iptables for newbies, m, sha'awar (Sashe na 2)

Lokacin DesdeLinux solo tenía pocos meses de vida escribí un tutorial extremadamente simple de entender sobre iptables: iptables for newbies, m, sha'awar (kashi na 1) . Amfani da kalmomi kamar kwatanta kwamfutar mu da gidan mu, katangar mu da kofar gidan, da sauran misalai, na yi bayanin su ta hanya mai nishadantarwa, ba tare da wasu fasahohi da yawa ba ko kuma maganganu masu rikitarwa, menene katangar bango, menene abubuwan birgewa da yadda zaka fara amfani dashi kuma saita shi. Wannan shine ci gaba, kashi na 2 na iptables tutorial da ya gabata 🙂

Hakan ya faru ne kwanakin da suka gabata ta amfani da Linksys AP (Access Point) na sanya Wifi a gidan budurwata, duk da cewa yankin ba shi ne mafi wayewa ta fuskar fasaha ba, ma’ana, ba wai akwai hadurra da yawa na fasa ba , Yana da kyau koyaushe a sami kyakkyawan tsaro a cikin WiFi da cikin kwamfutoci.

Ba zan yi tsokaci game da tsaron Wi-Fi ba a nan, tunda ba shi ne burin gidan ba, zan mai da hankali ne kan tsarin kayyakin aiki da nake amfani da su a kwamfutar tafi-da-gidanka.

Ana aiwatar da waɗannan umarnin masu zuwa a cikin m, suna buƙatar kashe su tare da gatan mai gudanarwa, zan tsayar da sudo ga kowane umarni, zaku iya yin hakan ko kaucewa amfani da sudo ta aiwatar da umarnin kai tsaye azaman tushe

A rubutun da na gabata nayi bayanin cewa ya zama dole a cikin katangar wuta da farko musan duk wata hanyar shigowa, saboda wannan:

sudo iptables -P INPUT DROP

Don haka dole ne mu kyale kwamfutarmu ta sami izinin shigar da bayanai:

sudo iptables -A INPUT -i lo -j ACCEPT

Hakanan da karɓar fakiti na buƙatun waɗanda suka samo asali daga kwamfutarmu:

sudo iptables -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT

Don ƙarin fahimtar waɗannan layukan, Ina ba da shawarar karanta rabin farko na labarin da ya gabata: iptables for newbies, m, sha'awar (kashi na 1)

Ya zuwa yanzu kwamfutarmu na iya kewaya yanar gizo ba tare da matsala ba, amma babu wani daga kowane mahalli (LAN, intanet, Wifi, da sauransu) da zai sami damar shiga kwamfutarmu ta kowace hanya. Zamu fara daidaita abubuwa masu mahimmanci kamar yadda bukatunmu suke.

Amfani da ulogd don fitar da abubuwan buɗe ido zuwa wani fayil:

Ta hanyar tsoho rajistan ayyukan suna shiga cikin gungumen katako, tsarin tsarin, ko wani abu makamancin haka ... cika sab thatda haka, rajistan ayyukan rajistan ayyukan suna cikin wani fayil.

sudo iptables -A INPUT -p tcp -m tcp --tcp-flags FIN,SYN,RST,ACK SYN -j ULOG

Bada damar shiga sabar na sirri:

Ba na amfani da VirtualBox ko wani abu mai kama da aikin kirki, Ina da sabar kaina ta sirri da aka ƙulla da Qemu + KVM wanda dole ne ya iya haɗi zuwa kwamfutar tafi-da-gidanka kamar haka, tare da ƙa'idodin ƙa'idodin ƙa'idodin da na ambata a sama ba zai iya ba, wannan shine dalilin da ya sa dole ne in ba da izini ga IP na uwar garke na kama don ya sami damar shiga kwamfutar tafi-da-gidanka :

sudo iptables -A INPUT -i virbr0 -p tcp -s 192.168.122.88 -j ACCEPT

Zamu yi bayani dalla-dalla kan wannan layin, yana da mahimmanci ku fahimci abin da kowane sashi ke nufi, saboda za'a maimaita su da yawa daga yanzu:

-BANGABA : Ina cewa zan bayyana doka don zirga-zirgar shigowa da kaya

-i yar 0 : Na bayyana cewa hanyar da zan yarda da zirga-zirgar ba ta kasance ba (LAN) ko wlan0 (Wifi) ba, na ce musamman ita ce kewaya ta Virbr0, ma’ana, hanyar sadarwa ta kama-da-wane (ta ciki) wacce kwamfutar tafi da gidanka ke sadarwa tare da sabar tawa ta (kuma akasin haka)

- tcp : Na saka yarjejeniya, wadanda akafi amfani dasu sune UDP da TCP, anan ya isa sosai da baza a sanya wannan ba amma ... al'ada ce a tantance nau'in yarjejeniya don karba

-s 192.168.122.88 : Tushen, tushen fakitin. Wato, dokar tana nufin fakiti waɗanda suka fito musamman daga IP 192.168.122.88

-j KARBANA : Tuni a nan na faɗi abin da nake son yi da fakitin da suka dace da na sama, a cikin wannan yanayin karɓa.

Watau, a taƙaice, Zan karɓi fakiti waɗanda suka fito daga IP 192.168.122.88, amma idan kuna son shigar da fakiti waɗanda suka fito daga IP ɗin AMMA! Sun shigo ne daga wata hanyar da ba Virbr0 ba, ma'ana, a ce sun yi kokarin shigar da fakiti daga IP 192.168.122.88 amma sun fito ne daga kwamfuta a cikin hanyar sadarwarmu ta Wifi, idan kuwa haka ne, za a ƙi jakunkunan. saboda me? Saboda a bayyane muke tantance cewa eh, mun yarda da fakitoci daga 192.168.122.88 a, amma kuma kawai amma, su ma dole su shiga daga ƙirar Virbr0 (na ciki, hanyar sadarwa ta kama-da-wane), idan fakiti sun fito daga wata hanyar (LAN, RAS, Wifi, da sauransu) to ba za a karɓa ba. Ta hanyar tantance aikin dubawa kamar yadda kake gani za mu iya kara takura shi, za mu iya samun kyakkyawan iko kan abin da ya shiga (ko bai shiga) kwamfutarmu ba.

Yarda da ping daga kowane IP na gidan Wifi:

Daga wata kwamfutar da ke haɗa ta da Wifi, idan kuna ƙoƙarin yin ping na kwamfutar tafi-da-gidana ina so in ba ta izinin. dalili? Tunanin kuma shine a cikin 'yan makwanni masu zuwa don haɗa kwamfutar ta gidan da ke kusa da cibiyar sadarwa, don haka raba bayanai zai zama ba mai rikitarwa ba ne, mafi yawan ruwa, lokacin da na fara yin gwaje-gwaje don haɗa kwamfutar da Wifi, zan bukatar yin ping na kwamfutar tafi-da-gidanka don duba yanayin haɗi, idan kwamfutar tafi-da-gidanka ba ta sanya ni baya ba zan iya tunanin cewa AP ɗin ta gaza, ko kuma cewa akwai kuskure yayin shiga Wifi, shi ya sa nake son ba da izinin ping.

sudo iptables -A INPUT -i wlo1 -p icmp -s 192.168.1.0/24 -d 192.168.1.51 -j ACCEPT

-BANGABA : Kamar yadda yake a da, na koma ga zirga-zirga masu shigowa

-i ina 1 : Mai kama da da. A cikin shari'ar da ta gabata na ayyana keɓaɓɓiyar kewayawa, a wannan yanayin na saka wani yanayin, na wifi na: wlo1

-p icmp : Icmp yarjejeniya, icmp = ping. Wato, bana barin SSH ko wani abu makamancin haka, kawai ina bada izinin ping (icmp)

-s 192.168.1.0/24 : Tushen fakiti, watau idan dai fakiti sun fito daga IP 192.168.1.? za a karɓa

-d 192.168.1.51 : Makoma IP, wato, IP na.

-j KARBANA : Na nuna abin da za a yi da fakitin da suka dace da na sama, karɓa.

Wato, kuma don bayyana wannan ta hanya mai gudana, Na yarda cewa suna ping me (icmp yarjejeniya) wanda makomar su shine IP na musamman, muddin suka fito daga IP kamar 192.168.1 .__ amma kuma, ba za su iya zuwa ba daga kowace hanyar sadarwa, dole ne su shiga musamman daga kebul na cibiyar sadarwar Wifi na (wlo1)

Yarda da SSH kawai don IP ɗaya:

Wani lokaci Ina buƙatar haɗi ta SSH daga wayana don sarrafa kwamfutar tafi-da-gidanka, wannan shine dalilin da ya sa dole ne in ba SSH damar shiga kwamfutar tafi-da-gidanka daga IP na Wifi na, saboda wannan:

sudo iptables -A INPUT -i wlo1 -p tcp -s 192.168.1.0/24 -d 192.168.1.51 --dport 22 -j ACCEPT

Abinda ya bambanta da wannan layin ko wanda ya cancanci haske shine: –Dubai 22 (Tashar SSH da nake amfani da ita)

A wasu kalmomin, Na yarda da yunƙurin haɗi zuwa kwamfutar tafi-da-gidanka ta hanyar tashar jirgin ruwa ta 22, muddin suka fito daga IP na wifi na, su ma dole ne IP ɗin su a matsayin takamaiman wurin zuwa kuma su zo ta hanyar wlo1 interface, wato, na wifi na (ba lan ba, da sauransu)

Bada izinin su duba gidan yanar gizonku:

Ba batun nawa bane, amma idan waninku yana da gidan yanar sadarwar da aka shirya kuma baya son hana kowa damar shiga, ma'ana, cewa kowa daga ko ina zai iya shiga wannan gidan yanar gizon, ya fi sauki fiye da yadda zaku zata:

sudo iptables -A INPUT -p tcp --dport 80 -j ACCEPT

Watau, anan suna bada izinin duk wata hanyar shigowa (tcp) ta tashar jirgin ruwa ta 80. Kamar yadda kake gani, ban sanya takamaiman IPs ko network dinda na bada damar shiga ba, ba tare da fayyace wani yanki na IP ba don bada izini, iptables sun dauka cewa ina so don ba da damar isa ga duk jeri na IP, wato, ga duk duniya 🙂

Sauran haɗuwa:

Ina da wasu sharuɗɗa da yawa kamar, misali, karɓar ping na IPs daga gidana LAN (saboda wannan yana da mahimmanci layi ɗaya ne kamar na sama, canza jeri na IP), wanda ya fi daidai da abin da kawai na bayyana a sama .. . a cikin kwamfutar tafi-da-gidanka saboda haka banyi amfani da abubuwa masu rikitarwa ba, na iyakance hanyoyin sadarwa, anti DDoS, Na bar hakan ga sabobin, a laptop dina bana buqatar shi I

Duk da haka dai, har yanzu labarin.

Kamar yadda kake gani, yin aiki da kayan kwalliya ba shi da rikitarwa ta kowane hali, da zarar ka gina rubutu a ciki wanda zaka rubuta dokokin ka mai sauki ne sai ka gyara shi, ka ƙara ko cire dokoki a bangon ka.

Ban dauki kaina masani kan batun nesa da shi ba, duk da shakku da kake da shi, sun yi tsokaci a nan, zan yi kokarin taimaka maka gwargwadon yadda zan iya.

gaisuwa


31 comments, bar naka

Bar tsokaci

Your email address ba za a buga. Bukata filayen suna alama da *

*

*

  1. Wanda ke da alhakin bayanan: Miguel Ángel Gatón
  2. Manufar bayanan: Sarrafa SPAM, sarrafa sharhi.
  3. Halacci: Yarda da yarda
  4. Sadarwar bayanan: Ba za a sanar da wasu bayanan ga wasu kamfanoni ba sai ta hanyar wajibcin doka.
  5. Ajiye bayanai: Bayanin yanar gizo wanda Occentus Networks (EU) suka dauki nauyi
  6. Hakkoki: A kowane lokaci zaka iyakance, dawo da share bayanan ka.

  1.   kasada m

    Yayi kyau, anyi bayani sosai, kwarai.
    Ina son irin wannan sakon.

    1.    KZKG ^ Gaara m

      Na gode da yawa don yin sharhi 🙂

      Wannan post din bashi ne da na dade na yi, yana da dadi da dadi a karshen iya biyan shi ^ _ ^

      gaisuwa

      1.    FIXOCONN m

        wata tambaya kake a cuba?
        … Yana faruwa yan kwanaki da suka gabata ta amfani da Linksys AP (Access Point) na sanya Wifi a gidan budurwata

        1.    KZKG ^ Gaara m

          Ee tabbas, an haife ni kuma ina zaune a Cuba. me yasa tambaya?

        2.    Sam burgos m

          @FIXOCONN: Barka dai aboki kuma ka yafe wa lafazin wannan tambayar, amma yaya kuke ayyana Cinnamon don bayyana a matsayin yanayin muhallin mai amfani? Ina amfani da Mint 13 tare da Kirfa, amma babu wata hanyar da zan samu tambarin Cinnamon ya bayyana a cikin wakilin dina a duk lokacin da na yi tsokaci a kan wannan rukunin yanar gizon

          Shin za ku iya zama mai kirki da za ku iya ba ni bayanan wakilin mai amfani idan ba matsala ba ce sosai? Ina so in san wannan bayanan don sanya shi kaina =)

          Na bar muku shafi don ku sake duba shi ku ba ni bayanin. Godiya da admins, ku gafarce "trolling" (idan kuna iya kiranta haka) a bangarena da wannan bayanin -> http://user-agent-string.info/

          1.    KZKG ^ Gaara m

            Sanya "Kirfa" (ba tare da ambaton ba) zuwa kowane ɓangare na UserAgent, to tambarin ya kamata ya bayyana a cikin maganganun na gaba 🙂

  2.   Bruno cascio m

    Da kyau sosai gidan! bayyananne 😀

    1.    KZKG ^ Gaara m

      Godiya ga karatu da godiya ga tsokacinka 🙂

  3.   filayen kwaruruka m

    Na gode! Yana taimaka min sosai!

  4.   Oscar Grenada m

    Barka dai, da farko dai gaisuwa mai yawa ga blog din, ina tsammanin yana da kyau.
    Wani abu da zai iya zama da kyau a ambata shi ne cewa zaɓi don shiga tare da ULOG baya aiki a cikin tsarin aiki waɗanda suke da ulogd2, don wannan yanayin yakamata doka ta kasance:
    sudo iptables -A INPUT -p tcp -m tcp –tcp-flags FIN, SYN, RST, ACK SYN -j NFLOG

    1.    KZKG ^ Gaara m

      Da farko dai, mun gode sosai da abinda kuka ce game da shafin yanar gizo 🙂

      Na shigar da ulogd v2.0.2-2 a cikin Arch, kuma layin da na sanya yana aiki ba tare da matsala ba (Dole ne in sanya loglevel = 1 a cikin /etc/ulogd.conf, amma yana ɗaukar rajistan ayyukan zuwa wani fayil ba tare da matsala ba.

      Shin kuna amfani da ulogd v2 ko mafi girma, layin da na bar aiki ba daidai ba ne a gare ku?

      Gaisuwa da godiya ga yin tsokaci.

  5.   Garin m

    Kullum ina jiran kashi na biyu, ina tuna lokacin da na karanta na farko (shine farkon farawata a bangon wuta). Godiya @ KZKG ^ Gaara, ina gaishe 🙂

    1.    KZKG ^ Gaara m

      Na gode da karanta ni 😀
      Kuma hehe a, abin da na fada ... wannan rubutun bashi ne wanda na daɗe da shi ago _ ^

  6.   Jose Luis Gonzalez mai sanya hoto m

    Gaisuwa. Da kyau sosai gidan. Ina ƙoƙarin saita ƙa'idodin ka'idoji don tura zirga-zirga daga squid zuwa dansguardian kuma har yanzu bai cimma burin ba. Ina jin daɗin wani taimako game da wannan.

    1.    KZKG ^ Gaara m

      abubuwan jin dadi don hakan? Shin ba a yin hakan kai tsaye tare da ACLs a cikin Squid ba?

  7.   mara suna m

    "Ina da sauran dokoki da yawa kamar .."
    Wannan shine abin da nake kira paranoia, yaro
    Kaɗan kuma ka sanya fakitin Rotwailer a cikin kowane buɗe tashar jiragen ruwa a kan modem / router

    1.    KZKG ^ Gaara m

      HAHAHAHAHAHAHAHAHA Ina mutuwa saboda dariya tare da rottwailers hahahaha

  8.   Ivan m

    Assalamu alaikum abokina, yana faruwa ina bukatar taimako don saita IPTables ta yadda zai hanata shiga tashar 80 kawai lokacin da na buga adreshin a burauzan masu saka suna na, lokacin ne misali nake buga ns1.mydomain.com da ns2.mydomain. com (waxanda su ne masu sanya mani suna) IPtables din sun hana samun damar zuwa tashar jirgin ruwa ta 80 ta yadda mai binciken yana kokarin loda shafin amma bayan wani lokaci sai ya kare kuma bai taba lodawa ba, ya faru da cewa na riga na yi kokari da umarni kamar haka:

    iptables -A INPUT -d ns1.midomini.com -p tcp –daga tashar 80 -j DROP
    iptables -A INPUT -d ns2.midomini.com -p tcp –daga tashar 80 -j DROP

    Amma abinda kawai yakeyi shine hana shigowa tashar 80 a dukkan yankuna na (tunda suna raba IP iri daya da Virtual Host), Ina so kawai ya kasance a cikin url na masu sa suna da kuma IP din da wadanda suka sanya sunayen suka nuna. , ma'ana, tebur na IP sun hana damar tashar 80 a:

    ns1.midomini.com (Nuna A) -> 102.887.23.33
    ns2.midomini.com (Nuna A) -> 102.887.23.34

    da kuma IPs da masu sanya sunayen suka nuna

    102.887.23.33
    102.887.23.34

    Misali na kamfani wanda ke da wannan tsarin shine: Dreamhost
    Masu sanya sunayensu: ns1.dreamhost.com da ns2.dreamhost.com da IPs da suke nunawa don ba su amsa lokacin da aka buga a cikin adireshin adireshin mai binciken

    Na gode sosai a gaba saboda kulawarku, zan so ku ba ni hannu da wannan, ina matukar bukatar sa kuma cikin gaggawa !!

    Ina kwana !!

    1.    KZKG ^ Gaara m

      Sannu Ivan,

      Contáctame por email (kzkggaara[at]desdelinux[dot]net) para hablarlo con más calma y explicarte mejor, mañana sin falta te respondo (hoy estoy de pasada)

      Abin da kuke son yi mai sauki ne, ban san me yasa layukan da kuka gaya mani ba zasu muku aiki ba, ya kamata, amma dole ne ku bincika rajistan ayyukan da sauran abubuwan da zasu yi tsayi a nan.

      Gaisuwa kuma ina jiran imel ɗin ku

  9.   Neyonv m

    bisa ka'ida tare da kayan karau zan iya kauce wa aiko da buƙatun cire haɗin daga shirye-shirye kamar jirgin sama. Ina gaskiya ??? Da kyau zan yi gwaje-gwaje amma idan ka gaya mani cewa za ka faranta mini rai XDDD

    1.    KZKG ^ Gaara m

      A ka'ida ina ganin haka, yanzu, ban san yadda za a yi shi ba, ban taba yi ba ... amma na maimaita, a ka'ida, ina tsammanin zai iya.

  10.   Alex m

    Bayan amfani da ƙa'idodi masu mahimmanci, ba shi yiwuwa a gare ni in sami damar raba aljihunan windows a cikin hanyar sadarwar gida. Wace doka zan nema don gyara ta?
    Gode.

    1.    KZKG ^ Gaara m

      Waɗanne ƙa'idodi marasa amfani kuka yi amfani da su?
      Wannan shine kashi na 2 na "kayan kwalliya na sabbin abubuwa", shin kun karanta na farkon? Ina tambayar wannan don sanin idan kun yi amfani da ƙa'idodin da ke cikin rubutun da ya gabata

      1.    Alex m

        Ee, Na karanta bangarorin biyu. Don rubutun na kafa kaina a kan wani rubutun da kuka sanya game da farawa dokoki tare da tsari.

        #! / bin / bash
        # - UTF 8 -

        # Abubuwan da ake iya bin su
        kayan aiki = »/ usr / bin / iptables»

        jefa waje ""

        ## tebur masu tsabta ##
        $ iptables -F
        $ iptables -X
        $ ipsable -Z
        #echo »- Aka yi FLUS zuwa kayan kwalliya» && echo »»

        ## Kafa rajista tare da ULOGD ##
        $ iptables -A INPUT -p tcp -m tcp –tcp-flags FIN, SYN, RST, ACK SYN -j ULOG

        ## Bayyana tsoffin manufofin DROP ##
        $ iptables -P INTUT DOP
        $ iptables -P GABA DAYA
        #echo »- Manufar DROP wacce aka ayyana ta tsoho» && echo »»

        ## Bada komai ga localhost ##
        $ iptables -A shigar da kayan -i lo -j KARYA
        $ iptables -A FITARWA -o lo -j ACCEPT
        #echo »- Duk an ba da izini don localhost» && echo »»

        ## Bada izinin shigar da fakiti na haɗin da na fara ##
        $ iptables -A GABATAR -m jihar-An kafa jihar, RELATED -j ACCEPT
        #echo »- Izinin fakitin haɗin haɗin da na fara & my echo» »

        jefa "##############################"
        amsa kuwwa »## IPTABLES NUNA KYAU! ## »
        jefa "##############################"

        Na karanta a intanet cewa don samba ya kamata ku sami dokoki masu zuwa a rubutun:

        $ iptables -A INPUT -p tcp –maganar 139 -j KARBAR
        $ iptables -A INPUT -p tcp –maganar 445 -j KARBAR
        $ iptables -A INPUT -p udp –sport 137 -j ACCEPT
        $ iptables -A INPUT -p udp –maganar 137 -j KARBUN
        $ iptables -A INPUT -p udp –maganar 138 -j KARBUN

        Koyaya, ba ma tare da su ba zan iya ganin rukunin aiki na windows. : S

      2.    Alex m

        An warware matsala. Gyara rukunin aiki da runduna suna ba da damar sigogi a cikin fayil ɗin daidaitawar samba.

  11.   hakank m

    Labari mai kyau, kawai mai girma !!!!
    Na karanta shi kawai kuma ina son duk yadda kuka bayyana shi da kuma fa'idar amfani da iptables, Ina so in koyi yadda ake amfani da shi a cikin zurfin.
    Gaisuwa da kyakkyawan labari, Ina fatan kun buga game da Abubuwan ablesira! ^^

  12.   LEO m

    Masoyi;

    Ina da wakili tare da kayan aiki kuma ɗayan cibiyoyin sadarwata ba zai iya yin ping ba http://www.google.cl saboda wannan dalili na sa an toshe mashigai kuma ina kokarin dubun dubatar hanyoyin bude tashoshin kuma ba abin da ya faru. Idan ba zan iya ping ba to ba zan iya haɗa hangen nesa ba

  13.   Borja m

    Taya murna akan post! Yayi kyau. Amma ina da tambaya. Wasu lokuta adireshin IP ɗin da aka sanya muku a cikin hanyar sadarwar na iya canzawa (idan gaskiya ne cewa zamu iya sanya IP zuwa ga MAC ɗinmu na MAC), amma shin akwai yiwuwar tare da Abubuwan ptira don ba da damar isa ga sabarmu ta hanyar SSH ta Adireshin MAC?

    Ina fatan na yi bayani kaina da kyau.

    Gaisuwa, kuma na gode sosai!

  14.   Fernando MartinGan m

    Barka dai, kun san cewa nayi sabar uwar garken Linux kuma bayan sanya wadannan umarni na toshe komai da komai kuma na rasa hanya, zan iya dawo da kusan komai amma abubuwa 2 na rasa. * Ba zan iya samun damar shiga ta yanar gizo ba ta hanyar laƙabin «uwar garke» idan ta ip, 10.10.10.5 kuma a ɗaya hannun ban ga abubuwan da aka raba daga mai binciken windows akan hanyar sadarwa ba, kafin in sanya \\ uwar garken ga duk albarkatun da aka raba. Ina fatan za ku iya taimaka min, na san wauta ce amma ban sami damar magance ta ba, godiya

  15.   Tau m

    Na faɗi kalma:
    '
    Yarjejeniyar Icmp, icmp = ping. Wato, bana barin SSH ko wani abu makamancin haka, kawai ina bada izinin ping (icmp)
    '

    ICMP da PING ba iri daya bane. Ping wani bangare ne na yarjejeniyar ICMP, amma ba komai bane. Yarjejeniyar ICMP (Yarjejeniyar Saƙon Sadarwar Intanet) tana da ƙarin amfani da yawa, wasu daga cikinsu suna da wasu haɗari. Kuma kuna karɓar duk zirga-zirgar ICMP. Dole ne ku ƙuntata kawai ga ping.

    Na gode!

  16.   ozkr m

    Dole ne in yi horon aiki amma ban fahimci abubuwa da yawa game da kayan kwalliya ba, don Allah don Allah a taimake ni….
    godiya !!!!!!!