|
|
VNIMANIE: Izpolzvaite forumite na saita za da zadadete vashite vuprosi.
Vupros |
Ot: NewToLinux |
Data: 02/08/2003 |
Zdraveite,
imam router, za koito i predi sym pisal. Na nego ima edin
prost NAT.
Puskam programata iptraf i gledam aktivnite konekcii na
192.168.0.2 ot vyreshnata mreja. Policy-to na INPUT mi e
ACCEPT. Izpylniavam iptables -A INPUT -s 192.168.0.2 -j
DROP, no sled kato otnovo pogledna konekciite na .0.2 4rez
iptraf te pordyljavat da stoiat. Probvam "ifconfig eth0
down" i posle "up". Pak si stoiat. Ot tova, koeto sym 4el
sled kato dobavia tozi red v INPUT verigata vsi4ko ot .0.2
trabva da se "puska dolu", oba4e vse edno nishto ne sym
napravil.
Kajete kyde byrkam, kakvo ne znam? Kyde sa opisani v
po-dylboki detaili mehanizmite?
BLAGODARIA!
|
Otgovor #1 |
Ot: NewToLinux |
Data: 02/08/2003 |
Mai triabva da dobavia tova pravilo v FORWARD
verigata!Probvah go i raboti, no iptraf pordyljava da
pokazva konekciite s razli4ni flagove ot predi -> S
Molia, kajete mi kakvo zna4at vsi4ki tezi flagove - S,P,A.
|
Otgovor #3 |
Ot: Venci |
Data: 02/09/2003 |
ti izpolzva6 :
-A, --append
Append one or more rules to the end of the selected
chain.
probvai s:
-R, --replace
Replace a rule in the selected chain.
ili s:
-I, --insert
Insert one or more rules in the selected chain as
the given rule number. So, if the rule number is
1, the rule or rules are inserted at the head of
the chain. This is also the default if no rule
number is specified.
|
<< PC with 2 graphic cards with 2 X-windows? (1
) | sms2mtel (0
) >>
|
|
|
|
|