Looking for the NTP pool? Go to ntppool.org instead.
Last update - 2025-03-26
run1 notes: This one does not have a stable ptp_kvm, so we are mostly network-based. Good enough for the pool's scorers though! We've moved to use rsntp on the server end for the cn flood, but time-tracking still uses chrony. == 2025-03-23T00:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-23T04:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-23T08:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-23T12:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-23T16:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 7 packets, 720 bytes) pkts bytes target prot opt in out source destination 7 672 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 6 packets, 576 bytes) pkts bytes target prot opt in out source destination 7 672 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-23T20:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 2 192 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 1 96 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 1 packets, 96 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-24T00:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 15 packets, 1496 bytes) pkts bytes target prot opt in out source destination 15 1440 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 14 packets, 1352 bytes) pkts bytes target prot opt in out source destination 13 1248 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-24T04:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 3 packets, 288 bytes) pkts bytes target prot opt in out source destination 6 576 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 1 96 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 4 packets, 384 bytes) pkts bytes target prot opt in out source destination 4 384 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-24T08:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 1 packets, 52 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 4 packets, 384 bytes) pkts bytes target prot opt in out source destination 5 480 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 4 packets, 384 bytes) pkts bytes target prot opt in out source destination 4 384 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-24T12:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 6 576 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 1 96 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-24T16:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 2 packets, 152 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 1 76 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 2 packets, 152 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 1 76 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 3 packets, 288 bytes) pkts bytes target prot opt in out source destination 8 768 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 3 288 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 6 packets, 576 bytes) pkts bytes target prot opt in out source destination 7 672 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-24T20:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 5 packets, 504 bytes) pkts bytes target prot opt in out source destination 5 480 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 1 96 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 4 packets, 384 bytes) pkts bytes target prot opt in out source destination 4 384 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-25T00:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 4 packets, 384 bytes) pkts bytes target prot opt in out source destination 5 480 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 5 packets, 480 bytes) pkts bytes target prot opt in out source destination 5 480 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-25T04:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 9 packets, 864 bytes) pkts bytes target prot opt in out source destination 9 864 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 9 packets, 864 bytes) pkts bytes target prot opt in out source destination 9 864 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-25T08:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 3 packets, 288 bytes) pkts bytes target prot opt in out source destination 3 288 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 3 packets, 288 bytes) pkts bytes target prot opt in out source destination 3 288 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-25T12:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 6 packets, 528 bytes) pkts bytes target prot opt in out source destination 5 480 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 1 96 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 5 packets, 480 bytes) pkts bytes target prot opt in out source destination 5 480 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-25T16:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 14 packets, 1392 bytes) pkts bytes target prot opt in out source destination 16 1536 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 1 96 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 2 192 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 14 packets, 1344 bytes) pkts bytes target prot opt in out source destination 14 1344 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-25T20:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 3 packets, 288 bytes) pkts bytes target prot opt in out source destination 3 288 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 3 packets, 288 bytes) pkts bytes target prot opt in out source destination 3 288 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-26T00:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 2 packets, 192 bytes) pkts bytes target prot opt in out source destination 7 672 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-26T04:00:02+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 1 packets, 57 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 5 packets, 480 bytes) pkts bytes target prot opt in out source destination 6 576 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 5 packets, 480 bytes) pkts bytes target prot opt in out source destination 5 480 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-26T08:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 3 packets, 156 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 2 packets, 2984 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 1 packets, 96 bytes) pkts bytes target prot opt in out source destination 2 192 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 1 packets, 96 bytes) pkts bytes target prot opt in out source destination 3 288 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK == 2025-03-26T12:00:01+00:00 == === IPv4 RAW TABLE === Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 4096 htable-expire 8000 srcmask 28 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 statistic mode random probability 0.06250000000 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 131072 htable-expire 64000 srcmask 28 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:123 NOTRACK 0 0 CT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:11123 NOTRACK === IPv6 RAW TABLE === Chain PREROUTING (policy ACCEPT 1 packets, 144 bytes) pkts bytes target prot opt in out source destination 5 480 CT udp -- * * ::/0 ::/0 udp dpt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp dpt:11123 NOTRACK 0 0 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/sec burst 16 mode srcip htable-max 1024 htable-expire 8000 srcmask 60 0 0 ACCEPT udp -- * * ::/0 ::/0 udp dpt:123 statistic mode random probability 0.06250000000 1 96 DROP udp -- * * ::/0 ::/0 udp dpt:123 limit: above 8/min burst 8 mode srcip htable-max 16384 htable-expire 64000 srcmask 60 Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 CT udp -- * * ::/0 ::/0 udp spt:123 NOTRACK 0 0 CT udp -- * * ::/0 ::/0 udp spt:11123 NOTRACK
Git repository for chrony-graph: https://github.com/ddrown/chrony-graph