Syn-flood protection:
[root@ayazero foo]# iptables -A FORWARD -p
tcp --syn -m limit --limit 1/s -j ACCEPT
Furtive port scanner:
[root@ayazero foo]# iptables -A FORWARD -p
tcp --tcp-flags SYN,ACK,FIN,RST RST -m limit --limit 1/s -j ACCEPT
Ping of death:
[root@ayazero foo]# iptables -A FORWARD -p
icmp --icmp-type echo-request -m limit --limit 1/s -j ACCEPT页码:[1] [2] [3] [4] [5] [6] 第4页、共6页 |