Wouldn't it just easier to put a log statement before the drop so you can see what iptables is dropping? This might really simplify your troubleshooting. Besides Google, log files are your friends as well. If your default rule is to DROP everything but the log isn't catching anything then you have another problem otherwise you'll know immediately which ports to open. Gary Smith