Dzivirira komputa yako pakurwisa ping

Nezve iyo ping yekuraira

Kuburikidza neiyo ICMP protocol, ndiko kuti, iwo mukurumbira wekuraira ping tinogona kuziva kana imwe komputa iri mupenyu pane network, kana tine nzira, ndinogona kufamba kuenda kwazviri pasina matambudziko.

Parizvino zvinoita kunge zvinobatsira uye zviri, zvakadaro sematurusi mazhinji akanaka kana mashandisirwo, inogona kushandiswa zvinangwa zvinokuvadza, semuenzaniso DDoS ine ping, iyo inogona kududzira muzvikumbiro zviuru zana neping paminiti kana pasekondi, izvo zvinogona kukanganisa iyo kupera komputa kana network yedu.

Ngazvive sezvazvingaite, pane dzimwe nguva tinoda kuti komputa yedu isapindure kune zvikumbiro zveping kubva kune vamwe pane network, kureva kuti, kuti iite senge isina kubatana, pane izvi isu tinofanirwa kudzora mhinduro yeICMP protocol mune yedu system.

Maitiro ekuona kana isu takagonesa iyo ping mhinduro sarudzo

Pane faira muhurongwa hwedu iro rinotibvumidza kutsanangura nenzira yakapusa, kana isu tine mhinduro yeping yakabvumidzwa kana kuti kwete, iri: / proc / sys / net / ipv4 / icmp_echo_ignore_all

Kana iyo faira iine 0 (zero), saka munhu wese anotirovera isu anowana mhinduro chero pakombuta yedu paInternet, zvisinei, kana tikaisa 1 (imwe) saka hazvina basa kana PC yedu yakabatana kana kwete, ichaita ita kunge isipo.

Mune mamwe mazwi, nemurairo unotevera tichagadzirisa iyo faira:

sudo nano /proc/sys/net/ipv4/icmp_echo_ignore_all

Isu tinoshandura iyo 0 nokuti 1 uye tinodzvanya [Ctrl] + [O] kusevha, uyezve [Ctrl] + [X] kubuda.

Yakagadzirira, komputa yedu HAITI kupindura iyo ping yevamwe.

Dzimwe nzira dzekuzvidzivirira kubva pakurwiswa kweping

Imwe nzira iri pachena iri kushandisa firewall, uchishandisa iptables zvinogona zvakare kuitwa pasina kunetsekana kwakawanda:

sudo iptables -A INPUT -p icmp -j DROP

Zvino rangarira, iyo iptables mitemo inoshambidzwa kana komputa yatanga patsva, isu tinofanirwa kuburikidza neimwe nzira kuponesa shanduko, kungave kuburikidza ne iptables-chengetedza uye iptables-dzosera, pamwe nekuita script pachedu.

Uye izvi zvanga zviri 🙂


Izvo zviri muchinyorwa zvinoomerera pamisimboti yedu ye tsika dzekunyora. Kuti utaure chikanganiso tinya pano.

Makomendi gumi, siya zvako

Siya yako yekutaura

Your kero e havazobvumirwi ichibudiswa. Raida minda anozivikanwa ne *

*

*

  1. Inotarisira iyo data: Miguel Ángel Gatón
  2. Chinangwa cheiyo data: Kudzora SPAM, manejimendi manejimendi.
  3. Legitimation: Kubvuma kwako
  4. Kutaurirana kwedata
  5. Dhata yekuchengetedza: Dhatabhesi inobatwa neOccentus Networks (EU)
  6. Kodzero: Panguva ipi neipi iwe unogona kudzora, kupora uye kudzima ruzivo rwako

  1.   neysonv akadaro

    chakanakisa mupiro. Ndiudze, zvingashanda kudzivirira zvikumbiro zvekubviswa ??? senge pavanoda kutsemura network vachishandisa aircrack-ng. Ndinodaro nekuti kana zviri pachena kuti takadamburwa havazokwanise kutitumira zvikumbiro zvakadaro Ndatenda nekuisa

    1.    PopArch akadaro

      Izvo hazvishande nenzira iyoyo, izvi zvinongovhara iyo icmp echo mhinduro, saka kana mumwe munhu achida kuyedza kubatana ne icmp echo kukumbira komputa yako ichaita icmp echo hanya uye nekudaro munhu ari kuyedza kuyedza kubatana achawana Mhando yekupindura "inomiririra inoita kunge iri pasi kana ichivhara ping probes", asi kana mumwe munhu achiongorora netiweki ne airodump kana chimwe chishandiso chakafanana, vanozokwanisa kuona kuti wakabatana nekuti maturusi aya ari kuongorora mapakeji anotumirwa ku AP kana kugamuchirwa kubva kuAP

  2.   Frank Sanabria akadaro

    Izvo zvinofanirwa kucherechedzwa, kuti ndezvenguva pfupi chete, mushure mekutanga patsva pc yako ichagamuchira mapiningi zvakare, kuti iite zvachose, zvine chekuita nehunyengeri hwekutanga kumisikidza iyo /etc/sysctl.conf faira uye pakupedzisira wedzera net.ipv4. icmp_echo_ignore_all = 1 uye nekuremekedza Zano rechipiri rakafanana asi rakareba "(Sevha Iptables Conf, gadzira interface interface kumusoro iyo inoitwa panotanga system, uye zvinhu)

  3.   Mmm akadaro

    Mhoro. Pane chingakanganisa here? kana chingava chii? nekuti mu ubuntu hapana faira rakadai ......

  4.   Franz akadaro

    Yakanga isina chaipomerwa senguva dzose.
    Chinhu chidiki chekucherechedza, kana kuvhara nano hakukurumidze Ctrl + X wozobuda neY kana S
    Kuremekedza

  5.   yukiteru akadaro

    Yakanaka zano, @KZKG, ini ndinoshandisa imwecheteyo tip pakati pevamwe vazhinji kuti ndiwedzere kuchengeteka kwePC yangu nemaseva maviri andinoshanda nawo, asi kudzivirira mutemo weptables, ini ndinoshandisa sysctl uye yayo folda yekumisikidza / etc / sysctl. d / ine faira yandinobatanidza mirairo inodiwa kuitira kuti nekutangazve kwega kwega ivo vatakure uye bhutsu yangu yesystem nehunhu hwese hwakatogadziriswa.

    Panyaya yekushandisa nzira iyi, ingo gadzira faira XX-yemuno.conf (XX inogona kuve nhamba kubva pa1 kusvika 99, ndinayo mu50) uye nyora:

    net.ipv4.icmp_echo_ignore_all = 1

    Nechekare nazvo vane mhedzisiro yakafanana.

    1.    jsan92 akadaro

      Yakanaka yakapusa mhinduro, ndatenda
      Ndeapi mamwe mirairo iwe aunayo mune iyo faira?

      1.    yukiteru akadaro

        Chero rairo rine chekuita nesyctl misiyano uye inogona kushandisirwa kuburikidza sysctl inogona kushandiswa nenzira iyi.

      2.    Frank Sanabria akadaro

        Kuti uone hwakasiyana hunhu hwaunogona kuisa kune sysctl mhando mune yako terminal sysctl -a

  6.   Solrak Rainbowarrior akadaro

    MukuvhuraSUSE ini handina kukwanisa kuigadzirisa.

  7.   David akadaro

    Zvakanaka
    Imwe nzira inokurumidza ndeye kushandisa sysctl

    #sysctl -w net.ipv4.icmp_echo_ignore_all = 1

  8.   cpolane akadaro

    Sezvambotaurwa, muIPTABLES iwe unogona zvakare kuramba chikumbiro cheping yezvinhu zvese na
    iptables -A INPUT -p icmp -j DROP
    Zvino, kana tichida kuramba chero chikumbiro kunze kweicho chaicho, tinogona kuzviita nenzira inotevera:
    Isu tinozivisa akasiyana:
    IFEXT = 192.168.16.1 # yangu IP
    KUSIMBISWA IP = 192.168.16.5
    iptables -A INPUT -i $ IFEXT -s $ YAKASIMBISWA IP -p icmp -m icmp –icmp-mhando echo-kukumbira -m kureba-kureba 28: 1322 -m muganho - gumisa 2 / sec -limit-burst 4 -j Bvuma

    Nenzira iyi tinopa mvumo chete iyo IP kuti ping PC yedu (asi nemiganhu).
    Ndinovimba zvinobatsira kwauri.
    Salu2

  9.   lovedelinux ... nolook.com akadaro

    Wow, mutsauko uripo pakati pevashandisi, nepo windowseros vachitaura nezve maitirwo ehalo kana zvakaipa mukati meLinux zvichirovera nyika nezvinhu zvakaita seizvi.

    1.    KZKG ^ Gaara akadaro

      Uye ndosaka Windowseros ichingoziva kutamba, nepo Linuxeros iri ivo vanonyatso ziva manejimendi manejimendi eOS, network, nezvimwe.
      Ndatenda nekutipa kushanya kwako 😀

  10.   mushandisi akadaro

    Coordiales Kwaziso
    Musoro we unobatsira uye unobatsira kune imwe nhanho.
    Ndinokutendai.

  11.   Gonzalo akadaro

    mawindo paachaona nezve izvi uchaona vopenga

  12.   lolo akadaro

    mune iptables iwe yaunofanirwa kuisa ip muIMPUT uye chimwe chinhu muDROP?