srsniste@srsniste-server:~$ sysctl -a | grep forward
error: permission denied on key 'kernel.cad_pid'
error: permission denied on key 'fs.binfmt_misc.register'
error: permission denied on key 'dev.parport.parport0.autoprobe'
error: permission denied on key 'dev.parport.parport0.autoprobe0'
error: permission denied on key 'dev.parport.parport0.autoprobe1'
error: permission denied on key 'dev.parport.parport0.autoprobe2'
error: permission denied on key 'dev.parport.parport0.autoprobe3'
error: permission denied on key 'net.ipv4.route.flush'
net.ipv4.conf.all.forwarding = 1
net.ipv4.conf.all.mc_forwarding = 0
net.ipv4.conf.default.forwarding = 1
net.ipv4.conf.default.mc_forwarding = 0
net.ipv4.conf.lo.forwarding = 1
net.ipv4.conf.lo.mc_forwarding = 0
net.ipv4.conf.eth1.forwarding = 1
net.ipv4.conf.eth1.mc_forwarding = 0
net.ipv4.conf.eth2.forwarding = 1
net.ipv4.conf.eth2.mc_forwarding = 0
error: permission denied on key 'net.ipv6.route.flush'
net.ipv4.ip_forward = 1
net.ipv6.conf.all.forwarding = 0
net.ipv6.conf.default.forwarding = 0
net.ipv6.conf.lo.forwarding = 0
net.ipv6.conf.eth2.forwarding = 0
net.ipv6.conf.eth1.forwarding = 0
Chain out_internal2external_all_s1 (1 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state ESTABLISHED
Chain out_internal2external_ftp_s3 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spt:ftp dpts:10 24:65535 state ESTABLISHED
ACCEPT tcp -- anywhere anywhere tcp spt:ftp-data dp ts:1024:65535 state RELATED,ESTABLISHED
ACCEPT tcp -- anywhere anywhere tcp spts:1024:65535 dpts:1024:65535 state ESTABLISHED
Chain out_internal2external_irc_s2 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spt:ircd dpts:1 024:65535 state ESTABLISHED
Chain out_internal_all_c10 (1 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere state NEW,ESTABLISH ED
Chain out_internal_dns_s1 (1 references)
target prot opt source destination
ACCEPT udp -- anywhere anywhere udp spt:domain stat e ESTABLISHED
ACCEPT tcp -- anywhere anywhere tcp spt:domain stat e ESTABLISHED
Chain out_internal_ftp_c12 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spts:32768:6100 0 dpt:ftp state NEW,ESTABLISHED
ACCEPT tcp -- anywhere anywhere tcp spts:32768:6100 0 dpt:ftp-data state ESTABLISHED
ACCEPT tcp -- anywhere anywhere tcp spts:32768:6100 0 dpts:1024:65535 state RELATED,ESTABLISHED
Chain out_internal_icmp_c15 (1 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere state NEW,ESTABLISH ED
Chain out_internal_icmp_s8 (1 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere state ESTABLISHED
Chain out_internal_irc_c11 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spts:32768:6100 0 dpt:ircd state NEW,ESTABLISHED
Chain out_internal_netbios_dgm_s3 (1 references)
target prot opt source destination
ACCEPT udp -- anywhere anywhere udp spt:netbios-dgm dpts:1024:65535 state ESTABLISHED
ACCEPT udp -- anywhere anywhere udp spt:netbios-dgm dpt:netbios-dgm state ESTABLISHED
Chain out_internal_netbios_ns_s2 (1 references)
target prot opt source destination
ACCEPT udp -- anywhere anywhere udp spt:netbios-ns dpts:1024:65535 state ESTABLISHED
ACCEPT udp -- anywhere anywhere udp spt:netbios-ns dpt:netbios-ns state ESTABLISHED
Chain out_internal_netbios_ssn_s4 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spt:netbios-ssn dpts:1024:65535 state ESTABLISHED
Chain out_internal_ping_c14 (1 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere state NEW,ESTABLISH ED icmp echo-request
Chain out_internal_ping_s9 (1 references)
target prot opt source destination
ACCEPT icmp -- anywhere anywhere state ESTABLISHED i cmp echo-reply
Chain out_internal_samba_s5 (1 references)
target prot opt source destination
ACCEPT udp -- anywhere anywhere udp spt:netbios-ns dpt:netbios-ns state NEW,ESTABLISHED
ACCEPT udp -- anywhere anywhere udp spt:netbios-ns dpts:1024:65535 state NEW,ESTABLISHED
ACCEPT udp -- anywhere anywhere udp spt:netbios-dgm dpt:netbios-dgm state ESTABLISHED
ACCEPT udp -- anywhere anywhere udp spt:netbios-dgm dpts:1024:65535 state ESTABLISHED
ACCEPT tcp -- anywhere anywhere tcp spt:netbios-ssn dpts:1024:65535 state ESTABLISHED
ACCEPT tcp -- anywhere anywhere tcp spt:microsoft-d s dpts:1024:65535 state ESTABLISHED
Chain out_internal_smtp_c19 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spts:32768:6100 0 dpt:smtp state NEW,ESTABLISHED
Chain out_internal_smtp_s18 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spt:smtp dpts:1 024:65535 state ESTABLISHED
Chain out_internal_squid_s7 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spt:3128 dpts:1 024:65535 state ESTABLISHED
Chain out_internal_ssh_c13 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spts:32768:6100 0 dpt:ssh state NEW,ESTABLISHED
Chain out_internal_ssh_s6 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spt:ssh dpts:10 24:65535 state ESTABLISHED
Chain out_internal_vnc_c17 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spts:32768:6100 0 dpts:5900:5903 state NEW,ESTABLISHED
Chain out_internal_vnc_s16 (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp spts:5900:5903 dpts:1024:65535 state ESTABLISHED
Chain pr_external_fragments (1 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'PACKET FRAGMENTS:''
DROP all -- anywhere anywhere
Chain pr_external_icmpflood (1 references)
target prot opt source destination
RETURN all -- anywhere anywhere limit: avg 10/sec b urst 10
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'ICMP FLOOD:''
DROP all -- anywhere anywhere
Chain pr_external_malbad (4 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'MALFORMED BAD:''
DROP all -- anywhere anywhere
Chain pr_external_malnull (1 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'MALFORMED NULL:''
DROP all -- anywhere anywhere
Chain pr_external_malxmas (1 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'MALFORMED XMAS:''
DROP all -- anywhere anywhere
Chain pr_external_nosyn (1 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'NEW TCP w/o SYN:''
DROP all -- anywhere anywhere
Chain pr_external_synflood (1 references)
target prot opt source destination
RETURN all -- anywhere anywhere limit: avg 10/sec b urst 10
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'SYN FLOOD:''
DROP all -- anywhere anywhere
Chain pr_internal_fragments (1 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'PACKET FRAGMENTS:''
DROP all -- anywhere anywhere
Chain pr_internal_icmpflood (1 references)
target prot opt source destination
RETURN all -- anywhere anywhere limit: avg 10/sec b urst 10
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'ICMP FLOOD:''
DROP all -- anywhere anywhere
Chain pr_internal_malbad (4 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'MALFORMED BAD:''
DROP all -- anywhere anywhere
Chain pr_internal_malnull (1 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'MALFORMED NULL:''
DROP all -- anywhere anywhere
Chain pr_internal_malxmas (1 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'MALFORMED XMAS:''
DROP all -- anywhere anywhere
Chain pr_internal_nosyn (1 references)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'NEW TCP w/o SYN:''
DROP all -- anywhere anywhere
Chain pr_internal_synflood (1 references)
target prot opt source destination
RETURN all -- anywhere anywhere limit: avg 10/sec b urst 10
LOG all -- anywhere anywhere limit: avg 1/sec bu rst 5 LOG level warning prefix `'SYN FLOOD:''
DROP all -- anywhere anywhere