查看网络命令记录
2021/4/11小于 1 分钟
列出当前的防火墙规则,查看网络链路
iptables -t nat -L -n --line-numbers
Chain PREROUTING (policy ACCEPT)
num target prot opt source destination
1 DOCKER all -- 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type LOCAL
Chain INPUT (policy ACCEPT)
num target prot opt source destination
Chain OUTPUT (policy ACCEPT)
num target prot opt source destination
1 DOCKER all -- 0.0.0.0/0 !127.0.0.0/8 ADDRTYPE match dst-type LOCAL
Chain POSTROUTING (policy ACCEPT)
num target prot opt source destination
1 MASQUERADE all -- 172.17.0.0/16 0.0.0.0/0
2 MASQUERADE all -- 172.23.0.0/16 0.0.0.0/0
3 MASQUERADE tcp -- 172.23.0.2 172.23.0.2 tcp dpt:443
4 MASQUERADE tcp -- 172.23.0.2 172.23.0.2 tcp dpt:80
5 MASQUERADE tcp -- 172.23.0.3 172.23.0.3 tcp dpt:8090
Chain DOCKER (2 references)
num target prot opt source destination
1 RETURN all -- 0.0.0.0/0 0.0.0.0/0
2 RETURN all -- 0.0.0.0/0 0.0.0.0/0
3 DNAT tcp -- 0.0.0.0/0 0.0.0.0/0 tcp dpt:443 to:172.23.0.2:443
4 DNAT tcp -- 0.0.0.0/0 0.0.0.0/0 tcp dpt:80 to:172.23.0.2:80
5 DNAT tcp -- 0.0.0.0/0 0.0.0.0/0 tcp dpt:8090 to:172.23.0.3:8090
删除规则
iptables -t nat -D POSTROUTING 4
4是num,第几条规则
查看端口
lsof -i:端口号
---------------
netstat -tunlp | grep 端口号
-t (tcp) 仅显示tcp相关选项
-u (udp)仅显示udp相关选项
-n 拒绝显示别名,能显示数字的全部转化为数字
-l 仅列出在Listen(监听)的服务状态
-p 显示建立相关链接的程序名