# iptables -P FORWARD ACCEPT # iptables -A FORWARD -j DROP -p tcp -s 193.48.57.32/27 --dport ftp # iptables -P INPUT ACCEPT # iptables -A INPUT -j DROP -p tcp -d 134.206.3.60 --dport telnet
# nft add table ip FILTER # nft add chain FILTER FORWARD { type filter hook forward priority 0\; policy accept\; } # nft add rule FILTER FORWARD ip saddr 193.48.57.32/27 tcp dport 21 drop