[linux-guvenlik] iptables

---------

From: emre46 emre (emre46@hotmail.com)
Date: Mon 21 Jul 2003 - 13:43:52 EEST

  • Next message: Enver ALTIN: "[linux-guvenlik] Re: iptables"

    selamlar

    aşağıdaki konfigurasyonda
    iptabes -P FORWARD ACCEPT
    dersem çalışıyor..

    iptabes -P FORWARD DROP
    edersem çalışmıyor
    sorun nerdedir acaba .. ?

    #!/bin/bash
    ip="/sbin/iptables"
    echo "1">/proc/sys/net/ipv4/ip_forward

    $ip -P INPUT DROP
    $ip -P OUTPUT ACCEPT
    $ip -P FORWARD DROP

    $ip -F
    $ip -X
    $ip -F -t nat
    $ip -X -t nat
    $ip -F -t mangle
    $ip -X -t mangle

    $ip -A INPUT -i lo -j ACCEPT
    $ip -A OUTPUT -o lo -j ACCEPT

    $ip -N STATE
    $ip -A STATE -m state --state ESTABLISHED,RELATED -j ACCEPT
    $ip -A STATE -j DUMP

    $ip -N DURUM
    $ip -A DURUM -m state --state ESTABLISHED,RELATED -j ACCEPT
    $ip -A DURUM -m state --state NEW -j ACCEPT
    $ip -A DURUM -j DROP

    # Lokalden internete
    $ip -t nat -A POSTROUTING -p tcp -s 192.168.1.0/24 --dport 80 -j SNAT --to
    222.222.222.222
    $ip -A FORWARD -s 192.168.1.0/24 -p tcp --dport 80 -j DURUM
    $ip -A INPUT -s 192.168.1.0/24 -p tcp --dport 80 -j DURUM

    _________________________________________________________________
    Add photos to your e-mail with MSN 8. Get 2 months FREE*.
    http://join.msn.com/?page=features/featuredemail


  • Next message: Enver ALTIN: "[linux-guvenlik] Re: iptables"

    ---------

    Bu arsiv hypermail 2.1.6 tarafindan uretilmistir.