Yuav Ua Li Cas Qhib Chaw Nres Nkoj ntawm Linux Server Firewall

Cov txheej txheem:

Yuav Ua Li Cas Qhib Chaw Nres Nkoj ntawm Linux Server Firewall
Yuav Ua Li Cas Qhib Chaw Nres Nkoj ntawm Linux Server Firewall

Video: Yuav Ua Li Cas Qhib Chaw Nres Nkoj ntawm Linux Server Firewall

Video: Yuav Ua Li Cas Qhib Chaw Nres Nkoj ntawm Linux Server Firewall
Video: TUDev Tech Talk с профессором Борой Озкан - Финтех и будущее финансов 2024, Tej zaum
Anonim

Qhov wikiHow qhia koj li cas qhib cov chaw nres nkoj ntawm peb lub firewalls nrov. Yog tias koj siv cov khoom lag luam xws li ConfigServer Firewall (CSF) lossis Advanced Policy Firewall (ADP), koj tuaj yeem tswj hwm cov chaw nres nkoj twg qhib hauv cov ntawv tseem ceeb teeb tsa phab ntsa. Yog tias koj siv Uncomplicated Firewall (UFW), Ubuntu lub ntsiab firewall xaiv, koj tuaj yeem ntxiv cov cai ntawm kab hais kom ua, tsis hloov kho cov ntaub ntawv nyuaj.

Kauj ruam

Txoj Kev 1 ntawm 3: Siv Firewall tsis yooj yim rau Ubuntu

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 1
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 1

Kauj Ruam 1. Nkag mus rau tus neeg rau zaub mov

Yog tias koj tab tom siv Ubuntu ntawm lub khoos phis tawj desktop, nias Ctrl+Alt+T kom qhib Terminal qhov rai.

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 2
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 2

Kauj ruam 2. Ntaus hauv sudo ufw xwm txheej verbose thiab nias Enter

Yog tias UFW twb tau ua haujlwm lawm, koj yuav pom cov lus qhia xwm txheej, nrog rau cov npe ntawm txoj cai thaiv phab ntsa (suav nrog qhib chaw nres nkoj) uas twb muaj lawm.

Yog tias koj pom cov lus "xwm txheej: tsis ua haujlwm", ntaus sudo ufw pab hauv lub qhov rai hais kom ua thiab nyem Enter kom tua lub firewall

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 3
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 3

Kauj Ruam 3. Siv sudo ufw tso cai [tus lej naj npawb] qhib qhov chaw nres nkoj

Piv txwv li, yog tias koj xav qhib qhov chaw nres nkoj SSH (22), ntaus kbd thiab nias Enter. Koj tsis tas yuav rov qhib lub firewall vim tias cov kev hloov pauv yuav pib siv tam sim ntawd.

  • Yog tias qhov chaw nres nkoj koj xav qhib yog qhov chaw nres nkoj rau cov kev pabcuam tau qhia hauv /etc /services list, tsuas yog ntaus lub npe ntawm qhov kev pabcuam hloov chaw ntawm tus lej chaw nres nkoj. Piv txwv: sudo ufw pub ssh.
  • Txhawm rau qhib chaw nres nkoj hauv thaj tsam tshwj xeeb, siv cov syntax sudo ufw tso cai 6000: 6007/tcp thiab hloov 6000: 6007 nrog qhov xav tau ntau yam. Yog tias qhov ntau yog UDP chaw nres nkoj ntau, hloov tcp nrog udp.
  • Txhawm rau qhia tus IP chaw nyob uas tuaj yeem nkag mus rau chaw nres nkoj, siv cov lus hauv qab no: sudo ufw tso cai los ntawm 10.0.0.1 mus rau ib qho chaw nres nkoj 22. Hloov 10.0.0.1 nrog IP chaw nyob, thiab 22 nrog chaw nres nkoj koj xav qhib rau qhov chaw nyob ntawd.
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 4
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 4

Kauj Ruam 4. Tshem tawm txoj cai thaiv phab ntsa uas koj tsis xav tau

Cov chaw nres nkoj uas tsis tau qhib tshwj xeeb yuav raug thaiv. Yog tias koj qhib qhov chaw nres nkoj uas koj xav kaw, ua raws cov theem no:

  • Ntaus hauv sudo ufw xwm txheej lej thiab nias Enter. Ib daim ntawv teev txhua txoj cai firewall tau nthuav tawm thiab txhua qhov nkag pib nrog tus lej uas sawv cev rau nws ntawm cov npe.
  • Txheeb tus lej thaum pib ntawm txoj cai koj xav rho tawm. Piv txwv li, koj xav rho tawm txoj cai uas qhib chaw nres nkoj 22, thiab txoj cai ntawd tau hais hauv tus lej 2.
  • Ntaus sudo ufw rho tawm 2 thiab nias Enter kom tshem tawm txoj cai ntawm kab thib ob (lossis tus lej 2).

Txoj Kev 2 ntawm 3: Siv ConfigServer Firewall

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 5
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 5

Kauj Ruam 1. Nkag mus rau tus neeg rau zaub mov

Yog tias koj tsis tau nkag rau hauv raws li tus neeg siv hauv paus, koj tuaj yeem siv su hais kom nkag mus rau hauv paus thiab hloov kho teeb tsa.

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 6
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 6

Kauj Ruam 2. Qhib phau ntawv teev npe uas tsim cov ntaub ntawv teeb tsa CSF

Cov ntaub ntawv no muaj npe csf.conf thiab tau khaws tseg rau /etc/csf/csf.conf phau ntawv teev npe los ntawm lub neej ntawd. Txhawm rau qhib cov npe, ntaus cd /etc /csf thiab nias Enter.

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 7
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 7

Kauj Ruam 3. Qhib csf.conf hauv kab ntawv kho qhov program

Koj tuaj yeem siv cov ntawv kho qhov program uas koj xav tau, xws li vim lossis nano.

Txhawm rau qhib csf.conf hauv vim, ntaus vim csf.config thiab nias Enter

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 8
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 8

Kauj Ruam 4. Ntxiv qhov chaw nres nkoj nkag mus rau TCP_IN cov npe

Cov chaw nres nkoj no yog TCP chaw nres nkoj. Tom qab qhib cov ntawv, koj tuaj yeem pom ntu TCP_IN thiab TCP_OUT. TCP_IN ntu qhia qhib TCP cov tswv yim TCP cov chaw nres nkoj sib cais los ntawm tus lej. Cov chaw nres nkoj tau nthuav tawm tus lej rau koj yooj yim, tab sis thaum nkag mus rau cov chaw nres nkoj, koj tsis tas yuav ua raws li qhov kev txiav txim uas twb muaj lawm. Koj tuaj yeem ntxiv cov chaw nres nkoj thaum kawg ntawm ntu, thiab cais cais cov chaw nres nkoj ntxiv nrog tus lej.

  • Piv txwv li, koj xav qhib chaw nres nkoj 999 thiab twb qhib chaw nres nkoj yog 20, 21, 22, 25, 53, 80, 110, 143, 443, 465, 587, 993, 995.
  • Tom qab ntxiv chaw nres nkoj 999 rau hauv cov npe, cov chaw nres nkoj yuav zoo li no: 20, 21, 22, 25, 53, 80, 110, 143, 443, 465, 587, 993, 995, 999.
  • Txhawm rau nkag mus rau hom kev nkag/ntaus ntawv hauv vim, nias tus yuam sij i ntawm cov keyboard.
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 9
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 9

Kauj Ruam 5. Tso cai TCP cov chaw nres nkoj tso tawm hauv TCP_OUT daim ntawv teev npe

Raws li koj tau ua nrog cov chaw nres nkoj nkag, ntxiv cov zis TCP cov chaw nres nkoj koj xav qhib rau TCP_OUT daim ntawv teev npe.

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 10
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 10

Kauj Ruam 6. Txuag kev hloov pauv thiab kaw cov ntawv

Ua raws cov theem no kom txuag thiab kaw cov ntawv:

  • Nias tus yuam sij Esc.
  • Typ: qw!
  • Nias Sau.
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 11
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 11

Kauj Ruam 7. Ntaus hauv kev pabcuam csf rov pib dua thiab nias Enter

Firewall yuav rov pib dua thiab cov chaw nres nkoj tshiab yuav qhib.

Txhawm rau thaiv lossis kaw qhov chaw nres nkoj, rov qhib cov ntawv, tshem tawm qhov chaw nres nkoj, khaws cov ntawv, thiab rov pib dua lub firewall

Txoj Kev 3 ntawm 3: Siv Txoj Cai Tswjfwm Ntiag Tug Firewall

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 12
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 12

Kauj Ruam 1. Nkag mus rau tus neeg rau zaub mov

Yog tias koj tsis tau nkag rau hauv raws li tus neeg siv hauv paus, koj tuaj yeem siv su hais kom nkag mus rau hauv paus thiab hloov kho teeb tsa.

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 13
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 13

Kauj Ruam 2. Qhib phau ntawv teev npe uas muaj cov ntaub ntawv teeb tsa APF

Cov ntaub ntawv koj yuav tsum tau nrhiav yog hu ua conf.apf thiab nyob hauv /etc /apf phau ntawv teev npe los ntawm lub neej ntawd. Ntaus cd /etc /apf kom nkag mus rau cov npe ntawd.

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 14
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 14

Kauj Ruam 3. Qhib conf.apf hauv kab ntawv kho qhov program

Koj tuaj yeem siv txhua qhov program koj xav tau, zoo li vim lossis nano.

Txhawm rau qhib conf.apf hauv vim, ntaus vim conf.apf thiab nias Enter

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 15
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 15

Kauj Ruam 4. Ntxiv cov chaw nres nkoj nkag mus rau IG_TCP_CPORTS daim ntawv teev npe

Thaum cov ntawv qhib, koj tuaj yeem pom IG_TCP_CPORTS thiab EG_TCP_CPORTS ntu. IG_TCP_CPORTS ntu qhia txog qhov qhib qhov chaw nres nkoj sib cais los ntawm tus lej. Cov chaw nres nkoj tau teev cov lej rau koj kom yooj yim, tab sis koj tsis tas yuav ua raws qhov kev txiav txim. Koj tuaj yeem ntxiv cov chaw nres nkoj mus rau qhov kawg ntawm txoj hlua thiab cais lawv nrog tus lej.

  • Piv txwv li, koj xav qhib chaw nres nkoj 999 thiab tam sim no cov chaw nres nkoj qhib yog 20, 21, 22, 25, 53, 80, 110, 143, 443, 465, 587, 993, 995.
  • Tom qab ntxiv chaw nres nkoj 999 rau IG_TCP_CPORTS daim ntawv, qhov kev txiav txim ntawm cov chaw nres nkoj yuav zoo li no: 20, 21, 22, 25, 53, 80, 110, 143, 443, 465, 587, 993, 995, 999.
  • Txhawm rau nkag mus rau hom kev nkag/ntaus ntawv hauv vim, nias tus yuam sij i ntawm cov keyboard.
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 16
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 16

Kauj Ruam 5. Ntxiv qhov chaw nres nkoj tso tawm rau EG_TCP_CPORTS daim ntawv teev npe

Raws li nrog cov chaw nres nkoj nkag, ntxiv cov zis TCP cov chaw nres nkoj koj xav qhib rau EG_TCP_CPORTS daim ntawv teev npe.

Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 17
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 17

Kauj Ruam 6. Txuag kev hloov pauv thiab kaw cov ntawv

Ua raws cov theem no kom txuag thiab kaw cov ntawv:

  • Nias tus yuam sij Esc.
  • Typ: qw!
  • Nias Sau.
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 18
Qhib Chaw Nres Nkoj hauv Linux Server Firewall Kauj Ruam 18

Kauj Ruam 7. Ntaus hauv kev pabcuam apf -r thiab nias Enter

APF firewall yuav rov pib dua thiab cov chaw nres nkoj tshiab yuav qhib.

Txhawm rau thaiv lossis kaw qhov chaw nres nkoj, rov qhib cov ntawv, tshem tawm qhov chaw nres nkoj, khaws cov ntawv, thiab rov pib dua lub firewall

Lub tswv yim

  • Yog tias koj pom qhov chaw nres nkoj uas tsis xav tau lossis siv los ntawm kev pabcuam khiav, kaw qhov chaw nres nkoj. Tsis txhob tso lub qhov rooj qhib rau cov neeg nkag!
  • Yog tias koj pib ntxiv qhov tsis sib xws (thiab ua tsis tau zoo) qhib cov chaw nres nkoj, Koj YUAV TSUM HACKED! Yog li ntawd, xyuas kom koj tsis txhob muab txoj hauv kev rau hackers. Tsuas yog qhib cov chaw nres nkoj koj xav tau tiag tiag.

Pom zoo: