Anyway this is the ouput of the command iptables -vnL, as you can see rules are there but the IP still answer pings from everywhere
[root@pbxprova ~]# iptables -vnL
Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
324K 337M fail2ban-SIP all – * * 0.0.0.0/0 0.0.0.0/0
323K 338M fpbxfirewall all – * * 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT icmp – * * 0.0.0.0/0 0.0.0.0/0 icmptype 0
0 0 ACCEPT icmp – * * 0.0.0.0/0 0.0.0.0/0 icmptype 3
0 0 ACCEPT icmp – * * 0.0.0.0/0 0.0.0.0/0 icmptype 5
0 0 ACCEPT icmp – * * 0.0.0.0/0 0.0.0.0/0 icmptype 11
0 0 ACCEPT icmp – * * XX.XX.XX.X8 0.0.0.0/0
0 0 ACCEPT icmp – * * XX.XX.XX.XX8/29 0.0.0.0/0
0 0 DROP icmp – * * 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:22
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:22
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:443
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:443
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:80
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:80
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:21
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:21
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21
0 0 ACCEPT udp – * * XX.XX.XX.X8 0.0.0.0/0 udp dpt:69
0 0 ACCEPT udp – * * XX.XX.XX.XX8/29 0.0.0.0/0 udp dpt:69
0 0 DROP udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:69
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:5222
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:5222
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5222
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:82
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:82
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:82
0 0 ACCEPT udp – * * XX.XX.XX.X8 0.0.0.0/0 udp dpt:1194
0 0 ACCEPT udp – * * XX.XX.XX.XX8/29 0.0.0.0/0 udp dpt:1194
0 0 DROP udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1194
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:84
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:84
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:84
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:8088
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:8088
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8088
0 0 ACCEPT tcp – * * XX.XX.XX.X8 0.0.0.0/0 tcp dpt:8089
0 0 ACCEPT tcp – * * XX.XX.XX.XX8/29 0.0.0.0/0 tcp dpt:8089
0 0 DROP tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8089
Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
Chain OUTPUT (policy ACCEPT 226K packets, 293M bytes)
pkts bytes target prot opt in out source destination
Chain fail2ban-SIP (1 references)
pkts bytes target prot opt in out source destination
239 170K REJECT all – * * 74.63.240.6 0.0.0.0/0 reject-with icmp-port-unreachable
3544 2648K REJECT all – * * 185.53.88.61 0.0.0.0/0 reject-with icmp-port-unreachable
320K 334M RETURN all – * * 0.0.0.0/0 0.0.0.0/0
Chain fpbx-rtp (1 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpts:10000:20000
0 0 ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpts:4000:4999
Chain fpbxattacker (6 references)
pkts bytes target prot opt in out source destination
0 0 all – * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: ATTACKER side: source mask: 255.255.255.255
0 0 DROP all – * * 0.0.0.0/0 0.0.0.0/0
Chain fpbxblacklist (1 references)
pkts bytes target prot opt in out source destination
Chain fpbxfirewall (1 references)
pkts bytes target prot opt in out source destination
105K 324M ACCEPT all – lo * 0.0.0.0/0 0.0.0.0/0
2745 1073K ACCEPT tcp – * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
142K 7968K ACCEPT icmp – * * 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT all – * * 0.0.0.0/0 255.255.255.255
0 0 ACCEPT all – * * 0.0.0.0/0 0.0.0.0/0 PKTTYPE = multicast
0 0 ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 udp spts:67:68 dpts:67:68
73507 4950K fpbx-rtp all – * * 0.0.0.0/0 0.0.0.0/0
73507 4950K fpbxblacklist all – * * 0.0.0.0/0 0.0.0.0/0
73507 4950K fpbxsignalling all – * * 0.0.0.0/0 0.0.0.0/0
73507 4950K fpbxsmarthosts all – * * 0.0.0.0/0 0.0.0.0/0
72862 4648K fpbxregistrations all – * * 0.0.0.0/0 0.0.0.0/0
72815 4638K fpbxnets all – * * 0.0.0.0/0 0.0.0.0/0
72628 4613K fpbxhosts all – * * 0.0.0.0/0 0.0.0.0/0
72628 4613K fpbxinterfaces all – * * 0.0.0.0/0 0.0.0.0/0
72628 4613K fpbxreject all – * * 0.0.0.0/0 0.0.0.0/0
39 28595 fpbxrfw all – * * 0.0.0.0/0 0.0.0.0/0 mark match 0x2/0x2
3975 493K ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
68608 4091K fpbxlogdrop all – * * 0.0.0.0/0 0.0.0.0/0
Chain fpbxhosts (1 references)
pkts bytes target prot opt in out source destination
0 0 zone-trusted all – * * 83.211.227.21 0.0.0.0/0
0 0 zone-trusted all – * * 127.0.0.1 0.0.0.0/0
Chain fpbxinterfaces (1 references)
pkts bytes target prot opt in out source destination
72618 4610K zone-external all – eth0 * 0.0.0.0/0 0.0.0.0/0
Chain fpbxknownreg (1 references)
pkts bytes target prot opt in out source destination
0 0 all – * * 0.0.0.0/0 0.0.0.0/0 recent: REMOVE name: REPEAT side: source mask: 255.255.255.255
0 0 all – * * 0.0.0.0/0 0.0.0.0/0 recent: REMOVE name: ATTACKER side: source mask: 255.255.255.255
107 36345 MARK all – * * 0.0.0.0/0 0.0.0.0/0 MARK or 0x4
47 9840 ACCEPT all – * * 0.0.0.0/0 0.0.0.0/0 mark match 0x1/0x1
60 26505 fpbxsvc-ucp all – * * 0.0.0.0/0 0.0.0.0/0
60 26505 fpbxsvc-zulu all – * * 0.0.0.0/0 0.0.0.0/0
60 26505 fpbxsvc-restapps all – * * 0.0.0.0/0 0.0.0.0/0
60 26505 fpbxsvc-restapps_ssl all – * * 0.0.0.0/0 0.0.0.0/0
60 26505 fpbxsvc-provis all – * * 0.0.0.0/0 0.0.0.0/0
60 26505 fpbxsvc-provis_ssl all – * * 0.0.0.0/0 0.0.0.0/0
Chain fpbxlogdrop (1 references)
pkts bytes target prot opt in out source destination
68604 4089K DROP all – * * 0.0.0.0/0 0.0.0.0/0
Chain fpbxnets (1 references)
pkts bytes target prot opt in out source destination
22 15796 zone-trusted all – * * XX.XX.XX.X8 0.0.0.0/0
165 9532 zone-trusted all – * * XX.XX.XX.XX8/29 0.0.0.0/0
Chain fpbxratelimit (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT all – * * 0.0.0.0/0 0.0.0.0/0 mark match 0x4/0x4
0 0 ACCEPT all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 90 hit_count: 1 name: WHITELIST side: source mask: 255.255.255.255
0 0 all – * * 0.0.0.0/0 0.0.0.0/0 state NEW recent: SET name: REPEAT side: source mask: 255.255.255.255
0 0 all – * * 0.0.0.0/0 0.0.0.0/0 state NEW recent: SET name: DISCOVERED side: source mask: 255.255.255.255
0 0 LOG all – * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4
0 0 fpbxattacker all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 86400 hit_count: 1 name: ATTACKER side: source mask: 255.255.255.255
0 0 fpbxattacker all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 86400 hit_count: 200 name: REPEAT side: source mask: 255.255.255.255
0 0 fpbxattacker all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 300 hit_count: 100 name: REPEAT side: source mask: 255.255.255.255
0 0 fpbxshortblock all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 60 hit_count: 50 name: REPEAT side: source mask: 255.255.255.255
0 0 ACCEPT all – * * 0.0.0.0/0 0.0.0.0/0
Chain fpbxregistrations (1 references)
pkts bytes target prot opt in out source destination
0 0 fpbxknownreg all – * * 83.211.227.21 0.0.0.0/0
Chain fpbxreject (1 references)
pkts bytes target prot opt in out source destination
72619 4610K rejsvc-nfs all – * * 0.0.0.0/0 0.0.0.0/0
72619 4610K rejsvc-smb all – * * 0.0.0.0/0 0.0.0.0/0
72481 4580K rejsvc-zulu all – * * 0.0.0.0/0 0.0.0.0/0
72481 4580K rejsvc-isymphony all – * * 0.0.0.0/0 0.0.0.0/0
72481 4580K rejsvc-provis all – * * 0.0.0.0/0 0.0.0.0/0
72481 4580K rejsvc-provis_ssl all – * * 0.0.0.0/0 0.0.0.0/0
72481 4580K rejsvc-vpn all – * * 0.0.0.0/0 0.0.0.0/0
72481 4580K rejsvc-restapps all – * * 0.0.0.0/0 0.0.0.0/0
72481 4580K rejsvc-restapps_ssl all – * * 0.0.0.0/0 0.0.0.0/0
72481 4580K rejsvc-xmpp all – * * 0.0.0.0/0 0.0.0.0/0
72480 4580K rejsvc-ftp all – * * 0.0.0.0/0 0.0.0.0/0
72477 4580K rejsvc-tftp all – * * 0.0.0.0/0 0.0.0.0/0
72440 4573K rejsvc-pjsip all – * * 0.0.0.0/0 0.0.0.0/0
72440 4573K rejsvc-iax all – * * 0.0.0.0/0 0.0.0.0/0
72440 4573K rejsvc-webrtc all – * * 0.0.0.0/0 0.0.0.0/0
Chain fpbxrfw (1 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 90 hit_count: 1 name: WHITELIST side: source mask: 255.255.255.255
39 28595 all – * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: REPEAT side: source mask: 255.255.255.255
39 28595 all – * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: DISCOVERED side: source mask: 255.255.255.255
0 0 fpbxattacker all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 10 hit_count: 50 name: REPEAT side: source mask: 255.255.255.255
0 0 fpbxattacker all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 86400 hit_count: 1 name: ATTACKER side: source mask: 255.255.255.255
0 0 fpbxshortblock all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 60 hit_count: 10 name: SIGNALLING side: source mask: 255.255.255.255
39 28595 all – * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: SIGNALLING side: source mask: 255.255.255.255
0 0 fpbxattacker all – * * 0.0.0.0/0 0.0.0.0/0 recent: CHECK seconds: 86400 hit_count: 100 name: REPEAT side: source mask: 255.255.255.255
39 28595 ACCEPT all – * * 0.0.0.0/0 0.0.0.0/0
Chain fpbxshortblock (2 references)
pkts bytes target prot opt in out source destination
0 0 all – * * 0.0.0.0/0 0.0.0.0/0 recent: SET name: CLAMPED side: source mask: 255.255.255.255
0 0 REJECT all – * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
Chain fpbxsignalling (1 references)
pkts bytes target prot opt in out source destination
0 0 MARK udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5160 MARK set 0x1
619 290K MARK udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:35060 MARK set 0x3
Chain fpbxsmarthosts (1 references)
pkts bytes target prot opt in out source destination
645 302K ACCEPT all – * * 83.211.227.21 0.0.0.0/0 mark match 0x1/0x1
Chain fpbxsvc-chansip (1 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:35060
Chain fpbxsvc-ftp (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21
Chain fpbxsvc-http (1 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
Chain fpbxsvc-https (1 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
Chain fpbxsvc-iax (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:4569
Chain fpbxsvc-isymphony (0 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-letsencrypt (0 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-nfs (0 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-pjsip (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5160
Chain fpbxsvc-provis (1 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-provis_ssl (1 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-restapps (1 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-restapps_ssl (1 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-smb (0 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-ssh (1 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
Chain fpbxsvc-tftp (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:69
Chain fpbxsvc-ucp (1 references)
pkts bytes target prot opt in out source destination
Chain fpbxsvc-vpn (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1194
Chain fpbxsvc-webrtc (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8088
0 0 ACCEPT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8089
Chain fpbxsvc-xmpp (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5222
Chain fpbxsvc-zulu (1 references)
pkts bytes target prot opt in out source destination
Chain rejsvc-ftp (1 references)
pkts bytes target prot opt in out source destination
3 120 REJECT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21 reject-with icmp-port-unreachable
Chain rejsvc-iax (1 references)
pkts bytes target prot opt in out source destination
0 0 REJECT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:4569 reject-with icmp-port-unreachable
Chain rejsvc-isymphony (1 references)
pkts bytes target prot opt in out source destination
Chain rejsvc-nfs (1 references)
pkts bytes target prot opt in out source destination
Chain rejsvc-pjsip (1 references)
pkts bytes target prot opt in out source destination
0 0 REJECT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:5160 reject-with icmp-port-unreachable
Chain rejsvc-provis (1 references)
pkts bytes target prot opt in out source destination
Chain rejsvc-provis_ssl (1 references)
pkts bytes target prot opt in out source destination
Chain rejsvc-restapps (1 references)
pkts bytes target prot opt in out source destination
Chain rejsvc-restapps_ssl (1 references)
pkts bytes target prot opt in out source destination
Chain rejsvc-smb (1 references)
pkts bytes target prot opt in out source destination
Chain rejsvc-tftp (1 references)
pkts bytes target prot opt in out source destination
0 0 REJECT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:69 reject-with icmp-port-unreachable
Chain rejsvc-vpn (1 references)
pkts bytes target prot opt in out source destination
0 0 REJECT udp – * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1194 reject-with icmp-port-unreachable
Chain rejsvc-webrtc (1 references)
pkts bytes target prot opt in out source destination
1 40 REJECT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8088 reject-with icmp-port-unreachable
1 40 REJECT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:8089 reject-with icmp-port-unreachable
Chain rejsvc-xmpp (1 references)
pkts bytes target prot opt in out source destination
1 40 REJECT tcp – * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:5222 reject-with icmp-port-unreachable
Chain rejsvc-zulu (1 references)
pkts bytes target prot opt in out source destination
Chain zone-external (1 references)
pkts bytes target prot opt in out source destination
72618 4610K MARK all – * * 0.0.0.0/0 0.0.0.0/0 MARK or 0x10
Chain zone-internal (0 references)
pkts bytes target prot opt in out source destination
0 0 MARK all – * * 0.0.0.0/0 0.0.0.0/0 MARK or 0x4
0 0 fpbxsvc-ssh all – * * 0.0.0.0/0 0.0.0.0/0
0 0 fpbxsvc-http all – * * 0.0.0.0/0 0.0.0.0/0
0 0 fpbxsvc-https all – * * 0.0.0.0/0 0.0.0.0/0
0 0 fpbxsvc-chansip all – * * 0.0.0.0/0 0.0.0.0/0
Chain zone-other (0 references)
pkts bytes target prot opt in out source destination
0 0 MARK all – * * 0.0.0.0/0 0.0.0.0/0 MARK or 0x8
Chain zone-trusted (4 references)
pkts bytes target prot opt in out source destination
187 25328 ACCEPT all – * * 0.0.0.0/0 0.0.0.0/0