新版本好像无效(Ubuntu 24.04 LTS Linux面板11.7.0) 请问新版本是不是要换新方案呢
我这边服务器/www/server/panel/data/db/firewall.db firewall_ip表本来就是空的
/www/server/panel/data/firewall目录没有ip_rules_xxxxxx.json 只有一个叫GeoLite2-Country.json 的文件
ipset flush in_bt_user_drop_ipset
bt 1
后还依然有大量存在
# iptables -S | grep 172.1
-A ufw-user-input -s 172.0.172.109/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.108/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.107/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.106/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.105/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.104/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.103/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.102/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.101/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.100/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.19/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.18/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.17/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.16/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.15/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.14/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.13/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.12/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.11/32 -p tcp -m tcp --dport 3306 -j ACCEPT
-A ufw-user-input -s 172.0.172.10/32 -p tcp -m tcp --dport 3306 -j ACCEPT |