Ungayisetha kanjani i-firewall ku-Ubuntu

Njengawo wonke ama-Linux distros, Ubuntu usevele uza ne-firewall (firewall) efakiwe. Lesi firewall, empeleni, sifakwa ku-kernel. Ku-Ubuntu, isikhombimsebenzisi somugqa womyalo we-firewall sathathelwa indawo yisikripthi esisebenziseka kalula. Kodwa-ke, i-ufw (i-FireWall engaqondakali) nayo inesibonisi sokuqhafaza okulula ukusisebenzisa. Kulokhu okuthunyelwe, sizokwethula umhlahlandlela wesinyathelo ngesinyathelo sendlela yokusebenzisa i-gufw, isikhombimsebenzisi sokuqhafaza se-ufw, ukulungisa i-firewall yethu.


Ngaphambi kokufaka i-gufw, akuwona umqondo omubi ukubheka isimo se-ufw. Ukwenza lokhu, ngavula ukuphela futhi ngabhala:

sudo ufw isimo

Umphumela kufanele usho okuthile okufana nalokhu: "Isimo: akusebenzi". Leso yisimo esizenzakalelayo se-firewall ku-Ubuntu: ifakiwe kepha ikhutshaziwe.

Ukufaka i-gufw, ngavula i-Ubuntu Software Center ngayisesha ukusuka lapho.

Ungayifaka futhi kusuka ku-terminal ngokuthayipha:

sudo apt-get ukufaka gufw

Ukusetha i-gufw

Uma usufakiwe, ungayifinyelela kusuka ku-System> Administration> izilungiselelo ze-Firewall.

Njengoba ukwazi ukubona kusikrini-skrini, i-ufw isebenza ngokuzenzakalela yamukela konke ukuxhumana okuphumayo futhi yenqaba konke ukuxhumana okungenayo (ngaphandle kwalezo ezihlobene neziphumayo). Lokhu kusho ukuthi noma yiluphi uhlelo lokusebenza olisebenzisayo luzokwazi ukuxhuma ngaphandle (kungaba yi-Intanethi noma ingxenye ye-Intranet yakho) ngaphandle kwezinkinga, kepha uma umuntu ovela komunye umshini efuna ukufinyelela kowakho, ngeke bakwazi.

Zonke izinqubomgomo zokuxhuma zigcinwa kufayela  / njll / okuzenzakalelayo / ufw. Ngokumangazayo, i-ufw ivimba i-IPv6 traffic ngokuzenzakalela. Ukuze uyinike amandla, hlela ifayela / njll / okuzenzakalelayo / ufw futhi ushintshe IPV6 = cha por IPV6 = yebo.

Idala imithetho yangokwezifiso

Chofoza inkinobho yokwengeza efasiteleni elikhulu le-gufw. Kunamathebhu amathathu okwenza imithetho yangokwezifiso: Okulungiselelwe ngaphambilini, okulula, nokuthuthukile.

Kusuka ku-Preconfigured ungakha uchungechunge lwemithetho ngenombolo ethile yezinsizakalo nezinhlelo zokusebenza. Izinsizakalo ezitholakalayo yilezi: FTP, HTTP, IMAP, NFS, POP3, Samba, SMTP, ssh, VNC neZeroconf. Izicelo ezikhona yilezi: I-Amule, uZamcolo, i-KTorrent, iNicotine, i-qBittorrent, neTransmission.

Kusuka ku-Simple, ungakha imithetho yetheku elizenzakalelayo. Lokhu kukuvumela ukuthi wakhe imithetho yezinsizakalo nezinhlelo zokusebenza ezingatholakali ku-Preconfigured. Ukulungisa uhla lwamachweba, ungawasetha usebenzisa i-syntax elandelayo: PORT1: PORT2.

Kusuka Kuthuthukile, ungakha imithetho ecacisiwe usebenzisa amakheli we-IP womthombo nendawo oya kuyo namachweba. Kunezinketho ezine ezitholakalayo zokuchaza umthetho: vumela, uphike, uphike, futhi ubeke umkhawulo. Umphumela wokuvumela nokuphika uyazichaza. Ukwenqaba kuzobuyisela umyalezo othi “ICMP: ukuphela okungafinyeleleki” kulowo ocelayo. Umkhawulo ukuvumela ukuthi ukhawule inani lemizamo yokuxhumeka engaphumelelanga. Lokhu kukuvikela ekuhlaselweni ngamandla.

Uma umthetho ungeziwe, uzovela ewindini elikhulu le-gufw.
Lapho umthetho usudaliwe, uzokhonjiswa ewindini elikhulu leGufw. Ungahlola futhi umthetho kusuka kusiginali yeshell ngokuthayipha isimo Sudo ufw.


Shiya umbono wakho

Ikheli lakho le ngeke ishicilelwe. Ezidingekayo ibhalwe nge *

*

*

  1. Ubhekele imininingwane: Miguel Ángel Gatón
  2. Inhloso yedatha: Lawula Ugaxekile, ukuphathwa kwamazwana.
  3. Ukusemthethweni: Imvume yakho
  4. Ukuxhumana kwemininingwane: Imininingwane ngeke idluliselwe kubantu besithathu ngaphandle kwesibopho esisemthethweni.
  5. Isitoreji sedatha: Idatabase ebanjwe yi-Occentus Networks (EU)
  6. Amalungelo: Nganoma yisiphi isikhathi ungakhawulela, uthole futhi ususe imininingwane yakho.

  1.   i-topo kusho

    Ukufunda okungajwayelekile ukubhala, okuhle okuthile okuthile

    1.    jm kusho

      Ngeke ngikudelele, njengoba wenza ngokuzibiza ngokungajwayelekile, ngamaphutha ngokubhala, kepha kufanele ngikutshele ukuthi "ubona umucwana esweni lomunye, kanti awuboni ugongolo kwelakho."
      Kulayini owodwa obhaliwe, wenze amaphutha amaningi nokushiya okuthile; okubaluleke kakhulu, mhlawumbe, ukufaka esikhundleni se-infinitive yamanje ngento ebalulekile.

  2.   U-Adrian kusho

    Angiyena uchwepheshe, kepha njengoba ngifunda, ukuvimbela imishini ekuphenduleni izicelo ze-echo (isimo esincane sokungabonakali kwemishini yethu nokudlulisa isithwebuli setheku kahle) kuyadingeka ukulandela lezi zinyathelo:

    $ sudo ufw inike amandla

    $ sudo nano /etc/ufw/before.rules
    Lapho ulayini othi:
    -A ufw-before-input -p icmp –icmp-type echo-request -j YAMUKELA
    ngakho-ke kubukeka kanjena:
    # -A ufw-before-input -p icmp –icmp-type echo-request -j YAMUKELA

    Gcina ku-nano ngokulawula + O. Phuma ngokulawula + X.

    Bese:
    $ sudo ufw khubaza
    $ sudo ufw inike amandla

    Ngenze njalo kwi-PC yami. Othile uyangilungisa uma kungalungile.

  3.   Chelo kusho

    Sawubona, kuliqiniso ukuthi enguqulweni engama-64-bit i-GUI yehlukile. Ngicabanga ukuthi ayinembile njenge-GuardDog, kepha ngiyizamile yanginika imiphumela engcono ngamachweba athile ayengixaka, ngakho-ke i-gufw yayivele isebenza. Ngakho-ke lokhu okuthunyelwe kwakungifanele. Ngiyabonga Asisebenzise ...

  4.   Masisebenzise iLinux kusho

    Ngokwazi kwami, kufanele kusebenze noma ngabe uqala kabusha.
    Lolu hlelo luyisixhumi esibonakalayo se-firewall esiza ngokuzenzakalela ku-Ubuntu.
    Halala! UPaul.

  5.   U-Oscar Laforgue kusho

    Lapho i-firewall isilungisiwe, ingabe isasebenza noma ngabe uqala kabusha noma kufanele iqale kukho konke ukungena ngemvume? Ngiyabonga kusengaphambili ngempendulo.

  6.   Imvu54 kusho

    Siyabonga ngokuthunyelwe.
    Ngiyi-newbie impela futhi angiqiniseki ukuthi ngabe engikwenzayo kulungile yini ukuvikelwa okusebenzayo. Ukuphela kwento engiyilanda kusuka ku-inthanethi yi-Ubuntu iso namanye ama-distros, ngakho-ke ngithanda ukuthi wonke amachweba avaliwe futhi i-ufw ngiyisebenzise ngendlela elandelayo kukhonsoli.
    »Sudo ufw sikwazi», lokhu kubuyisela umyalezo wokuthi i-firewall iyasebenza, kwesinye isinyathelo ngenza ukuguqulwa okulandelayo ngokufaka umyalo olandelayo kukhonsoli:
    "Sudo gedit /etc/ufw/before.rules"
    Esikrinini esilandelayo esivelayo ngilungisa umugqa lapho "kwenziwe khona" ngophawu lwe-hash ekuqaleni komugqa ukusuka kwesobunxele ngokweqile.
    Manje umbuzo ebengifuna ukukubuza wona: ngabe lokhu kulungile ukuvikela ikhompyutha yami?
    Ngibonga kusengaphambili ngempendulo nangezinto ezinhle kakhulu.

  7.   Masisebenzise iLinux kusho

    Yebo kunjalo. Uma kwenzeka ufuna ukudala imithetho, ngincoma ukusebenzisa i-gufw. 🙂
    Halala! UPaul.

  8.   Imvu54 kusho

    Ngiyabonga kakhulu futhi nginomusa ovela eSpain

  9.   IMiquel Mayol i Tur kusho

    Ngifake inguqulo yami engu-10.10.1 ku-Ubuntu 10.10 AMD64 yehlukile, okungenani ku-GUI kusuka kuleyo oyichazayo.

    Yilokho ebengikufuna isikhathi eside, ngiyabonga.

  10.   Masisebenzise iLinux kusho

    I-cello enhle kanjani! Ngiyajabula!
    Halala! UPaul.

  11.   i-yandri kusho

    yandri ngimusha ku-linux, umbuzo wami uthi ingabe kulula ukumisa i-firewall kukho konke ukwabiwa?

  12.   yini ithawula kusho

    kuthiwa funda ...

  13.   I-LinuxUser kusho

    Angikwazi ukwengeza iLibreOffice Impress kokuhlukile. Ngiyayidinga ukuze ngikwazi ukusebenzisa irimothi (i-Impress Remote) nge-wi fi. Kuze kube manje isixazululo bekuwukukhubaza isikhashana umlilo

  14.   Alexander ... kusho

    Sawubona…
    Indatshana enhle kakhulu. Iwusizo kakhulu
    Muchas Gracias

  15.   Danny kusho

    Sawubona mngani ngisebenzisa ubuntu 14.10, ngilandele izinyathelo ozishilo ukuphawula lo mthetho

    # -A ufw-before-input -p icmp –icmp-type echo-request -j YAMUKELA

    Kepha lapho ngenza kabusha ukuskenwa kwetheku, kufanele ngiphinde ngivule izicelo zePing (ICMP Echo), ngisebenzisa isithwebuli se-GRC ShieldsUp https://www.grc.com/x/ne.dll?bh0bkyd2 , noma yisiphi esinye isixazululo ??

    I-gracias