Uburyo bwo gufungura icyambu muri linux

Anonim

Uburyo bwo gufungura icyambu muri linux

Ihuza ryizewe ryumuyoboro no guhana amakuru hagati yabo rifitanye isano itaziguye nibyambu bifunguye. Guhuza no kwimura ibinyabiziga bikozwe ku cyambu runaka, kandi niba bifunze muri sisitemu, iyi nzira ntizigera ishoboka. Kubera iyo mpamvu, abakoresha bamwe bashishikajwe no kohereza intambwe imwe cyangwa nyinshi kugirango bashyireho imikoranire. Uyu munsi tuzerekana uburyo umurimo ukorwa muri sisitemu y'imikorere ukurikije intangiriro ya linux.

Fungura ibyambu muri linux

Nibura mubicuruzwa byinshi bisanzwe hari igikoresho cyubatswe mu miyoboro, nyamara ibisubizo akenshi ntibiremera byimazeyo igenamiterere. Amabwiriza muriyi ngingo azashingira kuri porogaramu yinyongera yitwa Siptables - igisubizo cyo guhindura ibipimo bya firewall ukoresheje uburenganzira bwa supersurs. Mu nteko zose os kuri linux, ikora kimwe, usibye ko itsinda ritandukanye ryo kwishyiriraho, ariko tuzabiganiraho hepfo.

Niba ushaka kumenya ibyambu bimaze gufungura kuri mudasobwa yawe, urashobora gukoresha ibikoresho byubatswe cyangwa byiyongera. Amabwiriza arambuye yo kubona amakuru akenewe uzasanga mubindi ngingo ukanze kumurongo ukurikira, kandi dukomeza gutera intambwe ikurikira Port.

Soma Ibikurikira: Reba ibyambu bifunguye muri Ubuntu

Intambwe ya 1: Gushiraho Iptable na Reba Amategeko

Imyitozo yingirakamaro ntabwo ibanza igice cyimikorere, niyo mpamvu igomba kuba yigenga mububiko bwemewe, hanyuma noneho ikazihiriza amategeko kandi ihindure inzira zose. Kwishyiriraho ntabwo bifata umwanya munini kandi binyura mu kamaro gasanzwe.

  1. Fungura menu hanyuma ukore "terminal". Ibi birashobora kandi gukorwa ukoresheje urufunguzo rushyushye Ctrl + Alt + T.
  2. Koresha terminal ukoresheje menu muri sisitemu yo gukora linux

  3. Mu kugabana hashingiwe kuri Debian cyangwa Ubuntu, Sudo Apt StapT yo gutangira kwishyiriraho, no mu nteko zishingiye kuri Fedora - Sudo Yum shyiramo ipt. Nyuma yo kwinjira, kanda urufunguzo rwa Enter.
  4. Itegeko ryo gutangiza Kwinjiza Impyisi Inity in Linux

  5. Koresha uburenganzira bwa superser ukoresheje ijambo ryibanga kuri konte yawe. Nyamuneka menya ko ibimenyetso mugihe cyinjijwe bidagaragara, bikorwa kugirango umutekano.
  6. Injiza ijambo ryibanga kugirango utangire gushiraho inturisi yingirakamaro muri linux binyuze muri konsole

  7. Tegereza kurangiza kwishyiriraho kandi ushobora kumenya neza ko igikoresho gikora, kureba urutonde rusanzwe rwamategeko ukoresheje Sudo Iptables -l.
  8. Reba urutonde rwamategeko nyuma yo gushiraho neza iptux

Nkuko mubibona, itegeko rya IPTable ryagaragaye mugukwirakwiza bishinzwe gucunga akamaro yizina rimwe. Na none, twibuka ko iki gikoresho gikora ku burenganzira buhebuje, ku buryo bugomba kuba kirimo Sudo prefix, hanyuma indangagaciro n'impanga zisigaye n'impaka.

Intambwe ya 2: Uruhushya rwo guhanahana amakuru

Nta cyambu kizakora mubisanzwe niba ibikorwa bibujijwe guhana amakuru kurwego rwamategeko ya Firewall. Byongeye kandi, kubura amategeko akenewe birashobora guhora gitera isura yamakosa atandukanye mugihe cyo koherezwa, bityo rero dusabana cyane ibikorwa bikurikira:

  1. Menya neza ko nta mategeko muri dosiye iboneza. Nibyiza guhita wandikisha ikipe kubakura, ariko bisa nkibi: sudo iptable -f.
  2. Gusiba amategeko adahuye mumayeri yiboneza muri linux

  3. Noneho ongeraho itegeko ryo kwinjira kuri mudasobwa yaho winjiza Sudo Iptables -injiza -i lo -j wemera umugozi.
  4. Ongeraho Itegeko ryambere ryumukoresha kuri Iptux

  5. Hafi ya itegeko rimwe - sudo iptables -Umusohoka -o lo -j wemera - ashinzwe itegeko rishya ryo kohereza amakuru.
  6. Ongeramo itegeko rya kabiri rikoresha iptimes in linux

  7. Biracyahari gusa kwemeza imikoranire isanzwe yamategeko yavuzwe haruguru kugirango seriveri ishobora kohereza paki. Kugira ngo ukore ibi, birakenewe kubuza amasano mashya, kandi abakera niba byemewe. Byakozwe binyuze muri Sudo Iptables -Umunjiza -m leta - ishyirwaho, bijyanye -j yemera.
  8. Ongeramo amategeko yanyuma ya seriveri kuri iplux

Urakoze ibipimo byavuzwe haruguru, watanze ibyo wohereje no kwakira amakuru, bizagufasha kuvugana byoroshye na seriveri cyangwa indi mudasobwa nta kibazo. Iguma gusa gufungura ibyambu imikoranire imwe izakorwa.

Intambwe ya 3: Gufungura ibyambu bisabwa

Mumaze kumenyana nihame rishya ryongewe kumiterere ihuza. Hariho impaka nyinshi zikwemerera gufungura ibyambu bimwe. Reka dusesengure ubu buryo kurugero rwibyambu bizwi ku Kubara 22 na 80.

  1. Koresha Umukororona hanyuma wandike amategeko abiri akurikira:

    Sudo iptables -injiza -p tcp --dport 22 -j Emera

    Sudo Iptables -Umutonde -p TCP --dport 80 -j Emera.

  2. Amategeko yo kohereza ibyambu muri iptux

  3. Noneho reba urutonde rwamategeko kugirango umenye neza ko ibyambu byakoreshejwe neza. Ikoreshwa kuri iri tsinda rimaze kugaragara sudo iptables -l.
  4. Reba intsinzi yibyambu byakoreshejwe muri Iptux

  5. Urashobora kuyiha isura ifatika kandi usohotse ibisobanuro byose ukoresheje impaka zinyongera, noneho umugozi uzaba nkizi: sudo iptables -nvl.
  6. Ibisobanuro birambuye kubyerekeye ibyambu byakoreshejwe muri Linux

  7. Hindura politiki mubisanzwe ukoresheje Sudo Iptables -p yinjiza kandi irashobora gutangira neza gukora hagati yizina.
  8. Koresha impinduka ku cyambu muri Iptux

Mugihe umuyobozi wa mudasobwa yamaze gukora amategeko yayo mugikoresho, yateguwe gusohora paki mugihe cyegera ingingo, kurugero, binyuze muri Sudo IptEds -Umuteguro -j Igitonyanga - -i kwinjiza - P TCP --dport 1924 -J wemere, aho 1924 ari numero yicyambu. Yongeraho ibyambu bisabwa kugeza intangiriro yumurongo, hanyuma paki ntizisubirwamo.

Reba icyambu gifunguye mugitangira urunigi rwa Iptable muri Linux

Ibikurikira, urashobora kwandikisha umugozi umwe sudo iptables -l kandi urebe neza ko byose byashyizweho neza.

Itsinda rya Port ryohereza ku ntangiriro

Noneho uzi uko ibyambu bibujijwe muri sisitemu yo gukora linux ukoresheje urugero rwinyongera yinyongera. Turagugira inama yo gukurikirana imirongo igaragara muri konsole mugihe yinjiye mumategeko, bizafasha kumenya amakosa yose mugihe kandi byihuse.

Soma byinshi