[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: regra



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

maiquel wrote:

> galera resolvi algums problemas do firewall que mandei so que na
> parte de flags ta dando erro .. tem alguma coisa errada com essa
> regra
>
> ## NMAP FIN/URG/PSH $IPTABLES -A CHECK_FLAGS -p tcp --tcp-flags ALL
> FIN,URG,PSH -m limit --limit 5/minute -j LOG --log-level $LOG_LEVEL
> #--log-prefix "NMAP-XMAS:" $IPTABLES -A CHECK_FLAGS -p tcp
> --tcp-flags ALL FIN,URG,PSH -j DROP # SYN/RST $IPTABLES -A
> CHECK_FLAGS -p tcp --tcp-flags SYN,RST SYN,RST -m limit --limit
> 5/minute -j LOG --log-level $LOG_LEVEL #--log-prefix "SYN/RST:"
> $IPTABLES -A CHECK_FLAGS -p tcp --tcp-flags SYN,RST SYN,RST -j DROP
> # SYN/FIN -- Scan(probably) $IPTABLES -A CHECK_FLAGS -p tcp
> --tcp-flags SYN,FIN SYN,FIN -m limit --limit 5/minute -j LOG
> --log-level $LOG_LEVEL #--log-prefix "SYN/FIN:" $IPTABLES -A
> CHECK_FLAGS -p tcp --tcp-flags SYN,FIN SYN,FIN -j DROP
>
> Olá!

     Creio que o erro esta aqui,
$IPTABLES -A CHECK_FLAGS -p tcp --tcp-flags SYN,FIN SYN,FIN -m limit
- --limit 5/minute -j LOG --log-level $LOG_LEVEL "#--log-prefix" vc ta
colocando uma #

    Abraços!

- --
[]s
Guilherme de Freitas Figueiredo - [Gui]
ICQ: 48264565
Public GPG Key: 5C5BFBFF
PGP Key Server: keyring.debian.org
gui@maniacs.com.br - http://www.maniacs.com.br
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFCn2971pgbc1xb+/8RAn2ZAJ9rfHkIGdIIf7JFNEqkCQ7k4K/rFACdERL4
807jvm7yi8USiGQLwVyr+mw=
=yI9F
-----END PGP SIGNATURE-----



Reply to: