Discussion:
[office-server] настройка сетевого экрана (iptables) в Web-морде
unknown
2008-11-21 13:22:29 UTC
Permalink
÷ÓÅÍ ÄÏÂÒÏÇÏ ×ÒÅÍÅÎÉ ÓÕÔÏË.

óÔÏÌËÎÕÌÓÑ ÓÏ ÓÌÅÄÕÀÝÅÊ ÐÒÏÂÌÅÍÏÊ:
1. ÐÅÒÅÈÏÖÕ × ÒÅÖÉÍ ÜËÓÐÅÒÔÁ
2. ÏÔËÒÙ×ÁÀ ÎÁ ÒÅÄÁËÔÉÒÏ×ÁÎÉÅ ÃÅÐÏÞËÕ FORWARD × ÔÁÂÌÉÃÅ filter
3. ×ÙÂÉÒÁÀ ÐÏÌÉÔÉËÕ ÃÅÐÏÞËÉ =DROP É ÖÍÕ [ðÒÉÍÅÎÉÔØ]
4. ÐÏÑ×ÌÑÅÔÓÑ ÓÏÏÂÝÅÎÉÅ Ï ÏÛÉÂËÅ:
ïÛÉÂËÁ: Can't use -P with -A
ëÏÍÁÎÄÁ: /sbin/iptables -t filter -A FORWARD -P DROP



÷ÏÐÒÏÓ: ÜÔÏ ÎÅÄÏÒÁÂÏÔËÁ web-ÉÎÔÅÒÆÅÊÓÁ ÉÌÉ Ñ ÞÔÏ-ÔÏ ÎÅÄÏÐÏÎÉÍÁÀ?

óÐÁÓÉÂÏ.

ð.ó. ÷ÅÒÓÉÑ ÄÉÓÔÒÉÂÕÔÉ×Á - 4.0
÷ÅÒÓÉÑ ÑÄÒÁ - 2.6.18-std-smp-alt12
--
ó Õ×ÁÖÅÎÉÅÍ,
íÁËÓÉÍ ëÕÔÕÚÏ×
mail: M.V.Kutuzov ÎÁ czsp.ru
unknown
2008-11-21 17:57:13 UTC
Permalink
Post by unknown
1. ÐÅÒÅÈÏÖÕ × ÒÅÖÉÍ ÜËÓÐÅÒÔÁ
2. ÏÔËÒÙ×ÁÀ ÎÁ ÒÅÄÁËÔÉÒÏ×ÁÎÉÅ ÃÅÐÏÞËÕ FORWARD × ÔÁÂÌÉÃÅ filter
3. ×ÙÂÉÒÁÀ ÐÏÌÉÔÉËÕ ÃÅÐÏÞËÉ =DROP É ÖÍÕ [ðÒÉÍÅÎÉÔØ]
ïÛÉÂËÁ: Can't use -P with -A
ëÏÍÁÎÄÁ: /sbin/iptables -t filter -A FORWARD -P DROP
÷ÏÐÒÏÓ: ÜÔÏ ÎÅÄÏÒÁÂÏÔËÁ web-ÉÎÔÅÒÆÅÊÓÁ ÉÌÉ Ñ ÞÔÏ-ÔÏ ÎÅÄÏÐÏÎÉÍÁÀ?
ÐÏÈÏÖÅ ÎÅÄÏÒÁÂÏÔËÁ, ÉÂÏ ËÏÍÁÎÄÁ ÄÏÌÖÎÁ ÂÙÔØ ÐÒÉÍÅÒÎÏ ÔÁËÏÊ:

/sbin/iptables -t filter -P FORWARD DROP
----------- ÓÌÅÄÕÀÝÁÑ ÞÁÓÔØ -----------
âÙÌÏ ÕÄÁÌÅÎÏ ×ÌÏÖÅÎÉÅ ÎÅ × ÔÅËÓÔÏ×ÏÍ ÆÏÒÍÁÔÅ...
éÍÑ : =?iso-8859-1?q?=CF=D4=D3=D5=D4=D3=D4=D7=D5=C5=D4?=
ôÉÐ : application/pgp-signature
òÁÚÍÅÒ : 196 ÂÁÊÔÏ×
ïÐÉÓÁÎÉÅ: =?iso-8859-1?q?=CF=D4=D3=D5=D4=D3=D4=D7=D5=C5=D4?=
Url : <http://lists.altlinux.org/pipermail/office-server/attachments/20081121/756147fe/attachment.bin>
unknown
2008-11-22 10:52:51 UTC
Permalink
Post by unknown
1. ÐÅÒÅÈÏÖÕ × ÒÅÖÉÍ ÜËÓÐÅÒÔÁ
2. ÏÔËÒÙ×ÁÀ ÎÁ ÒÅÄÁËÔÉÒÏ×ÁÎÉÅ ÃÅÐÏÞËÕ FORWARD × ÔÁÂÌÉÃÅ filter
3. ×ÙÂÉÒÁÀ ÐÏÌÉÔÉËÕ ÃÅÐÏÞËÉ =DROP É ÖÍÕ [ðÒÉÍÅÎÉÔØ]
óÔÁ×ÉÌ ÐÒÏÓÔÏ server, × ÅÇÏ web-ÍÏÒÄÅ ÔÁËÏÇÏ ÎÅÔ. ëÁËÉÅ ÐÁËÅÔÙ ÎÁÄÏ
ÐÏÓÔÁ×ÉÔØ, ÞÔÏÂÙ ÐÏÑ×ÉÌÁÓØ ×ÏÚÍÏÖÎÏÓÔØ ÎÁÓÔÒÁÉ×ÁÔØ iptables?
unknown
2008-11-22 11:28:44 UTC
Permalink
Post by unknown
Post by unknown
1. ÐÅÒÅÈÏÖÕ × ÒÅÖÉÍ ÜËÓÐÅÒÔÁ
2. ÏÔËÒÙ×ÁÀ ÎÁ ÒÅÄÁËÔÉÒÏ×ÁÎÉÅ ÃÅÐÏÞËÕ FORWARD × ÔÁÂÌÉÃÅ
filter 3. ×ÙÂÉÒÁÀ ÐÏÌÉÔÉËÕ ÃÅÐÏÞËÉ =DROP É ÖÍÕ [ðÒÉÍÅÎÉÔØ]
óÔÁ×ÉÌ ÐÒÏÓÔÏ server, × ÅÇÏ web-ÍÏÒÄÅ ÔÁËÏÇÏ ÎÅÔ. ëÁËÉÅ ÐÁËÅÔÙ
ÎÁÄÏ ÐÏÓÔÁ×ÉÔØ, ÞÔÏÂÙ ÐÏÑ×ÉÌÁÓØ ×ÏÚÍÏÖÎÏÓÔØ ÎÁÓÔÒÁÉ×ÁÔØ
iptables? _______________________________________________
alterator-firewall ?
--
ó Õ×ÁÖÅÎÉÅÍ, áÎÄÒÅÊ îÏ×ÏÓ£ÌÏ×.
Registered linux user ? 282220
Ubuntu User number is ? 20998
Jabber UID gnostik_at_jabber.ru
Google talk ksynolog_at_gmail.com
ICQ UIN 162278208
unknown
2008-11-26 07:29:10 UTC
Permalink
Post by unknown
÷ÓÅÍ ÄÏÂÒÏÇÏ ×ÒÅÍÅÎÉ ÓÕÔÏË.
1. ÐÅÒÅÈÏÖÕ × ÒÅÖÉÍ ÜËÓÐÅÒÔÁ
2. ÏÔËÒÙ×ÁÀ ÎÁ ÒÅÄÁËÔÉÒÏ×ÁÎÉÅ ÃÅÐÏÞËÕ FORWARD × ÔÁÂÌÉÃÅ filter
3. ×ÙÂÉÒÁÀ ÐÏÌÉÔÉËÕ ÃÅÐÏÞËÉ =DROP É ÖÍÕ [ðÒÉÍÅÎÉÔØ]
ïÛÉÂËÁ: Can't use -P with -A
ëÏÍÁÎÄÁ: /sbin/iptables -t filter -A FORWARD -P DROP
÷ÏÐÒÏÓ: ÜÔÏ ÎÅÄÏÒÁÂÏÔËÁ web-ÉÎÔÅÒÆÅÊÓÁ ÉÌÉ Ñ ÞÔÏ-ÔÏ ÎÅÄÏÐÏÎÉÍÁÀ?
óÐÁÓÉÂÏ.
ð.ó. ÷ÅÒÓÉÑ ÄÉÓÔÒÉÂÕÔÉ×Á - 4.0
÷ÅÒÓÉÑ ÑÄÒÁ - 2.6.18-std-smp-alt12
ïÛÉÂËÁ web-ÍÏÒÄÙ...
òÕÞËÁÍÉ ×Ó£ ÐÒÅËÒÁÓÎÏ ×ËÕÒÉ×ÁÅÔÓÑ É ÒÁÂÏÔÁÅÔ...
Continue reading on narkive:
Loading...