===== COMMAND =====: iptables -t filter -S
===== RETURN CODE =====: 0
===== STDOUT =====:
[10.20.0.2] out: -P INPUT DROP
[10.20.0.2] out: -P FORWARD DROP
[10.20.0.2] out: -P OUTPUT ACCEPT
[10.20.0.2] out: -N ext-filter-forward
[10.20.0.2] out: -N ext-filter-input
[10.20.0.2] out: -A INPUT -i lo -m comment --comment "000 allow loopback" -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 22 -m comment --comment "010 ssh" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p tcp -m multiport --dports 123 -m comment --comment "020 ntp" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p udp -m multiport --dports 123 -m comment --comment "030 ntp_udp" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p udp -m multiport --dports 162 -m comment --comment "040 snmp" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 8000 -m comment --comment "050 nailgun_web" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p tcp -m multiport --dports 8001 -m comment --comment "060 nailgun_internal" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 8001 -m comment --comment "070 nailgun_internal_block_ext" -m state --state NEW -j REJECT --reject-with icmp-port-unreachable
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 5432 -m addrtype --src-type LOCAL -m comment --comment "080 postgres_local" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p tcp -m multiport --dports 5432 -m comment --comment "090 postgres" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 5432 -m comment --comment "100 postgres_block_ext" -m state --state NEW -j REJECT --reject-with icmp-port-unreachable
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 53 -m comment --comment "101 dns_tcp" -j ACCEPT
[10.20.0.2] out: -A INPUT -p udp -m multiport --dports 53 -m comment --comment "102 dns_udp" -j ACCEPT
[10.20.0.2] out: -A INPUT -p udp -m multiport --dports 67,68 -m comment --comment "103 dhcp" -j ACCEPT
[10.20.0.2] out: -A INPUT -p udp -m multiport --dports 69 -m comment --comment "104 tftp" -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 3128 -m comment --comment "105 squidproxy" -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 80,443 -m comment --comment "106 cobbler_web" -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p tcp -m multiport --dports 8777 -m comment --comment "110 ostf_admin" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 8777 -m addrtype --src-type LOCAL -m comment --comment "120 ostf_local" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 8777 -m comment --comment "130 ostf_block_ext" -m state --state NEW -j REJECT --reject-with icmp-port-unreachable
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 873 -m comment --comment "140 rsync" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p tcp -m multiport --dports 514 -m comment --comment "150 rsyslog" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p udp -m multiport --dports 514 -m comment --comment "160 rsyslog" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p tcp -m multiport --dports 4369,5672,61613 -m comment --comment "170 rabbitmq_admin_net" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 4369,5672,61613,15672 -m addrtype --src-type LOCAL -m comment --comment "180 rabbitmq_local" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 4369,5672,61613 -m comment --comment "190 rabbitmq_block_ext" -m state --state NEW -j REJECT --reject-with icmp-port-unreachable
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 8443 -m comment --comment "200 fuelweb_port" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 5000 -m comment --comment "210 keystone_admin" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -i eth0 -p tcp -m multiport --dports 35357 -m comment --comment "220 keystone_admin_port admin_net" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --dports 8080 -m comment --comment "230 nailgun_repo_admin" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A INPUT -p icmp -m comment --comment "240 allow icmp echo-request" -m state --state NEW -m icmp --icmp-type 8 -j ACCEPT
[10.20.0.2] out: -A INPUT -p icmp -m comment --comment "250 allow icmp echo-reply" -m state --state NEW -m icmp --icmp-type 0 -j ACCEPT
[10.20.0.2] out: -A INPUT -p icmp -m comment --comment "260 allow icmp dest-unreach" -m state --state NEW -m icmp --icmp-type 3 -j ACCEPT
[10.20.0.2] out: -A INPUT -p icmp -m comment --comment "270 allow icmp time-exceeded" -m state --state NEW -m icmp --icmp-type 11 -j ACCEPT
[10.20.0.2] out: -A INPUT -p tcp -m multiport --ports 514 -m comment --comment "514 tcp rsyslog" -j ACCEPT
[10.20.0.2] out: -A INPUT -p udp -m multiport --ports 514 -m comment --comment "514 udp rsyslog" -j ACCEPT
[10.20.0.2] out: -A INPUT -m comment --comment "970 externally defined rules: ext-filter-input" -j ext-filter-input
[10.20.0.2] out: -A INPUT -m comment --comment "980 accept related established rules" -m state --state RELATED,ESTABLISHED -j ACCEPT
[10.20.0.2] out: -A INPUT -m comment --comment "999 iptables denied" -m limit --limit 5/min -j LOG --log-prefix "iptables denied: " --log-level 7
[10.20.0.2] out: -A FORWARD -s 10.20.0.0/24 -i eth0 -m comment --comment "010 forward admin_net" -m state --state NEW -j ACCEPT
[10.20.0.2] out: -A FORWARD -m comment --comment "970 externally defined rules" -j ext-filter-forward
[10.20.0.2] out: -A FORWARD -m comment --comment "980 forward admin_net conntrack" -m state --state RELATED,ESTABLISHED -j ACCEPT
[10.20.0.2] out: 

===== STDERR =====:
