Njengawo wonke ama-Linux distros, Ubuntu usevele uza ne-firewall (firewall) efakiwe. Lesi firewall, empeleni, sifakwa ku-kernel. Ku-Ubuntu, isikhombimsebenzisi somugqa womyalo we-firewall sathathelwa indawo yisikripthi esisebenziseka kalula. Kodwa-ke, i-ufw (i-FireWall engaqondakali) nayo inesibonisi sokuqhafaza okulula ukusisebenzisa. Kulokhu okuthunyelwe, sizokwethula umhlahlandlela wesinyathelo ngesinyathelo sendlela yokusebenzisa i-gufw, isikhombimsebenzisi sokuqhafaza se-ufw, ukulungisa i-firewall yethu. |
Ngaphambi kokufaka i-gufw, akuwona umqondo omubi ukubheka isimo se-ufw. Ukwenza lokhu, ngavula ukuphela futhi ngabhala:
sudo ufw isimo
Umphumela kufanele usho okuthile okufana nalokhu: "Isimo: akusebenzi". Leso yisimo esizenzakalelayo se-firewall ku-Ubuntu: ifakiwe kepha ikhutshaziwe.
Ukufaka i-gufw, ngavula i-Ubuntu Software Center ngayisesha ukusuka lapho.
Ungayifaka futhi kusuka ku-terminal ngokuthayipha:
sudo apt-get ukufaka gufw
Ukusetha i-gufw
Uma usufakiwe, ungayifinyelela kusuka ku-System> Administration> izilungiselelo ze-Firewall.
Njengoba ukwazi ukubona kusikrini-skrini, i-ufw isebenza ngokuzenzakalela yamukela konke ukuxhumana okuphumayo futhi yenqaba konke ukuxhumana okungenayo (ngaphandle kwalezo ezihlobene neziphumayo). Lokhu kusho ukuthi noma yiluphi uhlelo lokusebenza olisebenzisayo luzokwazi ukuxhuma ngaphandle (kungaba yi-Intanethi noma ingxenye ye-Intranet yakho) ngaphandle kwezinkinga, kepha uma umuntu ovela komunye umshini efuna ukufinyelela kowakho, ngeke bakwazi.
Zonke izinqubomgomo zokuxhuma zigcinwa kufayela / njll / okuzenzakalelayo / ufw. Ngokumangazayo, i-ufw ivimba i-IPv6 traffic ngokuzenzakalela. Ukuze uyinike amandla, hlela ifayela / njll / okuzenzakalelayo / ufw futhi ushintshe IPV6 = cha por IPV6 = yebo.
Idala imithetho yangokwezifiso
Chofoza inkinobho yokwengeza efasiteleni elikhulu le-gufw. Kunamathebhu amathathu okwenza imithetho yangokwezifiso: Okulungiselelwe ngaphambilini, okulula, nokuthuthukile.
Kusuka ku-Preconfigured ungakha uchungechunge lwemithetho ngenombolo ethile yezinsizakalo nezinhlelo zokusebenza. Izinsizakalo ezitholakalayo yilezi: FTP, HTTP, IMAP, NFS, POP3, Samba, SMTP, ssh, VNC neZeroconf. Izicelo ezikhona yilezi: I-Amule, uZamcolo, i-KTorrent, iNicotine, i-qBittorrent, neTransmission.
Kusuka ku-Simple, ungakha imithetho yetheku elizenzakalelayo. Lokhu kukuvumela ukuthi wakhe imithetho yezinsizakalo nezinhlelo zokusebenza ezingatholakali ku-Preconfigured. Ukulungisa uhla lwamachweba, ungawasetha usebenzisa i-syntax elandelayo: PORT1: PORT2.
Kusuka Kuthuthukile, ungakha imithetho ecacisiwe usebenzisa amakheli we-IP womthombo nendawo oya kuyo namachweba. Kunezinketho ezine ezitholakalayo zokuchaza umthetho: vumela, uphike, uphike, futhi ubeke umkhawulo. Umphumela wokuvumela nokuphika uyazichaza. Ukwenqaba kuzobuyisela umyalezo othi “ICMP: ukuphela okungafinyeleleki” kulowo ocelayo. Umkhawulo ukuvumela ukuthi ukhawule inani lemizamo yokuxhumeka engaphumelelanga. Lokhu kukuvikela ekuhlaselweni ngamandla.
Uma umthetho ungeziwe, uzovela ewindini elikhulu le-gufw.
Lapho umthetho usudaliwe, uzokhonjiswa ewindini elikhulu leGufw. Ungahlola futhi umthetho kusuka kusiginali yeshell ngokuthayipha isimo Sudo ufw.
Ukufunda okungajwayelekile ukubhala, okuhle okuthile okuthile
Ngeke ngikudelele, njengoba wenza ngokuzibiza ngokungajwayelekile, ngamaphutha ngokubhala, kepha kufanele ngikutshele ukuthi "ubona umucwana esweni lomunye, kanti awuboni ugongolo kwelakho."
Kulayini owodwa obhaliwe, wenze amaphutha amaningi nokushiya okuthile; okubaluleke kakhulu, mhlawumbe, ukufaka esikhundleni se-infinitive yamanje ngento ebalulekile.
Angiyena uchwepheshe, kepha njengoba ngifunda, ukuvimbela imishini ekuphenduleni izicelo ze-echo (isimo esincane sokungabonakali kwemishini yethu nokudlulisa isithwebuli setheku kahle) kuyadingeka ukulandela lezi zinyathelo:
$ sudo ufw inike amandla
$ sudo nano /etc/ufw/before.rules
Lapho ulayini othi:
-A ufw-before-input -p icmp –icmp-type echo-request -j YAMUKELA
ngakho-ke kubukeka kanjena:
# -A ufw-before-input -p icmp –icmp-type echo-request -j YAMUKELA
Gcina ku-nano ngokulawula + O. Phuma ngokulawula + X.
Bese:
$ sudo ufw khubaza
$ sudo ufw inike amandla
Ngenze njalo kwi-PC yami. Othile uyangilungisa uma kungalungile.
Sawubona, kuliqiniso ukuthi enguqulweni engama-64-bit i-GUI yehlukile. Ngicabanga ukuthi ayinembile njenge-GuardDog, kepha ngiyizamile yanginika imiphumela engcono ngamachweba athile ayengixaka, ngakho-ke i-gufw yayivele isebenza. Ngakho-ke lokhu okuthunyelwe kwakungifanele. Ngiyabonga Asisebenzise ...
Ngokwazi kwami, kufanele kusebenze noma ngabe uqala kabusha.
Lolu hlelo luyisixhumi esibonakalayo se-firewall esiza ngokuzenzakalela ku-Ubuntu.
Halala! UPaul.
Lapho i-firewall isilungisiwe, ingabe isasebenza noma ngabe uqala kabusha noma kufanele iqale kukho konke ukungena ngemvume? Ngiyabonga kusengaphambili ngempendulo.
Siyabonga ngokuthunyelwe.
Ngiyi-newbie impela futhi angiqiniseki ukuthi ngabe engikwenzayo kulungile yini ukuvikelwa okusebenzayo. Ukuphela kwento engiyilanda kusuka ku-inthanethi yi-Ubuntu iso namanye ama-distros, ngakho-ke ngithanda ukuthi wonke amachweba avaliwe futhi i-ufw ngiyisebenzise ngendlela elandelayo kukhonsoli.
»Sudo ufw sikwazi», lokhu kubuyisela umyalezo wokuthi i-firewall iyasebenza, kwesinye isinyathelo ngenza ukuguqulwa okulandelayo ngokufaka umyalo olandelayo kukhonsoli:
"Sudo gedit /etc/ufw/before.rules"
Esikrinini esilandelayo esivelayo ngilungisa umugqa lapho "kwenziwe khona" ngophawu lwe-hash ekuqaleni komugqa ukusuka kwesobunxele ngokweqile.
Manje umbuzo ebengifuna ukukubuza wona: ngabe lokhu kulungile ukuvikela ikhompyutha yami?
Ngibonga kusengaphambili ngempendulo nangezinto ezinhle kakhulu.
Yebo kunjalo. Uma kwenzeka ufuna ukudala imithetho, ngincoma ukusebenzisa i-gufw. 🙂
Halala! UPaul.
Ngiyabonga kakhulu futhi nginomusa ovela eSpain
Ngifake inguqulo yami engu-10.10.1 ku-Ubuntu 10.10 AMD64 yehlukile, okungenani ku-GUI kusuka kuleyo oyichazayo.
Yilokho ebengikufuna isikhathi eside, ngiyabonga.
I-cello enhle kanjani! Ngiyajabula!
Halala! UPaul.
yandri ngimusha ku-linux, umbuzo wami uthi ingabe kulula ukumisa i-firewall kukho konke ukwabiwa?
kuthiwa funda ...
Angikwazi ukwengeza iLibreOffice Impress kokuhlukile. Ngiyayidinga ukuze ngikwazi ukusebenzisa irimothi (i-Impress Remote) nge-wi fi. Kuze kube manje isixazululo bekuwukukhubaza isikhashana umlilo
Sawubona…
Indatshana enhle kakhulu. Iwusizo kakhulu
Muchas Gracias
Sawubona mngani ngisebenzisa ubuntu 14.10, ngilandele izinyathelo ozishilo ukuphawula lo mthetho
# -A ufw-before-input -p icmp –icmp-type echo-request -j YAMUKELA
Kepha lapho ngenza kabusha ukuskenwa kwetheku, kufanele ngiphinde ngivule izicelo zePing (ICMP Echo), ngisebenzisa isithwebuli se-GRC ShieldsUp https://www.grc.com/x/ne.dll?bh0bkyd2 , noma yisiphi esinye isixazululo ??
I-gracias