eccomi qua.
per cominciare iptables -L:
Chain INPUT (policy DROP)
target prot opt source destination
ACCEPT 0 -- anywhere anywhere
ACCEPT 0 -- 192.168.1.2 192.168.1.255
logaborted tcp -- anywhere anywhere state RELATED,ESTA
BLISHED tcp flags:RST/RST
ACCEPT 0 -- anywhere anywhere state RELATED,ESTAB
LISHED
ACCEPT icmp -- anywhere anywhere icmp destination-un
reachable
ACCEPT icmp -- anywhere anywhere icmp time-exceeded
ACCEPT icmp -- anywhere anywhere icmp parameter-prob
lem
nicfilt 0 -- anywhere anywhere
srcfilt 0 -- anywhere anywhere
Chain FORWARD (policy DROP)
target prot opt source destination
ACCEPT 0 -- anywhere anywhere state RELATED,ESTAB
LISHED
ACCEPT icmp -- anywhere anywhere icmp destination-un
reachable
ACCEPT icmp -- anywhere anywhere icmp time-exceeded
ACCEPT icmp -- anywhere anywhere icmp parameter-prob
lem
srcfilt 0 -- anywhere anywhere
Chain OUTPUT (policy DROP)
target prot opt source destination
ACCEPT 0 -- anywhere anywhere
ACCEPT 0 -- anywhere anywhere state RELATED,ESTAB
LISHED
ACCEPT icmp -- anywhere anywhere icmp destination-un
reachable
ACCEPT icmp -- anywhere anywhere icmp time-exceeded
ACCEPT icmp -- anywhere anywhere icmp parameter-prob
lem
s1 0 -- anywhere anywhere
Chain f0to1 (4 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spts

65535
dpt:https state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

65535
dpt:www state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

65535
dpt:webcache state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

65535
dpt:8008 state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

65535
dpt:8000 state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

65535
dpt:8888 state NEW
logdrop 0 -- anywhere anywhere
Chain f0to2 (2 references)
target prot opt source destination
logdrop 0 -- anywhere anywhere
Chain f1to0 (1 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere icmp source-quench
ACCEPT tcp -- anywhere anywhere tcp spts

5999
dpt:https state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

5999
dpt:www state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

5999
dpt:webcache state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

5999
dpt:8008 state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

5999
dpt:8000 state NEW
ACCEPT tcp -- anywhere anywhere tcp spts

5999
dpt:8888 state NEW
ACCEPT tcp -- anywhere anywhere tcp dpt:domain stat
e NEW
ACCEPT udp -- anywhere anywhere udp dpt:domain
ACCEPT tcp -- anywhere anywhere tcp spts

5999
dpt:auth state NEW
ACCEPT udp -- anywhere anywhere udp dpt:113
logdrop 0 -- anywhere anywhere
Chain f1to2 (2 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere icmp source-quench
ACCEPT tcp -- anywhere anywhere tcp dpt:domain stat
e NEW
ACCEPT udp -- anywhere anywhere udp dpt:domain
ACCEPT tcp -- anywhere anywhere tcp spts

5999
dpt:auth state NEW
ACCEPT udp -- anywhere anywhere udp dpt:113
logdrop 0 -- anywhere anywhere
Chain f2to0 (1 references)
target prot opt source destination
logdrop 0 -- anywhere anywhere
Chain f2to1 (4 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere icmp source-quench
ACCEPT tcp -- anywhere anywhere tcp dpt:domain stat
e NEW
ACCEPT udp -- anywhere anywhere udp dpt:domain
ACCEPT tcp -- anywhere anywhere tcp spts

65535
dpt:auth state NEW
ACCEPT udp -- anywhere anywhere udp dpt:113
logdrop 0 -- anywhere anywhere
Chain logaborted (1 references)
target prot opt source destination
logaborted2 0 -- anywhere anywhere limit: avg 1/sec
burst 10
LOG 0 -- anywhere anywhere limit: avg 2/min bu
rst 1 LOG level warning prefix `LIMITED '
Chain logaborted2 (1 references)
target prot opt source destination
LOG 0 -- anywhere anywhere LOG level warning t
cp-sequence tcp-options ip-options prefix `ABORTED '
ACCEPT 0 -- anywhere anywhere state RELATED,ESTAB
LISHED
Chain logdrop (8 references)
target prot opt source destination
logdrop2 0 -- anywhere anywhere limit: avg 1/sec bu
rst 10
LOG 0 -- anywhere anywhere limit: avg 2/min bu
rst 1 LOG level warning prefix `LIMITED '
DROP 0 -- anywhere anywhere
Chain logdrop2 (1 references)
target prot opt source destination
LOG 0 -- anywhere anywhere LOG level warning t
cp-sequence tcp-options ip-options prefix `DROPPED '
DROP 0 -- anywhere anywhere
Chain logreject (0 references)
target prot opt source destination
logreject2 0 -- anywhere anywhere limit: avg 1/sec b
urst 10
LOG 0 -- anywhere anywhere limit: avg 2/min bu
rst 1 LOG level warning prefix `LIMITED '
REJECT tcp -- anywhere anywhere reject-with tcp-res
et
REJECT udp -- anywhere anywhere reject-with icmp-po
rt-unreachable
DROP 0 -- anywhere anywhere
Chain logreject2 (1 references)
target prot opt source destination
LOG 0 -- anywhere anywhere LOG level warning t
cp-sequence tcp-options ip-options prefix `REJECTED '
REJECT tcp -- anywhere anywhere reject-with tcp-res
et
REJECT udp -- anywhere anywhere reject-with icmp-po
rt-unreachable
DROP 0 -- anywhere anywhere
Chain nicfilt (1 references)
target prot opt source destination
RETURN 0 -- anywhere anywhere
RETURN 0 -- anywhere anywhere
RETURN 0 -- anywhere anywhere
RETURN 0 -- anywhere anywhere
logdrop 0 -- anywhere anywhere
Chain s0 (1 references)
target prot opt source destination
f0to1 0 -- anywhere 192.168.1.2
f0to1 0 -- anywhere 192.168.1.255
f0to1 0 -- anywhere localhost
f0to1 0 -- anywhere host4-12-dynamic.52-82-r.retail.telecom
italia.it
f0to2 0 -- anywhere nsp-bs1.interbusiness.it
f0to2 0 -- anywhere host95-28-static.38-85-b.business.telec
omitalia.it
logdrop 0 -- anywhere anywhere
Chain s1 (1 references)
target prot opt source destination
f1to2 0 -- anywhere nsp-bs1.interbusiness.it
f1to2 0 -- anywhere host95-28-static.38-85-b.business.telec omitalia.it
f1to0 0 -- anywhere anywhere
Chain s2 (2 references)
target prot opt source destination
f2to1 0 -- anywhere 192.168.1.2
f2to1 0 -- anywhere 192.168.1.255
f2to1 0 -- anywhere localhost
f2to1 0 -- anywhere host4-12-dynamic.52-82-r.retail.telecom italia.it
f2to0 0 -- anywhere anywhere
Chain srcfilt (2 references)
target prot opt source destination
s2 0 -- nsp-bs1.interbusiness.it anywhere
s2 0 -- host95-28-static.38-85-b.business.telecomitalia.it anywhere
s0 0 -- anywhere anywhere