Å×Å©³ë ÄÄÇ»ÅÍ

[¿ø°Ý¿äû] . [ȸ¿øÀÚ·á½Ç] [EDIT]     [Win98] [Win2000] [Win7] [win10] [WinServer] [Linux] [A/SÀÚ·á] [Driver] [UTIL] [º¹Á¦±â] [TC]

__Today: __
Your ip : 3.145.130.31
ȸ¿ø¾ÆÀ̵ð 
Æнº¿öµå
  ÄÄÇ»ÅÍ
  ¸ð´ÏÅÍ
  À×Å©/Åä³Ê-¼Ò¸ðÇ°
  ÄÄÇ»Åͺ»Ã¼ºÎÇ°
  ½ºÄɳÊ
  ÇÁ¸°ÅÍ
  ÄÄÇ»ÅͼҸðÇ°
  ³×Æ®¿öÅ©
  ¼ÒÇÁÆ®¿þ¾î

ÀüÈ­ : 062-224-6450
Æѽº : 062-227-6450

  Å×Å©³ëÄÄÇ»ÅÍ

[ ÀÚ·á½Ç ]

±¤°í¼º ±ÛÀ̳ª ºÒ¹ýÀÚ·á ¾÷·Îµå¸¦ ±ÝÇÕ´Ï´Ù.

Re: iptable ¹®¼­
¾ÆÀ̵ð : jgheo     À̸§ : °ü¸®ÀÚ     ¹øÈ£ : 59.2     Á¶È¸ : 87721
¾÷·Îµå : 2004-07-13 22:26:07

#!/bin/sh

# ¸ðµâÀ» ¿Ã¸°´Ù.
/sbin/modprobe ip_conntrack
/sbin/modprobe ip_conntrack_ftp
/sbin/modprobe iptable_nat
/sbin/modprobe iptable_mangle

# ¿ì¼± ¸ðµç RuleÀ» Á¤¸®ÇÑ´Ù.
/sbin/iptables -F
/sbin/iptables -A INPUT -m state --state RELATED -j ACCEPT

# localhost¿¡¼­ÀÇ trafficÀ» ¹Þ¾ÆµéÀδÙ.
/sbin/iptables -A INPUT -i lo -j ACCEPT

# ƯÁ¤ ip¿¡¼­ÀÇ ¿¬°áÀ» ¸ðµÎ¹Þ¾ÆµéÀδÙ. ¿¹¸¦ µé¾î ÀÚ±â Áý ÄÄÇ»ÅÍ
/sbin/iptables -A INPUT -s 192.168.1.1 -j ACCEPT

# ƯÁ¤ Æ÷Æ®·ÎºÎÅÍ ¿¬°áÀ» ¹Þ¾ÆµéÀδÙ. udpµµ ÇÒ ¼ö ÀÖ´Ù.
/sbin/iptables -A INPUT -p tcp --destination-port 22 -j ACCEPT
/sbin/iptables -A INPUT -p tcp --destination-port 20 -j ACCEPT
/sbin/iptables -A INPUT -p tcp --destination-port 21 -j ACCEPT
/sbin/iptables -A INPUT -p tcp --destination-port 80 -j ACCEPT
# x manager port 6000
/sbin/iptables -A INPUT -p tcp --destination-port 6000 -j ACCEPT

# È®¸³µÈ ¿¬°á¿¡ ´ëÇÑ PacketÀ» ¹Þ¾ÆµéÀδÙ.
/sbin/iptables -A INPUT -i eth0 -p tcp ! --syn -j ACCEPT

# ÀÎÁõ ¿¬°áÀ» °ÅºÎÇÑ´Ù(±×·¸Áö ¾ÊÀ» °æ¿ì ¸ÞÀϼ­¹ö°¡ ¿À·§µ¿¾È ŸÀӾƿô »óÅ°¡ µÉ °ÍÀÌ´Ù.)
/sbin/iptables -A INPUT -i eth0 -p tcp --destination-port 113 -j REJECT

# echo³ª ¸ñÀûÁö¿¡ µµÂø ¸øÇϰųª ½Ã°£ ÃÊ°úµÈ icmp packetµéÀ» ¹Þ¾ÆµéÀδÙ.
/sbin/iptables -A INPUT -i eth0 -p icmp --icmp-type 0 -j ACCEPT
/sbin/iptables -A INPUT -i eth0 -p icmp --icmp-type 3 -j ACCEPT
/sbin/iptables -A INPUT -i eth0 -p icmp --icmp-type 11 -j ACCEPT

# ´ÙÀ½À¸·Î °¢°¢¿¡ ´ëÇÑ Á¤Ã¥À» ¼¼¿î´Ù.
/sbin/iptables -P INPUT ACCEPT
/sbin/iptables -P OUTPUT ACCEPT
/sbin/iptables -P FORWARD ACCEPT

## 1~30000¹ø Æ÷Æ®¸¦ µå·ÓÇÑ´Ù. (À§¿¡¼­ ¿­¾îµÐ 20~22,80Àº ¿­·ÁÁü) --dport´Â destination port
## ´Ù µå·ÓÇÒ ¼öµµ Àִµ¥ ±×·¸°Ô Çϸé netstat, iptables -L ·Î »óź¸±â¸¦ ÇÒ ¶§ ¿À·§µ¿¾È ¸ØÃçÀÖ½¿.
/sbin/iptables -A INPUT -p tcp --dport 1:30000 -j DROP
## ÇÎ µå·Ó
/sbin/iptables -A INPUT -p icmp --icmp-type echo-request -j DROP

À­±Û : 2004-07-13 22:21:18,   59¹øÀÇ °ü·Ã±Û ¹Ù·Îº¸±â Re: iptable ¹®¼­
¹Ø±Û : 2004-06-07 23:25:44,   58¹ø ±Û ¹Ù·Îº¸±â fedora 2.0 ¼³Ä¡
  From:211.194.15.233 / Absolute number:105
Ȩ¾²±â°ü·Ã±ÛÀü´Þ¼öÁ¤»èÁ¦¸ñ·Ï
 
¹øÈ£ Á¦¸ñ ÷ºÎÆÄÀÏ Å©±â Àü¼Û À̸§ ¾÷·Îµå
72 2020-11-06 09:48:34,   72¹ø ±Û ¹Ù·Îº¸±â fortigate ¾ÏÈ£ »õ·Î ³Ö±â     0 °ü¸®ÀÚ 11-06
71 2015-05-16 15:39:49,   71¹ø ±Û ¹Ù·Îº¸±â linux ½Ã°£ ¼³Á¤     0 °ü¸®ÀÚ 05-16
70 2007-09-06 10:06:14,   70¹ø ±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(vsftp.txt, 9,151Byte)ÀÌ ÀÖ½À´Ï´Ù. ftp??? ´Ù¿î·Îµå : vsftp.txt (9,151Byte) vsftp.txt 8KB 11040 °ü¸®ÀÚ 09-06
69 2007-04-07 11:08:32,   69¹ø ±Û ¹Ù·Îº¸±â »ç¼³ ip ´ë¿ª- ¹üÀ§     0 °ü¸®ÀÚ 04-07
60 2004-06-14 12:39:06,   60¹ø ±Û ¹Ù·Îº¸±â ¸ÞÀϼ³Á¤ ¼³¸í     0 °ü¸®ÀÚ 06-14
60¹øÀÇ °ü·Ã±Û 2004-06-14 12:43:40,   60¹øÀÇ °ü·Ã±Û ¹Ù·Îº¸±â Re: ¸ÞÀϼ³Á¤ ¼³¸í     0 °ü¸®ÀÚ 06-14
59 2004-06-10 19:23:14,   59¹ø ±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(iptables.ZIP, 383,958Byte)ÀÌ ÀÖ½À´Ï´Ù. iptable ¹®¼­ ´Ù¿î·Îµå : iptables.ZIP (383,958Byte) iptables.ZIP 374KB 6699 Â÷´Ï 06-10
59¹øÀÇ °ü·Ã±Û 2004-07-13 22:21:18,   59¹øÀÇ °ü·Ã±Û ¹Ù·Îº¸±â Re: iptable ¹®¼­     0 °ü¸®ÀÚ 07-13
59¹øÀÇ °ü·Ã±Û 2004-07-13 22:26:07,   59¹øÀÇ °ü·Ã±Û ¹Ù·Îº¸±â Re: iptable ¹®¼­ ¢¸     0 °ü¸®ÀÚ 07-13
58 2004-06-07 23:25:44,   58¹ø ±Û ¹Ù·Îº¸±â fedora 2.0 ¼³Ä¡     0 °ü¸®ÀÚ 06-07
57 2004-02-25 11:31:01,   57¹ø ±Û ¹Ù·Îº¸±â ¸®´ª½º Ä¿³Î Ãë¾à¼ºÀÌ     0 °ü¸®ÀÚ 02-25
55 2003-06-24 09:41:39,   55¹ø ±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(cgitelnet.zip, 6,522Byte)ÀÌ ÀÖ½À´Ï´Ù. telnet for ftp port ´Ù¿î·Îµå : cgitelnet.zip (6,522Byte) cgitelnet.zip 6KB 6201 °ü¸®ÀÚ 06-24
54 2002-11-29 11:00:25,   54¹ø ±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(hcode_spam_filter.tar.bz2, 93,421Byte)ÀÌ ÀÖ½À´Ï´Ù. filter¸¦ ÀÌ¿ëÇÑ ½ºÆÔÁ¦°Å ´Ù¿î·Îµå : hcode_spam_filter.tar.bz2 (93,421Byte) hcode_spam_fil 91KB 6245 Admin 11-29
53 2002-10-31 12:29:01,   53¹ø ±Û ¹Ù·Îº¸±â Linux/Slapper.worm.B -------.cinik     0 Admin 10-31
52 2002-08-13 17:30:24,   52¹ø ±Û ¹Ù·Îº¸±â ½ºÆÔ¸ÞÀÏ Â÷´Ü¹æ¹ý     0 Admin 08-13
52¹øÀÇ °ü·Ã±Û 2002-08-13 18:47:20,   52¹øÀÇ °ü·Ã±Û ¹Ù·Îº¸±â Re: ½ºÆÔ¸ÞÀÏ Â÷´Ü¹æ¹ý     0 Admin 08-13
52¹øÀÇ °ü·Ã±Û 2002-11-28 11:59:46,   52¹øÀÇ °ü·Ã±Û ¹Ù·Îº¸±â Re: ½ºÆÔ¸ÞÀÏ Â÷´Ü¹æ¹ý     0 °ü¸®ÀÚ 11-28
51 2002-05-24 15:19:42,   51¹ø ±Û ¹Ù·Îº¸±â ¸®´ª½º °ü¸®ÀÚ¸¦À§ÇÑ ÆÄ¿ö ÆÁ     0 °ü¸®ÀÚ 05-24
50 2002-05-20 12:31:05,   50¹ø ±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(Coyote Linux.exe, 4,329,657Byte)ÀÌ ÀÖ½À´Ï´Ù. coyote - last all zip ¸®¶ó ÄÚ¿äÅ× ´Ù¿î·Îµå : Coyote Linux.exe (4,329,657Byte) Coyote Linux.e 4.13MB 8742 °ü¸®ÀÚ 05-20
50¹øÀÇ °ü·Ã±Û 2002-05-22 10:37:51,   50¹øÀÇ °ü·Ã±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(msn-enable.tar, 163,840Byte)ÀÌ ÀÖ½À´Ï´Ù. coyote - last all zip ¸®¶ó ÄÚ¿ä ´Ù¿î·Îµå : msn-enable.tar (163,840Byte) msn-enable.tar 160KB 6519 °ü¸®ÀÚ 05-22
49 2002-05-02 00:02:48,   49¹ø ±Û ¹Ù·Îº¸±â ȨÆäÀÌÁö °Ë»ö»çÀÌÆ® µî·ÏÆÁ     0 °ü¸®ÀÚ 05-02
48 2002-04-12 10:01:40,   48¹ø ±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(forwarding.txt, 3,347Byte)ÀÌ ÀÖ½À´Ï´Ù. À¯µ¿ ipÀÇ °íÁ¤È­ -forwarding Æ÷¿öµù ´Ù¿î·Îµå : forwarding.txt (3,347Byte) forwarding.txt 3KB 6942 °ü¸®ÀÚ 04-12
47 2002-04-10 11:30:58,   47¹ø ±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(ProFTPd_Ref-.htm, 142,751Byte)ÀÌ ÀÖ½À´Ï´Ù. Korean ProFTPd Reference ´Ù¿î·Îµå : ProFTPd_Ref-.htm (142,751Byte) ProFTPd_Ref-.h 139KB 109351 °ü¸®ÀÚ 04-10
46 2002-04-10 11:24:50,   46¹ø ±Û ¹Ù·Îº¸±â ftpŬ¶óÀ̾ðÆ® »ç¿ëÇϱâ ÆÁ.     0 °ü¸®ÀÚ 04-10
45 2001-09-05 20:00:34,   45¹ø ±Û ¹Ù·Îº¸±â linux¿¡¼­ À©µµ¿ì °øÀ¯Æú´õ º¸±â     0 ÇãÁ¤±Õ 09-05
44 2001-08-31 12:00:25,   44¹ø ±Û ¹Ù·Îº¸±â ¸®´ª½º¿¡¼­ ¸Þ¸ð¸® ÀνÄÀ» Á¦´ë·Î ¸ø     0 ÇãÁ¤±Õ 08-31
43 2001-08-30 09:59:57,   43¹ø ±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(rc.firewall.iptables, 1,117Byte)ÀÌ ÀÖ½À´Ï´Ù. iptables sample ´Ù¿î·Îµå : rc.firewall.iptables (1,117Byte) rc.firewall.ip 1KB 5443 ÇãÁ¤±Õ 08-30
43¹øÀÇ °ü·Ã±Û 2001-08-30 10:00:40,   43¹øÀÇ °ü·Ã±Û ¹Ù·Îº¸±â,   ÷ºÎÆÄÀÏ(rc.deny, 13,233Byte)ÀÌ ÀÖ½À´Ï´Ù. iptables¸¦ ÀÌ¿ëÇÑ ¾ÆÀÌÇÇ Â÷´Ü ´Ù¿î·Îµå : rc.deny (13,233Byte) rc.deny 12KB 5158 ÇãÁ¤±Õ 08-30
42 2001-08-29 17:30:13,   42¹ø ±Û ¹Ù·Îº¸±â sendmail¿¡¼­ sircam virus Â÷´ÜÇÏ±â     0 ÇãÁ¤±Õ 08-29
41 2001-06-08 18:02:22,   41¹ø ±Û ¹Ù·Îº¸±â linux 7.1 kernel 2.4.x iptables se     0 Mr heo 06-08
 


Copyright (C) 2001 jog.co.kr All rights reserved.