Ungayivula kanjani imbobo e-CentOS 7

Anonim

Ungayivula kanjani imbobo e-CentOS 7

Cishe bonke abasebenzisi bokusatshalaliswa kwe-Centros 7 bangafakwa ohlelweni, ngokusebenza okulungile ofuna ukuvula amachweba ezinombolo ezithile. Lokhu kuyadingeka ukuqinisekisa ukuxhumana okujwayelekile nama-node kanye nokushintshana kolwazi okuphephile. Umsebenzi wenziwa ngokushintsha imithetho ye-firewall. Vele, umsebenzisi ngamunye angasebenzisa izinhlobo eziningi zomlilo, kepha indinganiso izikhalazo. Kusesimweni sakhe sokuthi sinikele ngamachweba avulekile, kulandela imiyalo elandelayo.

Amachweba avulekile e-CentOS 7

Amachweba okuvula - Umsebenzi ulula, ngoba kulokhu kufanele ufake kuphela imiyalo embalwa ku-console. Kodwa-ke, uma ekuqaleni ungenzi ezinye izilungiselelo nge-firewall noma usebenzise ithuluzi leqembu lesithathu, kuzofanela ukwengeza amapharamitha abalulekile. Ngakho-ke, sahlukanisa i-athikili yethu ezigabeni ukuze abasebenzisi be-novice kwaba lula ukubhekana nesinyathelo ngasinye, futhi manje ake siqale ngokufakwa kwama-IPTAbles kuma-CentOS 7.

Isinyathelo 1: Ukufakwa kwesibuyekezo

Njengoba kushiwo ngenhla, ama-Eptables e-CentOS 7 asebenza njenge-firewall ezenzakalelayo. Uma ngesandla azikho izinguquko ezenziwe, ungakwazi ukweqa le nto ngokugcina esiteji sokugcina ngokufakwa kwe-Firewall Utility. Uma udinga ukuqinisekisa izibuyekezo noma ukufaka kabusha leli thuluzi, sikucebisa ukuthi usebenzise le ncwadi elandelayo.

  1. Zonke izenzo ezichazwe namuhla zizokwenziwa ku- "terminal", ngakho-ke yonke into iqala ngokwethulwa kwayo. Sebenzisa ukhiye oshisayo we-CTRL + ALT + T noma isithonjana esingezwe esigabeni se- "Favorites" kumenyu yohlelo lokusebenza.
  2. Ukuqala i-terminal ukufaka ama-IpTAbles e-CentOS 7 lapho uvula amachweba

  3. Lapha faka i-sudo yum Faka i-Command EpTables, bese uqhafaza ukhiye we-ENTER.
  4. Faka umyalo wokufaka i-IPTAbles Utility in CentOS 7 ngaphambi kokuvula amachweba

  5. Ukuqinisekisa lo myalo, uzodinga ukucacisa iphasiwedi ye-superuser. Cabanga ngokuthi ngalolu hlobo lokubhala, izinhlamvu ezifakiwe aziboniswanga.
  6. Ukuqinisekiswa kokufakwa kwe-IPTAble in CentOS 7 ngaphambi kokuvula amachweba

  7. Uzokwaziswa ukuthi ukufakwa noma ukuvuselelwa kwenziwa ngempumelelo. Uma inguqulo yakamuva ye iptables yengezwe ohlelweni lokusebenza, inguqulo lokugcina IPTABLES sengezwe, string "enze lutho" kuvela esibukweni.
  8. Imininingwane mayelana nokufakelwa okuphumelelayo kokufakwa kwama-Iptility ePentOS 7

  9. Qedela lesi sinyathelo nge-Sudo YUM -Y Faka umyalo we-IpTable-Services. Lokhu kuzokwethula ukufakwa kwezinsizakalo ezidingekayo.
  10. Iqembu ukufaka izinsiza ezisizayo zama-IPTAbles kuma-CentOS 7

  11. Ungaya isinyathelo esilandelayo uma umlayezo luvele esibukweni phezu kwalokho ngempumelelo izingxenye.
  12. Ukufakwa okuphumelelayo kwezinsiza ezisizayo zama-IPTS ku-CentOS 7

Isinyathelo 2: Setha kabusha imithetho ejwayelekile ye-firewall

Uma ama-Iptable noma umsebenzisi engalungiswa ngaphambi komphathi wohlelo noma umsebenzisi, izilungiselelo ezijwayelekile kufanele zilahlwe ukuthi esikhathini esizayo kwakungekho zinkinga ngokuhambisana kwemithetho. Ngokwengeziwe, kuzodingeka ukuthi kucaciswe imithetho ejwayelekile, kuqinisekiswe ukunemba kokuqaliswa kwamakhompiyutha angenayo naphumayo. Konke lokhu kwenzeka kanjena:

  1. Faka i-IPTAbles -L -L -V -V-AM-Command ku-Console ukubuka uhlu lwamapharamitha wamanje.
  2. Umyalo wokubuka imithetho yokusetshenziswa okujwayelekile ye-Iplables e-CentOS 7

  3. Uma zingafani, kuzofanele usetha kabusha futhi uhlele ngesandla.
  4. Ukubonisa Imithetho Ejwayelekile Izinsizakusebenza ku-CentOS 7

  5. Ukususa imithetho ekhona kwenziwa kusetshenziswa umugqa owodwa we-sudo eptables -f.
  6. Umyalo wokusetha kabusha yonke imithetho yomyalo we-IPTAbles e-CentOS 7

  7. Okulandelayo, vumela yonke idatha yeseva efakiwe, ukufaka i-Sudo Iptables -Ukufaka -I-KO -J kwamukela.
  8. Iqembu ukudala imithetho yama-IPTAble angenayo e-CentOS 7

  9. Ngokuxhumeka okuphumayo, cishe umyalo ofanayo uyasebenza: sudo iptables - okuphumayo -u lo-j wamukela.
  10. Umyalo wokwenza imithetho yama-imeyili aphumayo e-CentOS 7

  11. Kunconywa ukukhawulela ukuxhumeka okusha futhi kuvume okukhona ukuqinisekisa ukuphepha nokusungula umsebenzi wemithetho ebekiwe ngaphambili. Kwenzeka ngokusebenzisa i-sudo iptables -Ukufaka -M -M Isimo - esisunguliwe, esihlobene - nokwamukela.
  12. Iqembu ukuqinisekisa ukuphepha kwama-Iptables e-CentOS 7

Zonke ezinye izilungiselelo zesisetshenziswa esithathwayo zenziwa ngesandla, kufaka phakathi amachweba okuqala. Sizokhuluma ngesihloko sokugcina kulezi zinyathelo ezilandelayo, futhi ukucushwa okunwetshiwe akufakiwe kuhlaka lwezinto zanamuhla. Esikhundleni salokho, sincoma ukuthi uzijwayeze ngezinto zokuqeqesha ezikhethekile ngalesi sihloko, usebenzisa isixhumanisi esingezansi.

Funda kabanzi: Ukubeka ama-Iptables kuma-CentOS 7

Isinyathelo 3: Khubaza i-firewalld

Kulesi sinyathelo, kufanele ubheke abasebenzisi abafake ama-firewalld ngaphambilini noma bengezwe ngokuzenzakalelayo. Lapho usetha amachweba nge-iPPTAbles, leli thuluzi lingaphazamisa ukwenziwa okulungile kwemithetho, ngakho-ke kuzodingeka ukuthi kube yinto yeacisha.

  1. Okokuqala, yeka insizakalo nge-Sudo Systemctl Stop Firewalld.
  2. Iqembu ukukhubaza umvikeli lapho setha ama-Iptables e-CentOS 7

  3. Okulandelayo, yenza ukuvalwa okuphelele ngokusebenzisa i-Sudo Systemctl khubaza umyalo we-firewalld.
  4. Iqembu labavikeli be-deviltivation lapho setha ama-Iptables e-CentOS 7

  5. Uzothola imininingwane yokuthi izixhumanisi ezingokomfanekiso zisusiwe, ngakho-ke, i-firewalld ibingakaze ivele kuleli phuzu.
  6. Khubaza isaziso se-firewalld esiphumelelayo lapho usetha ama-Iptables e-CentOS 7

Uma ufuna ukususa ngesandla amafolda agcina izilungiselelo ze-FireWalkd ngokweqa imiyalo engenhla, faka imigqa engezansi ku-terminal in tespusteres bese uyisebenzisa.

rm '/etc/systemd/system/dbus-org.fedoraproject.firewalld1.service'

rm '/etc/systemd/system/basic.target.Bants/Firewalld.service'

Esikhathini esizayo, noma yimuphi umsebenzisi angadinga ukwenza kusebenze futhi ahlelwe okwengeziwe kwe-firewalld, ikakhulukazi lapho kufanele usebenze namaseva ahlukahlukene we-web kanye nezinsizakalo. Siphakamisa ukwenza lokhu kusetshenziswa le ncwadi elandelayo.

Funda kabanzi: Lungiselela i-Firewall e-CentOS 7

Isinyathelo 4: Ukuvula amachweba nge-IPTAbles

Isikhathi sokwenza isenzo esiyisisekelo, esinikelwe esihlokweni sanamuhla. Ngenhla, senze ngokuphelele wonke umsebenzi wokulungiselela amachweba avulekile manje ama-centros 7. Manje akumele kube nezinkinga ngalokhu, ukuze ukwazi ukufaka imiyalo elandelayo.

  1. Empeleni, engeza i-firewall ku-autoload, ukuze ungayisebenzi njalo ngesandla. Lokhu kuzosiza i-Sudo Systemct inika amandla umyalo we-Ipctable.
  2. Umyalo wokufaka ama-Iptables kuma-CentOS 7 kuya ku-Autoload

  3. Uzokwaziswa ngokwakha isixhumanisi esingokomfanekiso.
  4. Imininingwane mayelana nokungezwa okuphumelelayo kwama-IPTS ku-CentOS 7 kuya ku-Autoload

  5. Yenza kusebenze amalungelo aqhubekayo we-superuser ngokufaka i-su ukuze ku-command ngayinye yalesi sikhathi sesikhathi esibulalayo akudingekile ukuthi athi sudo.
  6. Usebenzisa umyalo wamalungelo aphezulu we-superuser lapho usetha

  7. Qinisekisa lesi senzo ngokubhala iphasiwedi yakho.
  8. Ukufaka iphasiwedi ukuze kusebenze amalungelo aphezulu we-superuser lapho usetha

  9. Vula imbobo ngaphezulu kwe-IPTTS -I -I -Ifashini -P TCP --dPort 22 -M Isimo --SState New -J ukwamukela inani elidingekayo.
  10. Ukufaka umyalo wokuvula imbobo nge-iPINTS ku-CentOS 7

  11. Ungavula itheku elilandelayo ngokushesha, ngokwesibonelo, ngenombolo 25 (iseva ye-SMTP). Ukuze wenze lokhu, faka i-IPTGS -I -I -Ifashini -P TCP --dPort 25 -M Isifundazwe - I-New -J yamukela.
  12. Umyalo wesibili wokuvula amachweba nge-iPPTAbles e-CentOS 7

  13. Gcina zonke izinguquko ngokufaka i-Service Iptable Gcina intambo.
  14. Ukulondolozwa Kwezinguquko Lapho Kuvulwa Amachweba Nge-iPPTAbles in CentOS 7

  15. Uzokwaziswa ukuthi ukucushwa kusetshenziswe ngempumelelo.
  16. Uphumelele ugcine izilungiselelo ze-IPTAble informable in CentOS 7

  17. Qala kabusha i-firewall ukuze zonke izinguquko zingenele amandla. Lokhu kwenziwa ngohlelo lwe-Systemctl restables
  18. Qala kabusha ama-Iptables e-CentOS 7 ukufaka izinguquko

  19. Ekugcineni, siyanikela ukusebenzisa i-sudo ipt -nvl ukuhlola wonke amachweba avulekile.
  20. Bheka ama-Iptables kuma-CentOS 7 ngemuva kokuvula amachweba

Kulesi sihloko, ufunde konke mayelana nokuvula amachweba e-CentOS 7. Njengoba ubona, ngeke kuthathe isikhathi esiningi, futhi zonke izinguquko zizosetshenziswa ngokushesha ngemuva kokuqalisa kabusha izinsizakalo. Sebenzisa imiyalo okuxoxwe ngayo ngenhla ngokushintsha izinombolo zamachweba kuphela ukuze konke kube ngempumelelo.

Funda kabanzi