回覆 1# milanolarry
You need to set the default policy to drop first:
iptables -P INPUT DROP
iptables -P FORWARD DROP
Don't set the output policy to drop unless you know what you are doing.
After that, make sure to save your rules, usually
/sbin/iptables-save > /etc/sysconfig/iptables
or
service iptables save |