Freesco, NND, CDN, EOS

http://www.freesco.pl
Dzisiaj jest niedziela, 22 czerwca 2025, 17:49

Strefa czasowa UTC+2godz.




Nowy temat Odpowiedz w temacie  [ Posty: 42 ]  Przejdź na stronę Poprzednia  1, 2, 3
Autor Wiadomość
 Tytuł:
Post: poniedziałek, 23 stycznia 2006, 01:13 
no niestety nic sie nie zmienilo. udp otwarte a tcp firewalled. juz kombinowalem na rozne sposoby. zrobilem nawet czasowke ze blokada trwa 1 min ale tez to nic nie dalo. to jest moj iptables.rules
    # Generated by iptables-save v1.3.4 on Sun Jan 22 07:54:46 2006
    *filter
    :INPUT DROP [1:1472]
    :FORWARD DROP [72:24737]
    :OUTPUT ACCEPT [20:4428]
    -A INPUT -i lo -j ACCEPT
    -A INPUT -p tcp -m multiport --dports 135,445 -j DROP
    -A INPUT -s 192.168.0.1 -j ACCEPT
    -A INPUT -s 192.168.0.6 -j ACCEPT
    -A INPUT -s 192.168.0.8 -j ACCEPT
    -A INPUT -s 192.168.0.9 -j ACCEPT
    -A INPUT -s 192.168.0.10 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 80 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 443 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 20 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 21 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 110 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 25 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 22 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 143 -j ACCEPT
    -A INPUT -i eth0 -p udp -m udp --dport 143 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 993 -j ACCEPT
    -A INPUT -i eth0 -p udp -m udp --dport 993 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 113 -j ACCEPT
    -A INPUT -i eth0 -p tcp -m tcp --dport 1080 -j ACCEPT
    -A INPUT -p icmp -m icmp --icmp-type 8 -m limit --limit 1/sec -j ACCEPT
    -A INPUT -s 192.168.0.1 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.2 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.3 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.4 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.5 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.6 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.7 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.8 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.9 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.10 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.11 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.12 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.13 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.14 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.15 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.16 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.17 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.18 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.19 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.20 -i ! eth0 -j ACCEPT
    -A INPUT -s 192.168.0.21 -i ! eth0 -j ACCEPT
    -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
    -A FORWARD -o lo -j ACCEPT
    -A FORWARD -p tcp -m multiport --dports 135,445 -j DROP
    -A FORWARD -s 192.168.0.6 -p tcp -m time --timestart 14:00 --timestop 14:01 -m ipp2p --kazaa --gnu --edk --dc --bit --apple --soul --winmx --ares -j DROP
    -A FORWARD -d 192.168.0.6 -p tcp -m time --timestart 14:00 --timestop 14:01 -m ipp2p --kazaa --gnu --edk --dc --bit --apple --soul --winmx --ares -j DROP
    -A FORWARD -d 192.168.0.6 -p tcp -m tcp --dport 6346 -j ACCEPT
    -A FORWARD -s 192.168.0.6 -p tcp -m tcp --sport 6346 -j ACCEPT
    -A FORWARD -d 192.168.0.6 -p udp -m udp --dport 6346 -j ACCEPT
    -A FORWARD -s 192.168.0.6 -p udp -m udp --sport 6346 -j ACCEPT
    -A FORWARD -s 192.168.0.1 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.2 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.3 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.4 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.5 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.6 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.7 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.8 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.9 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.10 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.11 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.12 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.13 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.14 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.15 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.16 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.17 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.18 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.19 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.20 -i ! eth0 -j ACCEPT
    -A FORWARD -s 192.168.0.21 -i ! eth0 -j ACCEPT
    -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
    COMMIT
    # Completed on Sun Jan 22 07:54:46 2006
    # Generated by iptables-save v1.3.4 on Sun Jan 22 07:54:46 2006
    *mangle
    :PREROUTING ACCEPT [10953:6022398]
    :INPUT ACCEPT [2122:1901856]
    :FORWARD ACCEPT [9215:4130238]
    :OUTPUT ACCEPT [1640:195544]
    :POSTROUTING ACCEPT [10748:4299683]
    :niceshaper_dl - [0:0]
    :niceshaper_ul - [0:0]
    -A PREROUTING -p tcp -j CONNMARK --restore-mark
    -A PREROUTING -p tcp -m mark ! --mark 0x0 -j ACCEPT
    -A PREROUTING -m ipp2p --ipp2p -j MARK --set-mark 0x999
    -A PREROUTING -p tcp -m mark --mark 0x999 -j CONNMARK --save-mark
    -A PREROUTING -s 192.168.0.0/255.255.255.0 -i eth1 -j niceshaper_ul
    -A INPUT -d 192.168.2.1 -i eth0 -j niceshaper_dl
    -A OUTPUT -s 192.168.2.1 -o eth0 -j niceshaper_ul
    -A POSTROUTING -d 192.168.0.0/255.255.255.0 -o eth1 -j niceshaper_dl
    -A POSTROUTING -o eth0 -m mark --mark 0x999 -j IMQ --todev 2
    -A POSTROUTING -o eth1 -m mark --mark 0x999 -j IMQ --todev 3
    -A niceshaper_dl -s 192.168.0.3 -d 192.168.0.0/255.255.255.0 -o eth1 -j RETURN
    -A niceshaper_dl -s 192.168.2.1 -d 192.168.0.0/255.255.255.0 -o eth1 -j RETURN
    -A niceshaper_dl
    -A niceshaper_dl -d 192.168.2.1 -i eth0 -j RETURN
    -A niceshaper_dl -d 192.168.0.1 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.2 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.6 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.8 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.9 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.10 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.11 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.12 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.13 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.14 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.15 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.16 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.17 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.18 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.19 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.20 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.21 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.4 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.5 -o eth1 -j IMQ --todev 1
    -A niceshaper_dl -d 192.168.0.7 -o eth1 -j IMQ --todev 1
    -A niceshaper_ul -s 192.168.0.0/255.255.255.0 -d 192.168.0.3 -i eth1 -j RETURN
    -A niceshaper_ul -s 192.168.0.0/255.255.255.0 -d 192.168.2.1 -i eth1 -j RETURN
    -A niceshaper_ul
    -A niceshaper_ul -s 192.168.2.1 -o eth0 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.1 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.2 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.6 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.8 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.9 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.10 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.11 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.12 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.13 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.14 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.15 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.16 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.17 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.18 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.19 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.20 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.21 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.4 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.5 -i eth1 -j IMQ --todev 0
    -A niceshaper_ul -s 192.168.0.7 -i eth1 -j IMQ --todev 0
    COMMIT
    # Completed on Sun Jan 22 07:54:46 2006
    # Generated by iptables-save v1.3.4 on Sun Jan 22 07:54:46 2006
    *nat
    :PREROUTING ACCEPT [345:18827]
    :POSTROUTING ACCEPT [19:1960]
    :OUTPUT ACCEPT [3:365]
    -A PREROUTING -i eth1 -p tcp -m tcp --dport 80 -j REDIRECT --to-ports 3030
    -A PREROUTING -i eth0 -p tcp -m tcp --dport 6346 -j DNAT --to-destination 192.168.0.6
    -A PREROUTING -i eth0 -p udp -m udp --dport 6346 -j DNAT --to-destination 192.168.0.6
    -A POSTROUTING -s 192.168.0.1 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.2 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.3 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.4 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.5 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.6 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.7 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.8 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.9 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.10 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.11 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.12 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.13 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.14 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.15 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.16 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.17 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.18 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.19 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.20 -o eth0 -j MASQUERADE
    -A POSTROUTING -s 192.168.0.21 -o eth0 -j MASQUERADE
    COMMIT
    # Completed on Sun Jan 22 07:54:46 2006


Na górę
  
 
 Tytuł:
Post: środa, 25 stycznia 2006, 14:31 
hmm... widze ze z odblokowaniem usera jest problem :( jest ktos kto moze pomoc ??


Na górę
  
 
Wyświetl posty nie starsze niż:  Sortuj wg  
Nowy temat Odpowiedz w temacie  [ Posty: 42 ]  Przejdź na stronę Poprzednia  1, 2, 3

Strefa czasowa UTC+2godz.


Kto jest online

Użytkownicy przeglądający to forum: Obecnie na forum nie ma żadnego zarejestrowanego użytkownika i 11 gości


Nie możesz tworzyć nowych tematów
Nie możesz odpowiadać w tematach
Nie możesz zmieniać swoich postów
Nie możesz usuwać swoich postów
Nie możesz dodawać załączników

Szukaj:
Przejdź do:  
Technologię dostarcza phpBB® Forum Software © phpBB Group
Hosting: Compus-Net
RobertKonik.pl