<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/css" href="./clientscript/vbulletin_css/rsstyle.css"?>

<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
	<channel>
		<title>LinuxSir.Org - Linux 系统及网络安全讨论专版</title>
		<link>http://www.linuxsir.org/bbs</link>
		<description>Linux 系统及网络安全讨论，欢迎弟兄们加入［实验田版］</description>
		<language>zh</language>
		<lastBuildDate>Fri, 10 Sep 2010 17:21:18 GMT</lastBuildDate>
		<generator>vBulletin</generator>
		<ttl>60</ttl>
		<image>
			<url>http://www.linuxsir.org/bbs/images/misc/rss.jpg</url>
			<title>LinuxSir.Org - Linux 系统及网络安全讨论专版</title>
			<link>http://www.linuxsir.org/bbs</link>
		</image>
		<item>
			<title>iptables 的问题 高手们进来帮帮忙回回贴(末解决的问题)</title>
			<link>http://www.linuxsir.org/bbs/showthread.php?t=372113&amp;goto=newpost</link>
			<pubDate>Fri, 10 Sep 2010 06:45:43 GMT</pubDate>
			<description>限制连接数为2 目地为让31414 这个端口 不限连接数


iptables -N P2P
iptables -A FORWARD -p ALL -m ipp2p --ipp2p -j P2P
iptables -A P2P -j DROP
iptables -I P2P -p tcp -i $LAN -m connlimit --connlimit-above 2 -j RETURN

试过:后面加上
iptables -I P2P -d 192.168.0.0/23 -j RETURN

但这只是所有IP不限制，怎么设不限制端口。

各种老大帮帮忙。</description>
			<content:encoded><![CDATA[<div>限制连接数为2 目地为让31414 这个端口 不限连接数<br />
<br />
<br />
iptables -N P2P<br />
iptables -A FORWARD -p ALL -m ipp2p --ipp2p -j P2P<br />
iptables -A P2P -j DROP<br />
iptables -I P2P -p tcp -i $LAN -m connlimit --connlimit-above 2 -j RETURN<br />
<br />
试过:后面加上<br />
iptables -I P2P -d 192.168.0.0/23 -j RETURN<br />
<br />
但这只是所有IP不限制，怎么设不限制端口。<br />
<br />
各种老大帮帮忙。</div>

]]></content:encoded>
			<category domain="http://www.linuxsir.org/bbs/forumdisplay.php?f=63">Linux 系统及网络安全讨论专版</category>
			<dc:creator>maminlong</dc:creator>
			<guid isPermaLink="true">http://www.linuxsir.org/bbs/showthread.php?t=372113</guid>
		</item>
		<item>
			<title>iftop 无法执行的问题</title>
			<link>http://www.linuxsir.org/bbs/showthread.php?t=372104&amp;goto=newpost</link>
			<pubDate>Thu, 09 Sep 2010 10:42:23 GMT</pubDate>
			<description><![CDATA[各位老大，我在完整的centos系统下安装完iftop后可以正常执行，但是我将iftop移植到ramdisk上后输入iftop -i eth0 后就停在如下画面下，不能出现流量画面，请各位老大帮帮忙


# iftop -i eth0
interface: eth0
IP address is: 192.168.0.1
MAC address is: 00:10:5a:77:04:11


附上LSOF的结果

完整系统上的

[root@localhost ~]# lsof -p 16950
COMMAND   PID USER   FD   TYPE DEVICE    SIZE    NODE NAME
iftop   16950 root  cwd    DIR  254,0   12288  425569 /root
iftop   16950 root  rtd    DIR  254,0    4096       2 /
iftop   16950 root  txt    REG  254,0   55551 4747539 /usr/sbin/iftop
iftop   16950 root  mem    REG  254,0  125736 1309444 /lib/ld-2.5.so
iftop   16950 root  mem    REG  254,0  168544 2879018 /usr/lib/libpcap.so.0.9.4
iftop   16950 root  mem    REG  254,0   76400 3079364 /lib/libresolv-2.5.so
iftop   16950 root  mem    REG  254,0  297464 3472515 /usr/lib/libncurses.so.5.5
iftop   16950 root  mem    REG  254,0 1611564 1309445 /lib/libc-2.5.so
iftop   16950 root  mem    REG  254,0  208352 3079358 /lib/libm-2.5.so
iftop   16950 root  mem    REG  254,0   16428 1309446 /lib/libdl-2.5.so
iftop   16950 root  mem    REG  254,0  129716 1309447 /lib/libpthread-2.5.so
iftop   16950 root  mem    REG  254,0   46680 3077224 /lib/libnss_files-2.5.so
iftop   16950 root  mem    REG  254,0   21876 3077222 /lib/libnss_dns-2.5.so
iftop   16950 root    0u   CHR    4,2             206 /dev/tty2
iftop   16950 root    1u   CHR    4,2             206 /dev/tty2
iftop   16950 root    2u   CHR    4,2             206 /dev/tty2
iftop   16950 root    3r   REG  254,0     187 3339085 /etc/hosts
iftop   16950 root    4u  sock    0,4           28786 can't identify protocol
iftop   16950 root    6r   REG  254,0  362031 3339109 /etc/services

ramdisk上的
# lsof -p 2929
COMMAND  PID USER   FD   TYPE DEVICE    SIZE  NODE NAME
iftop   2929 root  cwd    DIR    1,0    1024 30721 /root
iftop   2929 root  rtd    DIR    1,0    1024     2 /
iftop   2929 root  txt    REG    1,0   55551 12391 /usr/bin/iftop
iftop   2929 root  mem    REG    1,0  168544 16412 /usr/lib/libpcap.so.0.9.4
iftop   2929 root  mem    REG    1,0  297464 39026 /usr/lib/libncurses.so.5
iftop   2929 root  mem    REG    1,0  129716 16408 /usr/lib/libpthread.so.0
iftop   2929 root  mem    REG    1,0  116356  6202 /lib/ld-linux.so.2
iftop   2929 root  mem    REG    1,0 1441888  6155 /lib/libc.so.6
iftop   2929 root  mem    REG    1,0   16480  2184 /lib/libdl.so.2
iftop   2929 root  mem    REG    1,0  176660  6199 /lib/libm.so.6
iftop   2929 root  mem    REG    1,0   43404  6196 /lib/libnss_files.so.2
iftop   2929 root    0u   CHR  136,1             3 /dev/pts/1
iftop   2929 root    1u   CHR  136,1             3 /dev/pts/1
iftop   2929 root    2u   CHR  136,1             3 /dev/pts/1
iftop   2929 root    3u  sock    0,4          5914 can't identify protocol

为什么在ramdisk下没有调用 /lib/libresolv-2.5.so 谢谢]]></description>
			<content:encoded><![CDATA[<div>各位老大，我在完整的centos系统下安装完iftop后可以正常执行，但是我将iftop移植到ramdisk上后输入iftop -i eth0 后就停在如下画面下，不能出现流量画面，请各位老大帮帮忙<br />
<br />
<br />
# iftop -i eth0<br />
interface: eth0<br />
IP address is: 192.168.0.1<br />
MAC address is: 00:10:5a:77:04:11<br />
<br />
<br />
附上LSOF的结果<br />
<br />
完整系统上的<br />
<br />
[root@localhost ~]# lsof -p 16950<br />
COMMAND   PID USER   FD   TYPE DEVICE    SIZE    NODE NAME<br />
iftop   16950 root  cwd    DIR  254,0   12288  425569 /root<br />
iftop   16950 root  rtd    DIR  254,0    4096       2 /<br />
iftop   16950 root  txt    REG  254,0   55551 4747539 /usr/sbin/iftop<br />
iftop   16950 root  mem    REG  254,0  125736 1309444 /lib/ld-2.5.so<br />
iftop   16950 root  mem    REG  254,0  168544 2879018 /usr/lib/libpcap.so.0.9.4<br />
iftop   16950 root  mem    REG  254,0   76400 3079364 /lib/libresolv-2.5.so<br />
iftop   16950 root  mem    REG  254,0  297464 3472515 /usr/lib/libncurses.so.5.5<br />
iftop   16950 root  mem    REG  254,0 1611564 1309445 /lib/libc-2.5.so<br />
iftop   16950 root  mem    REG  254,0  208352 3079358 /lib/libm-2.5.so<br />
iftop   16950 root  mem    REG  254,0   16428 1309446 /lib/libdl-2.5.so<br />
iftop   16950 root  mem    REG  254,0  129716 1309447 /lib/libpthread-2.5.so<br />
iftop   16950 root  mem    REG  254,0   46680 3077224 /lib/libnss_files-2.5.so<br />
iftop   16950 root  mem    REG  254,0   21876 3077222 /lib/libnss_dns-2.5.so<br />
iftop   16950 root    0u   CHR    4,2             206 /dev/tty2<br />
iftop   16950 root    1u   CHR    4,2             206 /dev/tty2<br />
iftop   16950 root    2u   CHR    4,2             206 /dev/tty2<br />
iftop   16950 root    3r   REG  254,0     187 3339085 /etc/hosts<br />
iftop   16950 root    4u  sock    0,4           28786 can't identify protocol<br />
iftop   16950 root    6r   REG  254,0  362031 3339109 /etc/services<br />
<br />
ramdisk上的<br />
# lsof -p 2929<br />
COMMAND  PID USER   FD   TYPE DEVICE    SIZE  NODE NAME<br />
iftop   2929 root  cwd    DIR    1,0    1024 30721 /root<br />
iftop   2929 root  rtd    DIR    1,0    1024     2 /<br />
iftop   2929 root  txt    REG    1,0   55551 12391 /usr/bin/iftop<br />
iftop   2929 root  mem    REG    1,0  168544 16412 /usr/lib/libpcap.so.0.9.4<br />
iftop   2929 root  mem    REG    1,0  297464 39026 /usr/lib/libncurses.so.5<br />
iftop   2929 root  mem    REG    1,0  129716 16408 /usr/lib/libpthread.so.0<br />
iftop   2929 root  mem    REG    1,0  116356  6202 /lib/ld-linux.so.2<br />
iftop   2929 root  mem    REG    1,0 1441888  6155 /lib/libc.so.6<br />
iftop   2929 root  mem    REG    1,0   16480  2184 /lib/libdl.so.2<br />
iftop   2929 root  mem    REG    1,0  176660  6199 /lib/libm.so.6<br />
iftop   2929 root  mem    REG    1,0   43404  6196 /lib/libnss_files.so.2<br />
iftop   2929 root    0u   CHR  136,1             3 /dev/pts/1<br />
iftop   2929 root    1u   CHR  136,1             3 /dev/pts/1<br />
iftop   2929 root    2u   CHR  136,1             3 /dev/pts/1<br />
iftop   2929 root    3u  sock    0,4          5914 can't identify protocol<br />
<br />
为什么在ramdisk下没有调用 /lib/libresolv-2.5.so 谢谢</div>

]]></content:encoded>
			<category domain="http://www.linuxsir.org/bbs/forumdisplay.php?f=63">Linux 系统及网络安全讨论专版</category>
			<dc:creator>yangjie</dc:creator>
			<guid isPermaLink="true">http://www.linuxsir.org/bbs/showthread.php?t=372104</guid>
		</item>
		<item>
			<title>这些IPTABLE规则应怎写？</title>
			<link>http://www.linuxsir.org/bbs/showthread.php?t=371660&amp;goto=newpost</link>
			<pubDate>Fri, 20 Aug 2010 07:53:48 GMT</pubDate>
			<description>单机，UBUNTU9.10

一。阻止系统邮件自动发送？
二。阻止系统软件自动升级？
三。总之由本机自动向外发送的数据，都记录及断开。</description>
			<content:encoded><![CDATA[<div>单机，UBUNTU9.10<br />
<br />
一。阻止系统邮件自动发送？<br />
二。阻止系统软件自动升级？<br />
三。总之由本机自动向外发送的数据，都记录及断开。</div>

]]></content:encoded>
			<category domain="http://www.linuxsir.org/bbs/forumdisplay.php?f=63">Linux 系统及网络安全讨论专版</category>
			<dc:creator>SIR_SIR</dc:creator>
			<guid isPermaLink="true">http://www.linuxsir.org/bbs/showthread.php?t=371660</guid>
		</item>
	</channel>
</rss>
