[an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] (none) [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] (none) [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive]
 
[an error occurred while processing this directive] [an error occurred while processing this directive]
Skåne Sjælland Linux User Group - http://www.sslug.dk Home   Subscribe   Mail Archive   Forum   Calendar   Search
MhonArc Date: [Date Prev] [Date Index] [Date Next]   Thread: [Date Prev] [Thread Index] [Date Next]   MhonArc
 

Re: [NETVAERK] hackerforsøg



On Tue, 19 Apr 2005 12:49:50 +0200
Christian wrote:

> On Sun, 2005-04-17 at 23:49 +0200, donald_j_axel wrote:
> > Hvis du kører med netfilter og ikke vil degradere performance,
> > så er det bedste at sætte en regel ind tidligt i kæden af regler,
> > hvor du dropper pakker fra det ip-nummer som overflower din maskine.
> 
> Eller bare: 
> 
>   # route add -net x.y.z.w reject

Interessant tanke hvis man ikke lige har netfilter i kernen. Det
kan bruges i en nødsituation, men pakkerne vil blive sendt til
default route.

man route:
[...]
       reject install  a  blocking  route,  which will force a route lookup to
              fail.  This is for example used  to  mask  out  networks  before
              using the default route.  This is NOT for firewalling.



-- 
donald_j_axel donax snabela get2net.dk -- http://d-axel.dk/


 
Home   Subscribe   Mail Archive   Index   Calendar   Search

 
 
Questions about the web-pages to <www_admin>. Last modified 2005-08-10, 22:43 CEST [an error occurred while processing this directive]
This page is maintained by [an error occurred while processing this directive]MHonArc [an error occurred while processing this directive] # [an error occurred while processing this directive] *