¸®´ª½º, ÀÚ·á½Ç, ¼º°æ°Ë»ö, Ãß¾ïÀǰÔÀÓ, °íÀü°ÔÀÓ, ¿À¶ô½Ç°ÔÀÓ, rootman, http://www.rootman.co.kr
* 62.210.77.51 *
| Home | Profile | Linux | ÀÚ·á½Ç | zabbix | Mysql 5.6 | °¶·¯¸® | ¼º°æ°Ë»ö | ÇØÇǴϽº | ÀÚÀ¯°Ô½ÃÆÇ | °Ô½Ã¹°°Ë»ö | L | O | R |    

 
[±âÃʰ­ÁÂ] [ddos] ÇÑ IP´ç µ¿½Ã Á¢¼Ó·® Á¦ÇѰú ÀÚµ¿Â÷´Ü
 ÀÛ¼ºÀÚ : rootman
Date : 2008-07-26 09:46  |  Hit : 5,875  

»çÀÌÆ® ¿î¿µÀÚ Á¤ÂùÈ£ÀÔ´Ï´Ù.

ddos¸¦ °ü¸®ÇÏ´Â ¼­¹ö¿¡¼­ ´çÇØ ºÃ´Âµ¥, ¼Ó¼ö¹«Ã¥ÀÌ´õ±º¿ä.
¾Æ·¡ ¹æ¹ýÀº »ç½Ç ±â´É»óÀÇ ¹®¹ýÀ» °¡¸£ÄÑ ÁÖ´Â °Í °°½À´Ï´Ù..

ÃÊ´ç 50, 100 ÀÇ connection À» ¸·±â À§Çؼ­´Â Ä¿³Î ÃßÀû log¿¡ ´ëÇÑ »çÀÌÁî, Çã¿ë·®,
¸Þ¸ð¸®.. ±âŸ µî µîÀ» °í·ÁÇÏÁö ¾ÊÀ» ¼ö°¡ ¾ø½À´Ï´Ù...

Çö½ÇÀûÀ¸·Î ´ÜÀÏ ¼­¹ö¿¡¼­, ¾ÆÁÖ ¹ÌºñÇÑ Æ¯Á¤ °ø°ÝÀÚ¿¡ ´ëÇÑ ¹æ¾î·Î¼­ »ç¿ëµÇ¾ß ÇÒ °Í °°½À´Ï´Ù.

----

Ãâó : °Ë»ö¿£Áø

¸¹Àº IP¿¡¼­ ºñÁ¤»óÀûÀÎ ´Ù·®ÀÇ Á¢¼ÓÀ» ½ÃµµÇϹǷΠÇÑ IP¿¡¼­ÀÇ Á¢¼Ó·®À» Á¦ÇÑÇϰí,
ÀÌÈÄ¿¡ Á¢¼Ó·®ÀÌ °ú´ÙÇÑ ÇØ´ç IP¸¦ ÀÚµ¿Â÷´ÜÇϵµ·Ï ÇÒ ¼ö ÀÖ´Ù.


iptables -A FORWARD -m recent --name badguy --rcheck --seconds 300 -j DROP
iptables -A FORWARD -p tcp --syn --dport 80 -m connlimit --connlimit-above 30 -m recent --name badguy --set -j DROP
iptables -A FORWARD -p tcp --syn --dport 80 -m connlimit --connlimit-above 30 -j DROP
exit 0;


ÀÌ·¸°Ô 3°¡Áö ±ÔÄ¢¸¸ ½ÇÇàÇÏ¸é µÇ늗µ¥, ´Ü¼øÈ÷ 3¹øÂ° ±ÔÄ¢¸¸ ½ÇÇàÇϸé,
ÇÑ IP¿¡¼­ÀÇ µ¿½ÃÁ¢¼ÓÀÌ 30ȸ¸¸ Çã¿ëµÇ°í ±× ÀÌ»ó Á¢¼ÓÀ» ÇÏÁö ¸øÇÏÁö¸¸,
¾ÕÀÇ µÎ °¡Áö ±ÔÄ¢°ú ÇÔ²² »ç¿ëÇÏ¸é µ¿½ÃÁ¢¼ÓÀÌ 30ȸ ÀÌ»ó ÃʰúÇÏ´Â IP¸¦ µ¿ÀûÀ¸·Î 300ÃÊ(5ºÐ)µ¿¾È Â÷´ÜÇÑ´Ù.
µ¿½ÃÁ¢¼Ó¼ö Á¦ÇÑÀ̳ª Â÷´Ü½Ã°£Àº °¢ÀÚÀÇ È¯°æ¿¡ µû¶ó ÀûÀýÈ÷ ¼³Á¤ÇÏ¸é µÈ´Ù.


À̶§ °ú´ÙÁ¢¼ÓÀ¸·Î Â÷´ÜµÈ IP¿¡ ´ëÇÑ Á¤º¸´Â ´ÙÀ½°ú °°ÀÌ ½Ç½Ã°£À¸·Î È®ÀÎÇÒ ¼ö ÀÖ´Ù.

# cat /proc/net/ipt_recent/badguy

src=100.123.65.15 ttl: 63 last_seen: 1174481 oldest_pkt: 2 last_pkts: 1174481, 1174481

 
 

Total. 646
¹øÈ£ ºÐ·ù Á¦¸ñ ÀÛ¼ºÀÚ µî·ÏÀÏ Á¶È¸¼ö
646 ±âÃʰ­Á NFS server unable to open connection to tcp6/udp6 networks rootman 09-27 1292
645 php [php] mssql ms-sql ÇÑ±Û º¯È¯ ²ôÀûÀÓ.. Á¤¸® rootman 03-29 1969
644 ±âÃʰ­Á java vim ¿¡¼­ Àڹ٠ȯ°æ ¸¸µé±â rootman 02-16 1594
643 »èÁ¦¿¹Á¤ [xencenter] xenserver tool ¼³Ä¡ rootman 08-24 2445
642 mysql [mysql] Creating a File-Per-Table Tablespace Outside the Dat¡¦ rootman 08-03 2648
641 ±âÃʰ­Á Centos Xwindow ¼³Ä¡ rootman 06-16 3445
640 php [php] highlight ÇÔ¼ö rootman 04-01 3338
639 qmail [qmail] qmail-scanner¿¡ filtering µÈ À̸ÞÀÏ Ã³¸® rootman 02-14 3712
638 Shell [³¯Â¥] awk¸¦ ÀÌ¿ëÇÏ¿© unixtimeÀÇ ½Ã°£ Â÷ ±¸Çϱâ rootman 01-27 3944
637 ±âÃʰ­Á centos¿¡ ±×³ð(gnome) ¼³Ä¡Çϱâ rootman 01-10 4045
636 ½©(awk) [awk] shell º¯¼ö »ç¿ëÇϱâ rootman 12-27 4004
635 ±âÃʰ­Á ¼­¹ö ij½Ã ¸Þ¸ð¸® ÃʱâÈ­Çϱâ (drop_caches) rootman 12-11 4558
634 windows tips ±×¸®µå Á¦°Å ¹èÄ¡ ½ºÅ©¸³Æ® rootman 11-28 4524
633 ±âÃʰ­Á ÆÐ½º¿öµå lockgin control rootman 09-06 4
632 windows tips win7 ÀÚµ¿ ·Î±×ÀÎ ¼³Á¤Çϱâ rootman 08-18 4121
 1  2  3  4  5  6  7  8  9  10    
AND OR