2home ¥´³y®çªá·½

¼ÐÃD: ¥D¾÷¬G»Ù,¤v­×½Æ¤¤ [¥´¦L¥»­¶]

§@ªÌ: 2home    ®É¶¡: 2010-5-27 16:31     ¼ÐÃD: ¥D¾÷¬G»Ù,¤v­×½Æ¤¤

¦U¦ì¤£¦n·N«ä,¬Q¤é±ß¶¡,¦³¤£©ú¬y¶q,¾É­P·í¾÷,¥Ø«e¨t²Î¤v­«Äé,¨t²Î«ì´_¤¤! ¦p¦³¤£«K,·q½Ð¨£½Ì!
§@ªÌ: ¶}ªáªº¾ð    ®É¶¡: 2010-5-27 16:50

¯¸ªø¨¯­W¤F
©¯¦n¦³±zÀH®ÉºûÅ@¥D¾÷,ºô¯¸ªº¶¶ºZ¹B§@
§Ú­Ì¤~¯à¦³³o­Ó¤À¨ÉªºÀu½è¥­¥x
·P®¦°Õ

¤£¹L¸g±`³o»òºû­×......·|¤£·|¼vÅT±zªº¥¿±`¤u§@°Ú
¥i±¤§Ú¹ï³o¤è­±¬O¤j¥~¦æ...À°¤£¤W¦£

§@ªÌ: vincentcheng66    ®É¶¡: 2010-5-27 16:53

¯¸¤j¨¯­W¤F
¥[ªo
§@ªÌ: tsc    ®É¶¡: 2010-5-27 18:36

·PÁ¤j¤j¨¯­W¥I¥X
¤~¦³³o»ò¬ü¦nªº¶é¦a
§@ªÌ: hsnn    ®É¶¡: 2010-5-27 19:01

1# 2home
¯¸ªø¤j¤H..
¨¯­W±z¤F
¸Û¼°·P®¦
§@ªÌ: kevin    ®É¶¡: 2010-5-27 21:36

°µ­ÓIPTABLES/NETFILTER+SNORT+GUARDIAN,¥i¥H¦³°ò¦ªº§ðÀ»¨¾¿m¯à¤O
§@ªÌ: cremaker    ®É¶¡: 2010-5-27 22:42

¨C¦¸¥D¾÷¬G»Ù¤F¡A´N·Q¨ì¤F 2home ¤j¡A¨¯­W¤F..
§@ªÌ: «Cµì¬Ó¦Z    ®É¶¡: 2010-5-27 23:33

¯¸ªø¨¯­W¤F¡C
§@ªÌ: william8864    ®É¶¡: 2010-5-28 00:08

¦ü¥GÀW²v°ª¤F¨Ç.
2home¸Ì­±¦³¤£¤Öºô¸ô¬[¯¸°ª¤â, »Ý­n±zªº¨ó§U½Ð¥XÁn!
§Ú¥u·|¦[³Ü³Û¿N...
§@ªÌ: 2home    ®É¶¡: 2010-5-29 19:55

¯u¬O¶Ë¸£µ¬,¥D¾÷¤S³QÀb«È·d±¾¤F,¬y¶q°ª¹F80M«ùÄò9¤p®É,¨t²Î·´·l³y¦¨µLªk¶}¾÷,¤µ¤Ñ¤v¸g¨Ó¥x¥_¥NºÞ¥D¾÷¾÷©Ð¨â½ë¤F,°ª³t¤½¸ô­·¤j«B¤j¶}¨®¦³ÂI¦MÀI,¤£ª¾Àb«È¬°¦ó¹ï2home¦³¿³½ì,²{¦b¤H¦b¾÷©Ð,Ä~ÄòºÊ´ú,¥i¯à¬O DISCUZ ªºµ{¦¡½X¦³º|¬},³y¦¨Áô½X§ðÀ»! ¥Ø«e«ùÄò¸Éº|¬},¤]½ÐÀb«È°ª©ï¶Q¤â,2HOME³£¬Oµ½¨}ªº¤H,À³¸Ó¤£·|±o¸o¤H.

¨t²Î³Æ¥÷ÁÙ­ì,¥u¯à«ì´_¨ì 2010/5/28¤é,¦³¨Ç¸ê®Æ¦³¨Ç¿òº|,¦pµo²{¦³¨Ç¤å³¹¤£¨£,¥u¯à½Ð¦U¦ì¦b­«¶K¤F,¯u¬O©êºp¤F!
§@ªÌ: ²Ê·Ë¹A¶é    ®É¶¡: 2010-5-29 20:15

Àb«È¯uªº½Ð°ª©ï¶Q¤â¡A2HOMEµLÀv´£¨Ñ§Ú­Ì³\¦hª¾ÃÑ¡A½Ð¯à´f¤©·ÓÅU¡C¯¸ªø¨¯­W¤F¡AÁÂÁ¡I
§@ªÌ: Ericg89127    ®É¶¡: 2010-5-29 20:37

¯¸¤j¥[ªo
¹ê¦b·Q¤£¥X§ðÀ»²z¥Ñ«¨
§@ªÌ: ¶Â­±    ®É¶¡: 2010-5-29 21:07

¬y¶q°ª¬°¤°»ò·|³y¦¨¨t²Î·´·l???

±µ³s¾DÀb, ´N·Q¨ì¦n¤ñ®a¤¤±µ³s¾DÅÑ, ³o¨Ç®d¤p¬O¤£¬O·|¤¬³q±¡³ø?

¤p°½°µªº¬O·l¤H¦Ó§Q¤vªº¨Æ, Àb«È°µªº¬O·l¤H¤S¤£§Q¤vªº¨Æ, ·d¤£À´¥L­Ì¦b·Q¤°»ò?
§@ªÌ: 2home    ®É¶¡: 2010-5-29 21:46

À³¸Ó¬O¦n©_§a! discuz ³Ìªñ¦³º|¬}³Qµo²{,´N¦³¤H·|¦n©_,§ä¤@¨Çºô¯¸¨Ó½m¥\,©Ò¥H½×¾Âµ{¦¡ÁÙ¬O§ä¦Ñ¤@ÂIªº©Î¬O¦Û¤v¼g,¤~¤£·|¦]¬°µ{¦¡½X¬O¶}©ñªº,¥u­n¤@¦³º|¬}¥X²{,´N¦³ºô¯¸´N·|­Ë·°¤F,¥t¥~¥i¯àªº­ì¦],¬O·Q¶K´c·N¼s§i¶K¤£¤W,¦]¬°2home·|¾×¶K¤£¤W,¤õ¤j¤F,ª½±µ´N·dºô¯¸¤F!

¬y¶q°ª¬°¤°»ò·|³y¦¨¨t²Î·´·l???

±µ³s¾DÀb, ´N·Q¨ì¦n¤ñ®a¤¤±µ³s¾DÅÑ, ³o¨Ç®d¤p¬O¤£¬O·|¤¬³q±¡³ø?

¤p°½°µªº¬O·l¤H¦Ó§Q¤vªº¨Æ, Àb«È°µªº¬O·l¤H¤S¤£§Q¤vªº¨Æ, ·d¤£À´¥L­Ì¦b·Q¤°»ò?
¶Â­± µoªí©ó 2010-5-29 21:07

§@ªÌ: kevin    ®É¶¡: 2010-5-29 21:55

¦pªG½T¹êª¾¹D¦³BUG®É,¦Ó¥B¥i¯à¥Î¤°»ò»yªkº|¬}¨Ó§ðÀ»,¥i¥H¦b¬[ºc¤W,°µ­ÓREVERSE PROXY,¦bLINUX¥D¾÷¤W±Ò°Ê¨¾¤õÀð,±N©Ò¦³¶i¤J80 PORTªº¬y¶q,¾É¤JPROXY,§Q¥ÎPROXYªº¥¿³W¤Æ»yªk,¥i¥H¾×±¼¤@¨ÇSESSION,¨Ã¥B¦b³z³q¦¡GATEWAY¸Ì,±Ò°ÊSNORT(¤J«I°»´ú)¥[¤W¤@­ÓPERL»yªkªºµ{¦¡¦pGUARDIAN,³o­ÓPERL¦bµo²{SNORT¦³°»´ú¨ìALERTªºLOG®É,¥D°Ê©Ê±N¨Ó·½IP¼g¤JLINUX¨¾¤õÀð,ª½±µ©Úµ´¹ï¤èªº³s½u.
§@ªÌ: kevin    ®É¶¡: 2010-5-29 21:56

ºô¸ô¤Wªº§ðÀ»¤j¦h¼Æ¬O¶Ãºj¥´³¾ªº,¨S¤°»ò¨Ó¥Ñªº¥Øªº¤Î¥Ø¼Ð.
§@ªÌ: ÃaÃa¹A³õ    ®É¶¡: 2010-5-29 22:42

³Ì¨¯­WªºÁÙ¬O¯¸ªø°Õ~~ÁÂÁ¦Ѥj
§@ªÌ: fums420505    ®É¶¡: 2010-5-29 23:12

10# 2home
¹q¸£µ{¦¡§Ú¤£À´
¦]¦¹À°¤£¤W¦£
³oºØ­·«B¤Ñ¡A¤S¬O°²¤é¡AÁÙ³Ò¾r¯¸¤j©bªi
¨¯­W¤F
¸ô¤WÁÙ¬O­nª`·N¦w¥þ¤~¦n

kevin¤j¡A±z¤½¦£¤§¾l¡A¯à§_¥X­Ó¤â¡AÀ°ÂI¦£§r¡I

¤µ¦­­n¤W½u¡A¶i¤£¨Ó2-homeºô­¶
¤ß¸Ì¯u¦³ÂI¥¢¸¨·P
¤]¥i¥H·Q¨£¯¸¤j³o¤U¤S¤£ª¾­n¦£¦h¤[©O¡H
§@ªÌ: Casa verde    ®É¶¡: 2010-5-30 00:13

2Home¤w¸g¦¨¤F¨C¤Ñ¶}¾÷¥²¥hªº²Ä¤G­Ó®a¡A¸I¨ì"®aªù"¨S¶}¦Ó¤£±o¨äªù¦Ó¤J¡Aªº½T·|¦³ÂI¥¢¸¨¡A¤]¥i·Q¹³¯¸¤j¦b°²¤éÁÙ¦u¦b¦B§N¾÷©Ð¤º¡A³v¨B±N®a¶é­««Øªº¨¯³Ò¡A¦b¦¹­PÁ¡I

¤]¦]2Home¬O­Ó¶}©ñªº®a¶é¡A·Q¥²Àb«È²{¦b¤]¦b®a¸Ì¬ÝµÛ¤j®aªº°Q½×¡A©Î³\®aªù­n´«¤W­þºØ¬ì§ÞÂê¡H¦b­þ¸Ì¥[¸Ë¨¾µs©Î¤J«I°»´ú¨t²Î¡H«ØijÁÙ¬OÅP«Ç±K½Í¸û§´¡C
§@ªÌ: µL¬È©~    ®É¶¡: 2010-5-30 20:43

¯¸ªø¨¯­W¤F~
¦pªG­n½m¥\¡A½Ð°ª©ï¶Q¤â¡A©ñ¹L³o»òÀu½èªº½×¾Â¥­¥x§a¡I~
§@ªÌ: ªü´¼    ®É¶¡: 2010-5-30 23:02

¨¯­W¯¸¤j¤F
§@ªÌ: ¤j®ü    ®É¶¡: 2010-5-31 09:03

¯¸¤j¨¯­W¤F
§@ªÌ: °ª¾ð·s²¾¥Áa    ®É¶¡: 2010-5-31 09:53

ÁÂÁ¯¸¤j¡A
·Q¤W2homeƒjµLªk³s¤W¡A³o®É­Ô´N§óª¾¹D­n¬Ã±¤2home¤F
§@ªÌ: «Cµì¬Ó¦Z    ®É¶¡: 2010-5-31 15:52

20# µL¬È©~
¥[¢°
§@ªÌ: 2home    ®É¶¡: 2010-5-31 18:50

·PÁ¦U¦ìªº¹ªÀy! ­ì¥»¦¨¥ß2home¥u¬O¬°¤F¿³½ì,«á¨Ó¤]¶R¤F¦a,¤]µ²¥æ¤F«Ü¦hªB¤Í,¤]ºCºCªº¦³¤@¥÷¹D¼w³d¥ô¦b,ÁöµMºûÅ@¤½¶}¶}©ñªº½×¾Â,Ãø§K·|¸I¨ì¤@¨Ç¯¸°È°ÝÃD,¦ý¬O¤@©w·|°í«ù¤U¥hªº,¨Ã¯à°÷¦b³Ì§Öªºª¬ªp¤U«ì´_¥¿±`,¤£Åý¦U¦ì·|­û¥¢±æªº!
§@ªÌ: smhu    ®É¶¡: 2010-5-31 20:12

25# 2home

¯¸ªø¿n¤À«Ü¦h¤F¡A©Ò¥H´N¤£¥Î¦A¥[¤À¹ªÀy¤F...¬°±zªº¨¯­W¥I¥X©ç©ç¤â...ºÞ¹Lºô¯¸ªº¤H³£ª¾¹D...­ü...³¾¨Æ¤@ÅÚµ¨...ÁÂ...ÁÂÁÂ...¨¯­W±z°Õ...
§@ªÌ: william8864    ®É¶¡: 2010-6-1 21:28

µLÀvªºªA°ÈÀqÀqªº¥I¥X¬O³Ì°ª¶Qªº±¡¾Þ, «Ü¦h¤H¥ú»¡¤£°µ,¬Ý¨ì´Nı±o«Ü»Àµø. ¯¸¤jÀqÀq¥I¥X§Ú­Ì³£·P¨ü¨ì¤F¤j­·¤j«BÁÙ­n«n¥_°ª³t¤½¸ô©bªi¡A§¤¦b®a¸ÌµÎªA¼µÛ¤G­¦»L¤W2home ı±o«Ü¦³ºp·N©O. ¥t, ¾÷©Ð¤£¬O¦³ºûÅ@¤ä´©¶Ü? §Ú¥H¬°¤@³q¹q¸Ü´N¦³¤uµ{®v·d©w©O£»
§@ªÌ: kevin    ®É¶¡: 2010-6-1 22:38

¾÷©Ð¤º¬O¥NºÞ,¹³remote hands-on³q±`¤]¬O­n¥I¿úªº,³Ì¦hÀ°§A§K¶O­«¶}¾÷,¤£¥i¯àÀ°§A­×Å@¨t²Îªº~~
¯¸¤j¦pªG­nÀ°¦£¦A«ü¥Ü§a~~
§@ªÌ: 2home    ®É¶¡: 2010-6-1 22:43

¦]¬°¬O¯²¥D¾÷¥NºÞªºªA°È,»Ý­n¦Û¤v¶R¾÷¾¹©MÄé¨t²Î,¦A§â¾÷¾¹±H©ñ¦b¦³ÀW¼e¦³§N®ð¦³³Æ¹q·½ªº¾÷©Ð,©M¤@¯ë¯²µêÀÀ¥D¾÷©M¨ä¥¦·~ªÌ¦@¨É¥D¾÷¤£¦P.

³q±`·í±¼,·|¥ý¥´¹q¸Ü³qª¾¼t°ÓÀ°¦£­«·s¶}¾÷,¦ý­Y¶}¤£°_¨Ó,¨Æ±¡³£¤ñ¸û¤j±ø,¤£¬OµwÅéÃa´N¬O§@·~¨t²Î¶Ã±¼,´N¥u¦n¿Ë¦Û¤W°}Åo!

µLÀvªºªA°ÈÀqÀqªº¥I¥X¬O³Ì°ª¶Qªº±¡¾Þ, «Ü¦h¤H¥ú»¡¤£°µ,¬Ý¨ì´Nı±o«Ü»Àµø. ¯¸¤jÀqÀq¥I¥X§Ú­Ì³£·P¨ü¨ì¤F¤j­·¤j«BÁÙ­n«n¥_°ª³t¤½¸ô©bªi¡A§¤¦b®a¸ÌµÎªA¼µÛ¤G­¦»L¤W2home ı±o«Ü¦³ºp·N©O. ¥t, ¾÷©Ð¤£¬O¦³ºûÅ@¤ä´©¶Ü? §Ú¥H ...
william8864 µoªí©ó 2010-6-1 21:28

§@ªÌ: 2home    ®É¶¡: 2010-6-1 22:53

À³¸ÓÁÙ¦n,²{¦b¤j³£¬O¨î¦¡¤Æ¤F,¦³®É°¸µoª¬ªp,´NÅý¦Û¤v¤Wºòµo±ø,ĵÙEĵÙE!

¾÷©Ð¤º¬O¥NºÞ,¹³remote hands-on³q±`¤]¬O­n¥I¿úªº,³Ì¦hÀ°§A§K¶O­«¶}¾÷,¤£¥i¯àÀ°§A­×Å@¨t²Îªº~~
¯¸¤j¦pªG­nÀ°¦£¦A«ü¥Ü§a~~
kevin µoªí©ó 2010-6-1 22:38

§@ªÌ: kevin    ®É¶¡: 2010-6-1 23:30

¥»¤å³¹³Ì«á¥Ñ kevin ©ó 2010-6-1 23:33 ½s¿è

SHARE§Ú¥ÎªºFIREWALL SCRIPT
¦³¤@­Ó¦Û­qCHAIN,¥i¥H¾×SYN-FLOODING
¤£¹L¦³«Ü¦h°Ñ¼Æ»Ý­n¦A­×§ï²Å¦X¦Û¥Î..
¨S¦³°µROUTER,¤]¤£¥ÎFORWARD CHAIN,¨S°µNAT¤]¤£¥Î,³æ¯ÂSERver,¥u­n¥Îinput chain

#!/bin/bash
#=========<<enable linux router>>===========
echo "1" > /proc/sys/net/ipv4/ip_forward
#=========<<define related syn_flooding rule>>======
rm -f /etc/modprobe.conf
modprobe ipt_recent ip_list_tot=16384
iptables -N SYN_FLOODING
#=========<<erase original rule>>===========
iptables -t filter -F
iptables -t nat -F
iptables -P INPUT DROP
iptables -P FORWARD DROP
#=========<<set variability>>===============
WAN=10.10.96.33
LAN=172.21.60.7
IPTF="/sbin/iptables -t filter"
IPTN="/sbin/iptables -t nat"
#=========<<Define input filter chain>>======
#$IPTF -A INPUT -p icmp -j ACCEPT
$IPTF -A INPUT -p all -m state --state INVALID -j DROP
$IPTF -A INPUT -p tcp --syn --dport 3128 -m limit --limit 1/m --limit-burst 300 -j ACCEPT
$IPTF -A INPUT -p tcp --syn --dport 3128 -j SYN_FLOODING
$IPTF -A INPUT -p tcp -s 172.21.60.0/23 -m state --state NEW -m multiport --dports 21,22,3128 -d 172.21.60.7 -j ACCEPT
$IPTF -A INPUT -p all -m state --state ESTABLISHED,RELATED -j ACCEPT
#=========<<define syn_flooding chain>>==========
$IPTF -A SYN_FLOODING -p tcp --syn --dport 3128 -m recent --name SYN_FLOODING --update --second 120 --hitcount 1 -j ACCEPT
$IPTF -A SYN_FLOODING -p tcp --syn --dport 3128 -m recent --name SYN --set
$IPTF -A SYN_FLOODING -p tcp --syn -j DROP
#=========<Define forward filter chain>>===========
$IPTF -A FORWARD -p all -m state --state INVALID -j DROP
$IPTF -A FORWARD -i eth1 -o eth0 -p all -m state --state NEW -s 172.21.60.0/23 -j ACCEPT
$IPTF -A FORWARD -i eth1 -o eth0 -p all -m state --state ESTABLISHED,RELATED -j ACCEPT
#=========<<Define nat postrouting chain>>==============
$IPTN -A POSTROUTING -o eth0 -s 172.21.60.0/23 -j SNAT --to $WAN
#=========<<Define trasparent proxy>>===================
$IPTN -A PREROUTING -i eth1 -p tcp --dport 80 -j REDIRECT --to-port 3128
#=======================<<the end>>=======================================




Åwªï¥úÁ{ 2home ¥´³y®çªá·½ (http://2home.com.tw/bbs/) Powered by Discuz! X2