Hi,
@Dhaval
I have allowed only required port
@Alok
Below is my firewall rules
iptables -A INPUT -m conntrack --ctstate ESTABLISHED,RELATED -j ACCEPT
iptables -A INPUT -s
180.76.6.0/16 -j DROP
iptables -A INPUT -s
180.76.5.0/16 -j DROP
iptables -A INPUT -s
208.115.111.0/24 -j DROP
iptables -A INPUT -s
208.115.113.0/24 -j DROP
iptables -A INPUT -s
199.21.99.0/24 -j DROP
iptables -A INPUT -s
157.56.93.0/16 -j DROP
iptables -A INPUT -s
66.249.73.0/8 -j DROP
iptables -A INPUT -s
66.249.76.0/8 -j DROP
iptables -A INPUT -s 66.249.73.120 -j DROP
iptables -A INPUT -s 168.62.162.41 -j DROP
iptables -A INPUT -s 198.55.104.196 -j DROP
iptables -A INPUT -s 114.79.19.82 -j DROP
iptables -A INPUT -s
176.31.111.0/16 -j DROP
iptables -A INPUT -s
176.31.111.115/16 -j DROP
iptables -A INPUT -s
76.173.3.39/8 -j DROP
iptables -A INPUT -s
67.185.237.194/8 -j DROP
iptables -A INPUT -s
5.9.19.0/8 -j DROP
iptables -A INPUT -s
5.9.7.0/8 -j DROP
iptables -A INPUT -s
5.9.54.0/8 -j DROP
iptables -A INPUT -i eth0 -p tcp --dport 22 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 22 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 22 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 22 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 80 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 80 -j ACCEPT
iptables -A INPUT -p tcp --dport 80 -m limit --limit 2/minute --limit-burst 2 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 80 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 80 -j ACCEPT
iptables -A INPUT -p udp --dport 80 -m limit --limit 2/minute --limit-burst 2 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --dport 80 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --sport 80 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --dport 80 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --sport 80 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 443 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 443 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 443 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 443 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --dport 22 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --sport 22 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --dport 22 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --sport 22 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --dport 443 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --sport 443 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --dport 443 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --sport 443 -j ACCEPT
iptables -I INPUT -i lo -j ACCEPT
iptables -I OUTPUT -o lo -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 53 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 53 -j ACCEPT
iptables -A OUTPUT -p tcp -o eth0 --dport 53 -j ACCEPT
iptables -A INPUT -p tcp -i eth0 --sport 53 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 873 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 873 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 873 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 873 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --dport 873 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --sport 873 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --dport 873 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --sport 873 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 3306 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 3306 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 3306 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 3306 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 25 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 25 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 25 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 25 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 143 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 143 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 143 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 143 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 993 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 993 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 993 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 993 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 110 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 110 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 110 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 110 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 995 -j ACCEPT
iptables -A OUTPUT -o eth0 -p tcp --sport 995 -j ACCEPT
iptables -A INPUT -i eth0 -p udp --dport 995 -j ACCEPT
iptables -A OUTPUT -o eth0 -p udp --sport 995 -j ACCEPT
iptables -A INPUT -s
72.14.188.66/32 -j DROP
iptables -A INPUT -s
0.0.0.0/8 -j DROP
iptables -A INPUT -s
127.0.0.0/8 -j DROP
iptables -A INPUT -s
127.0.0.1/8 -j DROP
iptables -A INPUT -s
10.0.0.0/8 -j DROP
iptables -A INPUT -s
172.16.0.0/16 -j DROP
iptables -A INPUT -s
192.168.0.0/24 -j DROP
iptables -A INPUT -s
224.0.0.0/8 -j DROP
#iptables -A INPUT -p tcp ! --syn -m state --state NEW -j DROP
#iptables -A INPUT -f -j DROP
#iptables -A INPUT -p tcp --tcp-flags ALL ALL -j DROP
#iptables -A INPUT -p tcp --tcp-flags ALL FIN -j DROP
#iptables -A INPUT -p tcp --tcp-flags ALL NONE -j DROP
#iptables -A INPUT -p tcp --tcp-flags ALL FIN,PSH,URG -j DROP
#iptables -A INPUT -p tcp --tcp-flags ACK,FIN FIN -j DROP
#iptables -A INPUT -p tcp --tcp-flags ACK,PSH PSH -j DROP
#iptables -A INPUT -p tcp --tcp-flags ACK,URG URG -j DROP
#iptables -A INPUT -p tcp --tcp-flags ALL SYN,RST,ACK,FIN,URG -j DROP
#iptables -A INPUT -p tcp --tcp-flags SYN,FIN SYN,FIN -j DROP
#iptables -A INPUT -p tcp --tcp-flags FIN,RST FIN,RST -j DROP
#iptables -A INPUT -p tcp --tcp-flags ALL SYN,FIN -j DROP
#iptables -A INPUT -p tcp --tcp-flags ALL URG,PSH,SYN,FIN -j DROP
iptables -P INPUT DROP
iptables -P FORWARD DROP