Tej zaum koj yuav xav tsis thoob Yuav ua li cas teeb tsa firewall hauv Linux?. Lub firewall yog qhov thaiv kev ruaj ntseg uas pab peb tiv thaiv peb cov ntaub ntawv los ntawm kev tswj cov tsheb khiav hauv thiab tawm ntawm peb lub network. Hauv tsab xov xwm no peb yuav kawm paub siv thiab teeb tsa cov phiaj xwm firewall xws li iptables lossis firewalld los txhawb kev ruaj ntseg ntawm peb lub Linux system. Kev teeb tsa lub firewall yuav zoo li nyuaj, tab sis tsis txhob txhawj, peb yuav piav qhia rau koj hauv txoj kev yooj yim. yooj yim thiab ncaj qha. Wb delve rau hauv lub ntiaj teb no ntxim nyiam thiab muaj txiaj ntsig Linux!
Ib kauj ruam dhau los ➡️ Yuav ua li cas teeb tsa lub firewall hauv Linux?
-
Thawj kauj ruam hauv Yuav ua li cas teeb tsa firewall hauv Linux? yog lub installation ntawm iptables cov khoom siv hluav taws xob. Ubuntu thiab Linux faib feem ntau twb muaj pob no los ntawm lub neej ntawd.
-
Nco ntsoov tias koj muaj 'iptables' ntsia. Koj tuaj yeem ua nws siv the hais kom ua sudo apt-mus nruab iptables.
-
Tom qab kev teeb tsa, koj tuaj yeem tshawb xyuas qhov version ntawm 'iptables' siv cov lus txib iptables -version.
-
Txhawm rau txheeb xyuas cov cai uas twb muaj lawm hauv firewall, siv cov lus txib sudo iptables -L.
-
Ua ntej ntxiv cov cai tshiab, nws yog qhov zoo tshaj rau thaub qab cov cai uas twb muaj lawm. Koj tuaj yeem ua nws nrog cov lus txib sudo iptables-txuag> /file/path.
-
Txhawm rau teeb tsa cov cai tshiab ntawm firewall, koj tuaj yeem siv cov lus txib iptables ua raws li cov kev xaiv sib raug thiab cov lus sib cav. Piv txwv li, txhawm rau thaiv tag nrho cov tsheb thauj mus los, koj tuaj yeem siv sudo iptables -P INPUT DROP.
-
Txhawm rau tso cai nkag mus rau qhov chaw nres nkoj tshwj xeeb, koj tuaj yeem siv sudo iptables -A INPUT -p tcp -dport [port naj npawb] -j ACCEPT.
-
Tom qab teeb tsa tag nrho cov cai, nws yog ib qho tseem ceeb kom txuag tau qhov kev hloov pauv. Koj tuaj yeem ua qhov no siv sudo iptables-txuag> /file/path.
-
Nyob rau hauv rooj plaub koj xav rov pib dua cov cai rau qhov kev teeb tsa ua ntej, koj tuaj yeem siv cov lus txib sudo iptables-restore < /file/path.
-
Thaum kawg, xyuas kom tseeb tias cov cai tseem siv tau tom qab rebooting lub system. Txhawm rau ua qhov no, koj yuav tsum nruab lub 'iptables-persistent' pob siv sudo apt-tau nruab iptables-persistent.
Q&A
1. Dab tsi yog firewall?
Lub firewall, tseem hu ua firewall, yog a kev ruaj ntseg system uas tswj thiab saib xyuas cov tsheb khiav hauv lub network, txawm tias tso cai lossis tsis lees paub kev sib txuas lus tshwj xeeb raws li cov cai tsim.
2. Vim li cas thiaj yuav tsum tau teeb tsa lub firewall hauv Linux?
Teeb tsa firewall ntawm Linux yog qhov tsim nyog tiv thaiv lub tshuab Linux tiv thaiv tsis xav tau kev hem thawj network. Ntxiv rau, nws pab ua kom kev lag luam network ruaj ntseg dua.
3. Cov cuab yeej twg kuv tuaj yeem siv los teeb tsa firewall ntawm Linux?
Txhawm rau teeb tsa firewall ntawm Linux, koj tuaj yeem siv iptables, ib qho cuab yeej zoo uas tuaj yeem nruab rau ntawm ntau lub Linux faib.
4. Kuv yuav nruab iptables ntawm Linux li cas?
1. Qhib lub davhlau ya nyob twg.
2. Ntaus cov lus txib nram qab no : sudo apt-mus nruab iptables
3. Thaum nug, sau koj tus password.
4. Tos rau lub installation kom tiav.
5. Kuv tuaj yeem tshawb xyuas seb iptables puas raug teeb tsa?
Txhawm rau txheeb xyuas yog tias iptables raug teeb tsa, qhib lub davhlau ya nyob twg thiab khiav cov lus txib: sudo iptables -v. Yog hais tias nws rov qab cov ntaub ntawv hais txog lub iptables version, ces nws yog raug ntsia.
6. Kuv tuaj yeem teeb tsa cov cai hauv av hauv iptables li cas?
1. Qhib lub davhlau ya nyob twg.
2. Siv cov lus txib hauv qab no ntxiv ib txoj cai: sudo iptables -A INPUT -p tcp –dport 22 -j ACCEPT. Txoj cai no tso cai rau tag nrho cov tsheb thauj mus los rau qhov chaw nres nkoj 22 ntawm TCP.
3. Kom txuag tau txoj cai, ntaus: sudo iptables-txuag.
7. Kuv tuaj yeem thaiv tus IP chaw nyob nrog iptables li cas?
Txhawm rau thaiv qhov chaw nyob IP tshwj xeeb, siv cov lus txib: sudo iptables -A INPUT -s xxx.xxx.xxx.xxx -j DROP, qhov twg xxx.xxx.xxx.xxx yog qhov tshwj xeeb IP chaw koj xav thaiv.
8. Kuv tuaj yeem tso cai tsheb mus rau qhov chaw nres nkoj tshwj xeeb nrog iptables li cas?
Kom tso cai rau kev khiav mus rau ib qho chaw nres nkoj, siv cov lus txib: sudo iptables -A INPUT -p tcp -dport xxx -j ACCEPT, qhov twg xxx yog tus naj npawb ntawm qhov chaw nres nkoj tshwj xeeb uas koj xav qhib.
9. Kuv yuav rov pib dua lossis rov pib dua cov cai firewall nrog iptables li cas?
Txhawm rau rov pib dua koj cov cai firewall nrog iptables, tsuas yog siv cov lus txib: sudo iptables -F. Qhov no yuav tshem tawm tag nrho cov cai uas twb muaj lawm.
10. Kuv yuav ua li cas kom ntseeg tau tias kuv cov cai firewall tseem nyob tom qab kuv reboot kuv Linux system?
Txhawm rau txuag koj cov cai mus tas li, txawm tias tom qab rov pib dua, koj yuav tsum nruab iptables-persistent pob siv cov lus txib: sudo apt-mus nruab iptables-persistent. Tom qab ua tiav qhov kev teeb tsa, cov cai yuav raug cawm dim.
Kuv yog Sebastián Vidal, tus kws kho tshuab computer mob siab rau kev siv tshuab thiab DIY. Tsis tas li ntawd, kuv yog tus tsim tecnobits.com, qhov twg kuv qhia cov lus qhia ua kom siv thev naus laus zis ntau dua thiab nkag siab rau txhua tus.