Ihuza ryizewe ryumuyoboro no guhana amakuru hagati yabo rifitanye isano itaziguye nibyambu bifunguye. Guhuza no kwimura ibinyabiziga bikozwe ku cyambu runaka, kandi niba bifunze muri sisitemu, iyi nzira ntizigera ishoboka. Kubera iyo mpamvu, abakoresha bamwe bashishikajwe no kohereza intambwe imwe cyangwa nyinshi kugirango bashyireho imikoranire. Uyu munsi tuzerekana uburyo umurimo ukorwa muri sisitemu y'imikorere ukurikije intangiriro ya linux.
Fungura ibyambu muri linux
Nibura mubicuruzwa byinshi bisanzwe hari igikoresho cyubatswe mu miyoboro, nyamara ibisubizo akenshi ntibiremera byimazeyo igenamiterere. Amabwiriza muriyi ngingo azashingira kuri porogaramu yinyongera yitwa Siptables - igisubizo cyo guhindura ibipimo bya firewall ukoresheje uburenganzira bwa supersurs. Mu nteko zose os kuri linux, ikora kimwe, usibye ko itsinda ritandukanye ryo kwishyiriraho, ariko tuzabiganiraho hepfo.Niba ushaka kumenya ibyambu bimaze gufungura kuri mudasobwa yawe, urashobora gukoresha ibikoresho byubatswe cyangwa byiyongera. Amabwiriza arambuye yo kubona amakuru akenewe uzasanga mubindi ngingo ukanze kumurongo ukurikira, kandi dukomeza gutera intambwe ikurikira Port.
Soma Ibikurikira: Reba ibyambu bifunguye muri Ubuntu
Intambwe ya 1: Gushiraho Iptable na Reba Amategeko
Imyitozo yingirakamaro ntabwo ibanza igice cyimikorere, niyo mpamvu igomba kuba yigenga mububiko bwemewe, hanyuma noneho ikazihiriza amategeko kandi ihindure inzira zose. Kwishyiriraho ntabwo bifata umwanya munini kandi binyura mu kamaro gasanzwe.
- Fungura menu hanyuma ukore "terminal". Ibi birashobora kandi gukorwa ukoresheje urufunguzo rushyushye Ctrl + Alt + T.
- Mu kugabana hashingiwe kuri Debian cyangwa Ubuntu, Sudo Apt StapT yo gutangira kwishyiriraho, no mu nteko zishingiye kuri Fedora - Sudo Yum shyiramo ipt. Nyuma yo kwinjira, kanda urufunguzo rwa Enter.
- Koresha uburenganzira bwa superser ukoresheje ijambo ryibanga kuri konte yawe. Nyamuneka menya ko ibimenyetso mugihe cyinjijwe bidagaragara, bikorwa kugirango umutekano.
- Tegereza kurangiza kwishyiriraho kandi ushobora kumenya neza ko igikoresho gikora, kureba urutonde rusanzwe rwamategeko ukoresheje Sudo Iptables -l.
Nkuko mubibona, itegeko rya IPTable ryagaragaye mugukwirakwiza bishinzwe gucunga akamaro yizina rimwe. Na none, twibuka ko iki gikoresho gikora ku burenganzira buhebuje, ku buryo bugomba kuba kirimo Sudo prefix, hanyuma indangagaciro n'impanga zisigaye n'impaka.
Intambwe ya 2: Uruhushya rwo guhanahana amakuru
Nta cyambu kizakora mubisanzwe niba ibikorwa bibujijwe guhana amakuru kurwego rwamategeko ya Firewall. Byongeye kandi, kubura amategeko akenewe birashobora guhora gitera isura yamakosa atandukanye mugihe cyo koherezwa, bityo rero dusabana cyane ibikorwa bikurikira:
- Menya neza ko nta mategeko muri dosiye iboneza. Nibyiza guhita wandikisha ikipe kubakura, ariko bisa nkibi: sudo iptable -f.
- Noneho ongeraho itegeko ryo kwinjira kuri mudasobwa yaho winjiza Sudo Iptables -injiza -i lo -j wemera umugozi.
- Hafi ya itegeko rimwe - sudo iptables -Umusohoka -o lo -j wemera - ashinzwe itegeko rishya ryo kohereza amakuru.
- Biracyahari gusa kwemeza imikoranire isanzwe yamategeko yavuzwe haruguru kugirango seriveri ishobora kohereza paki. Kugira ngo ukore ibi, birakenewe kubuza amasano mashya, kandi abakera niba byemewe. Byakozwe binyuze muri Sudo Iptables -Umunjiza -m leta - ishyirwaho, bijyanye -j yemera.
Urakoze ibipimo byavuzwe haruguru, watanze ibyo wohereje no kwakira amakuru, bizagufasha kuvugana byoroshye na seriveri cyangwa indi mudasobwa nta kibazo. Iguma gusa gufungura ibyambu imikoranire imwe izakorwa.
Intambwe ya 3: Gufungura ibyambu bisabwa
Mumaze kumenyana nihame rishya ryongewe kumiterere ihuza. Hariho impaka nyinshi zikwemerera gufungura ibyambu bimwe. Reka dusesengure ubu buryo kurugero rwibyambu bizwi ku Kubara 22 na 80.
- Koresha Umukororona hanyuma wandike amategeko abiri akurikira:
Sudo iptables -injiza -p tcp --dport 22 -j Emera
Sudo Iptables -Umutonde -p TCP --dport 80 -j Emera.
- Noneho reba urutonde rwamategeko kugirango umenye neza ko ibyambu byakoreshejwe neza. Ikoreshwa kuri iri tsinda rimaze kugaragara sudo iptables -l.
- Urashobora kuyiha isura ifatika kandi usohotse ibisobanuro byose ukoresheje impaka zinyongera, noneho umugozi uzaba nkizi: sudo iptables -nvl.
- Hindura politiki mubisanzwe ukoresheje Sudo Iptables -p yinjiza kandi irashobora gutangira neza gukora hagati yizina.
Mugihe umuyobozi wa mudasobwa yamaze gukora amategeko yayo mugikoresho, yateguwe gusohora paki mugihe cyegera ingingo, kurugero, binyuze muri Sudo IptEds -Umuteguro -j Igitonyanga - -i kwinjiza - P TCP --dport 1924 -J wemere, aho 1924 ari numero yicyambu. Yongeraho ibyambu bisabwa kugeza intangiriro yumurongo, hanyuma paki ntizisubirwamo.
Ibikurikira, urashobora kwandikisha umugozi umwe sudo iptables -l kandi urebe neza ko byose byashyizweho neza.
Noneho uzi uko ibyambu bibujijwe muri sisitemu yo gukora linux ukoresheje urugero rwinyongera yinyongera. Turagugira inama yo gukurikirana imirongo igaragara muri konsole mugihe yinjiye mumategeko, bizafasha kumenya amakosa yose mugihe kandi byihuse.