Vikela ikhompyutha yakho ekulweni ne-ping

Mayelana nomyalo we-ping

Ngephrothokholi ye-ICMP, leyo umyalo odumile ping Siyakwazi ukuthi ngabe ikhompyutha ethile iyaphila kunethiwekhi, uma sinemizila, ngihamba kuyo ngaphandle kwezinkinga.

Kuze kube manje ibukeka inenzuzo futhi, kepha njengamathuluzi amaningi amahle noma izinhlelo zokusebenza, ingasetshenziswa ngezinhloso eziyingozi, ngokwesibonelo i-DDoS ene-ping, engahumusha ibe yizicelo eziyi-100.000 nge-ping ngomzuzu noma ngomzuzwana, shayisa ikhompyutha yokugcina noma inethiwekhi yethu.

Noma kunjalo, ngezikhathi ezithile sifuna ikhompyutha yethu ingaphenduli izicelo ze-ping ezivela kwabanye kunethiwekhi, okusho ukuthi, zivele zingaxhunyiwe, ngoba lokhu kufanele sikhubaze impendulo ye-ICMP protocol ohlelweni lwethu.

Ungaqinisekisa kanjani ukuthi siyinike amandla yini inketho yokuphendula i-ping

Kunefayela kusistimu yethu esivumela ukuthi silichaze ngendlela elula kakhulu, uma sinike amandla impendulo ye-ping noma cha, yile: / proc / sys / net / ipv4 / icmp_echo_ignore_all

Uma lelo fayela liqukethe u-0 (zero), khona-ke noma ngubani osithwebula uzothola impendulo noma nini lapho ikhompyutha yethu iku-inthanethi, noma kunjalo, uma sibeka 1 (eyodwa) ngakho-ke akunandaba ukuthi i-PC yethu ixhunyiwe noma cha, kuzobonakala kungenjalo.

Ngamanye amagama, ngomyalo olandelayo sizohlela lelo fayela:

sudo nano /proc/sys/net/ipv4/icmp_echo_ignore_all

Siguqula 0 okwesikhathi a 1 bese sicindezela u- [Ctrl] + [O] ukuze asindise, bese u- [Ctrl] + [X] ephuma.

Ilungile, ikhompyutha yethu ayiphenduli ekuthini kwabanye.

Ezinye izindlela zokuzivikela ekuhlaselweni yi-ping

Enye indlela ngokusobala isebenzisa i-firewall, isebenzisa iptables kungenziwa futhi ngaphandle kokuhlupheka okuningi:

sudo iptables -A INPUT -p icmp -j DROP

Ngemuva kwalokho khumbula, imithetho ye-iptables iyahlanzwa lapho ikhompyutha iqala kabusha, kufanele ngenye indlela silondoloze ushintsho, kungaba ngokusebenzisa iptables-save kanye ne-iptables-restore, noma ngokwenza iskripthi uqobo.

Futhi bekulokhu 🙂


Okuqukethwe yi-athikili kunamathela ezimisweni zethu ze izimiso zokuhlelela. Ukubika iphutha chofoza lapha.

Amazwana ayi-17, shiya okwakho

Shiya umbono wakho

Ikheli lakho le ngeke ishicilelwe. Ezidingekayo ibhalwe nge *

*

*

  1. Ubhekele imininingwane: Miguel Ángel Gatón
  2. Inhloso yedatha: Lawula Ugaxekile, ukuphathwa kwamazwana.
  3. Ukusemthethweni: Imvume yakho
  4. Ukuxhumana kwemininingwane: Imininingwane ngeke idluliselwe kubantu besithathu ngaphandle kwesibopho esisemthethweni.
  5. Isitoreji sedatha: Idatabase ebanjwe yi-Occentus Networks (EU)
  6. Amalungelo: Nganoma yisiphi isikhathi ungakhawulela, uthole futhi ususe imininingwane yakho.

  1.   i-neysonv kusho

    umnikelo omuhle kakhulu. Ngitshele, kungasebenzela ukugwema izicelo zokunqanyulwa ??? njengalapho befuna ukuqhekeka inethiwekhi besebenzisa i-aircrack-ng. Ngisho ngoba uma ngokusobala sinqanyuliwe ngeke bakwazi ukusithumela izicelo ezinjalo. Siyabonga ngokufaka

    1.    I-PopArch kusho

      Akusebenzi ngaleyo ndlela, lokhu kuvimbela kuphela impendulo ye-icmp echo, ngakho-ke uma umuntu efuna ukuhlola ukuxhumana nesicelo se-icmp echo ikhompyutha yakho izokwenza icmp echo inganaki ngakho-ke umuntu ozama ukuhlola ukuxhumana uzothola Uhlobo lokuphendula "umsingathi ubonakala uphansi noma uvimba ama-ping probes", kepha uma othile eqapha inethiwekhi nge-airodump noma ngethuluzi elifanayo, uzokwazi ukubona ukuthi uxhumekile ngoba lawa mathuluzi ahlaziya amaphakethe athunyelwa ku AP noma itholwe kusuka ku-AP

  2.   UFrankSanabria kusho

    Kumele kuqashelwe ukuthi kungokwesikhashana, ngemuva kokuqalisa kabusha i-pc yakho izophinda ithole ama-pings, ukuyishiya ingunaphakade, maqondana neqhinga lokuqala lokulungiselela ifayela le / /etc/sysctl.conf futhi ekugcineni engeza i- net.ipv4.icmp_echo_ignore_all = 1 futhi ngenhlonipho Ithiphu yesibili iyafana kodwa ngaphezulu "Yinde" (Gcina i-Iptables Conf, yenza iskripthi esibonakalayo esenziwa lapho uhlelo luqala, nezinto)

  3.   mmm kusho

    Sawubona. Kungenzeka yini ukuthi kukhona okungahambi kahle? noma kungaba yini? ngoba kubuntu alikho lelo fayela ......

  4.   Franz kusho

    Kwakungenaphutha njengenjwayelo.
    Ukubheka okuncane, lapho ukuvala i-nano akusheshi i-Ctrl + X bese uphuma ngo-Y noma ngo-S
    Izinhlonipho

  5.   I-Yukiteru kusho

    Ithiphu enhle kakhulu, @KZKG, ngisebenzisa ithiphu efanayo phakathi kwamanye amaningi ukwenza ngcono ukuphepha kwe-PC yami kanye namaseva amabili engisebenza nawo, kepha ukugwema umthetho we-iptables, ngisebenzisa i-sysctl nefolda yayo ukumisa /etc/sysctl.d/ nefayela enginamathisela kulo imiyalo edingekayo ukuze kuthi lapho kuqala kabusha ngakunye kulayishwe futhi amabhuzu ami ohlelo anawo wonke amanani asevele elungisiwe.

    Endabeni yokusebenzisa le ndlela, vele udale ifayela XX-local.conf (XX kungaba inombolo kusuka ku-1 kuye ku-99, nginayo ngo-50) bese ubhala:

    net.ipv4.icmp_echo_ignore_all = 1

    Kakade banomphumela ofanayo.

    1.    jsan92 kusho

      Isixazululo esilula, ngiyabonga
      Yimiphi eminye imiyalo onayo kulelo fayela?

      1.    I-Yukiteru kusho

        Noma imuphi umyalo ophathelene nokuhlukahluka kwe-sysctl futhi ongasetshenziswa nge-sysctl ungasetshenziswa ngale ndlela.

      2.    UFrankSanabria kusho

        Ukubona amanani ahlukile ongawafaka kuhlobo lwe-sysctl ku-terminal sysctl -a yakho

  6.   USolrak Rainbowarrior kusho

    Ku-openSUSE angikwazanga ukuyihlela.

  7.   David kusho

    Kuhle
    Enye indlela esheshayo kungaba ukusebenzisa i-sysctl

    #sysctl -w net.ipv4.icmp_echo_ignore_all = 1

  8.   cpolane kusho

    Njengoba kushiwo, ku-IPTABLES ungasenqaba nesicelo se-ping sayo yonke into ngo:
    iptables -I-INPUT -p icmp -j DROP
    Manje, uma sifuna ukwenqaba noma yisiphi isicelo ngaphandle kwesicelo esithile, singakwenza ngale ndlela elandelayo:
    Simemezela okuguqukayo:
    IFEXT = 192.168.16.1 #i-IP yami
    I-IP egunyaziwe = 192.168.16.5
    ama-iptables -I-INPUT -i $ IFEXT -s $ IPHUMILE I-IP -p icmp -m icmp –icmp-type echo-request -m ubude – ubude 28: 1322 -m umkhawulo –limit 2 / sec –limit-burst 4 -j ACCEPT

    Ngale ndlela sigunyaza kuphela leyo IP ukuthi ibambe i-PC yethu (kepha ngemikhawulo).
    Ngiyethemba ilusizo kuwe.
    Salu2

  9.   loverdelinux ... nolook.com kusho

    Wow, umehluko phakathi kwabasebenzisi, ngenkathi ama-windowseros ekhuluma ngokuthi ungadlala kanjani i-halo noma ububi obuphakathi kwe-Linux obudina umhlaba ngezinto ezinjengalezi.

    1.    KZKG ^ Gaara kusho

      Futhi yingakho iWindowseros ngaleso sikhathi yazi kuphela ukuthi idlala kanjani, kuyilapho iLinuxeros iyilabo abakwazi ngempela ukuphathwa okuthuthukile kwe-OS, amanethiwekhi, njll.
      Siyabonga ngokusivakashela 😀

  10.   umsebenzisi kusho

    Sanibonani eCoordiales
    Ingqikithi ye- ilusizo kakhulu futhi iyasiza ngezinga elithile.
    Ngiyabonga

  11.   Gonzalo kusho

    uma amafasitela ethola ngalokhu uzobona ukuthi bayahlanya

  12.   Lolo kusho

    kuma-iptables okufanele uwafake ku-IMPUT nakokunye ku-DROP?