BASE-ADDRESS.MCAST.NET/4
reject tcp -- anywhere anywhere tcp dpt:auth
DROP all -- anywhere 192.168.0.255
DROP all -- anywhere 10.0.0.255
DROP all -- anywhere 192.168.0.255
Chain dynamic (8 references)
target prot opt source destination
Chain eth0_fwd (1 references)
target prot opt source destination
dynamic all -- anywhere anywhere
masq2net all -- anywhere anywhere
all2all all -- anywhere anywhere
all2all all -- anywhere anywhere
Chain eth0_in (1 references)
target prot opt source destination
dynamic all -- anywhere anywhere
ACCEPT icmp -- anywhere anywhere icmp echo-request
masq2fw all -- anywhere anywhere
Chain eth1_fwd (1 references)
target prot opt source destination
dynamic all -- anywhere anywhere
loc2net all -- anywhere anywhere
all2all all -- anywhere anywhere
loc2loc all -- anywhere anywhere
Chain eth1_in (1 references)
target prot opt source destination
dynamic all -- anywhere anywhere
ACCEPT icmp -- anywhere anywhere icmp echo-request
all2all all -- anywhere anywhere
Chain eth2_fwd (1 references)
target prot opt source destination
dynamic all -- anywhere anywhere
loc2net all -- anywhere anywhere
all2all all -- anywhere anywhere
loc2loc all -- anywhere anywhere
Chain eth2_in (1 references)
target prot opt source destination
dynamic all -- anywhere anywhere
ACCEPT icmp -- anywhere anywhere icmp echo-request
all2all all -- anywhere anywhere
Chain fw2masq (1 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
newnotsyn tcp -- anywhere anywhere state NEW tcp flags:
!SYN,RST,ACK/SYN
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ip
p
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ne
tbios-ns
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ne
tbios-dgm
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ne
tbios-ssn
ACCEPT udp -- anywhere anywhere state NEW udp dpt:63
1
ACCEPT udp -- anywhere anywhere state NEW udp dpt:ne
tbios-ns
ACCEPT udp -- anywhere anywhere state NEW udp dpt:ne
tbios-dgm
ACCEPT udp -- anywhere anywhere state NEW udp dpt:ne
tbios-ssn
all2all all -- anywhere anywhere
Chain fw2net (1 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
newnotsyn tcp -- anywhere anywhere state NEW tcp flags:
!SYN,RST,ACK/SYN
ACCEPT all -- anywhere anywhere
Chain icmpdef (1 references)
target prot opt source destination
Chain loc2loc (2 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
newnotsyn tcp -- anywhere anywhere state NEW tcp flags:
!SYN,RST,ACK/SYN
all2all all -- anywhere anywhere
Chain loc2net (2 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
newnotsyn tcp -- anywhere anywhere state NEW tcp flags:
!SYN,RST,ACK/SYN
ACCEPT all -- anywhere anywhere
Chain masq2fw (1 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
newnotsyn tcp -- anywhere anywhere state NEW tcp flags:
!SYN,RST,ACK/SYN
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:do
main
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:bo
otps
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ht
tp
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ht
tps
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ip
p
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:im
ap
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt
o
p3
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:sm
tp
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:nn
tp
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:nt
p
ACCEPT udp -- anywhere anywhere state NEW udp dpt:do
main
ACCEPT udp -- anywhere anywhere state NEW udp dpt:bo
otps
ACCEPT udp -- anywhere anywhere state NEW udp dpt:ht
tp
ACCEPT udp -- anywhere anywhere state NEW udp dpt:ht
tps
ACCEPT udp -- anywhere anywhere state NEW udp dpt:63
1
ACCEPT udp -- anywhere anywhere state NEW udp dpt:im
ap
ACCEPT udp -- anywhere anywhere state NEW udp dpt
o
p3
ACCEPT udp -- anywhere anywhere state NEW udp dpt:sm
tp
ACCEPT udp -- anywhere anywhere state NEW udp dpt:nn
tp
ACCEPT udp -- anywhere anywhere state NEW udp dpt:nt
p
all2all all -- anywhere anywhere
Chain masq2net (1 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
newnotsyn tcp -- anywhere anywhere state NEW tcp flags:
!SYN,RST,ACK/SYN
ACCEPT all -- anywhere anywhere
Chain net2all (4 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state RELATED,ESTABL
ISHED
newnotsyn tcp -- anywhere anywhere state NEW tcp flags:
!SYN,RST,ACK/SYN
common all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info prefi
x `Shorewall:net2all
ROP:'
DROP all -- anywhere anywhere
Chain newnotsyn (8 references)
target prot opt source destination
DROP all -- anywhere anywhere
Chain ppp0_fwd (1 references)
target prot opt source destination
dynamic all -- anywhere anywhere
net2all all -- anywhere anywhere
net2all all -- anywhere anywhere
net2all all -- anywhere anywhere
Chain ppp0_in (1 references)
target prot opt source destination
dynamic all -- anywhere anywhere
ACCEPT icmp -- anywhere anywhere icmp echo-request
net2all all -- anywhere anywhere
Chain reject (6 references)
target prot opt source destination
REJECT tcp -- anywhere anywhere reject-with tcp-rese t
REJECT all -- anywhere anywhere reject-with icmp-por t-unreachable
Chain shorewall (0 references)
target prot opt source destination