Looking for the NTP pool? Go to ntppool.org instead.
Last update - 2025-06-24
run1 notes: This one does not have a stable ptp_kvm, so we are mostly network-based. Good enough for the pool's scorers though! We've moved to use rsntp on the server end for the cn flood, but time-tracking still uses chrony. == 2025-06-22T00:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-22T04:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 1 packets, 144 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-22T08:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 1 packets, 52 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 1 packets, 52 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-22T12:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 1 96 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 1 packets, 96 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-22T16:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 1 packets, 96 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 1 packets, 96 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-22T20:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-23T00:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-23T04:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 2 packets, 192 bytes) pkts bytes target prot opt in out source destination 2 192 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 2 packets, 192 bytes) pkts bytes target prot opt in out source destination 2 192 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-23T08:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-23T12:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 2 packets, 240 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 1 packets, 96 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-23T16:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-23T20:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 1 packets, 144 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-24T00:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-24T04:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-24T08:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 25 packets, 126K bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 31 packets, 136K bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-06-24T12:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK
Git repository for chrony-graph: https://github.com/ddrown/chrony-graph