²©¿ÍÊ×Ò³
×¢²á
½¨ÒéÓë½»Á÷
ÅÅÐаñ
¼ÓÈëÓÑÇéÁ´½Ó
ÍÆ¼ö
ͶËß
ËÑË÷£º
°ïÖú
»¢×Ó---ÍøÂçÉú»î
ÖÚÈ˽ÔÐÑ£¬ÎÒ¶À×í£¡
huzi1986.cublog.cn
¹ÜÀí²©¿Í
·¢±íÎÄÕÂ
ÁôÑÔ
ÊղؼÐ
²©¿ÍȦ
ÒôÀÖ
Ïà²á
ÎÄÕÂ
¡¤ Cent OS
¡¤ Database
}
¡¤ MYSQL
¡¤ ORACLE
¡¤ С¼¼ÇÉ
¡¤ Firewall
¡¤ freebsd
¡¤ ÍøÂ簲ȫ
¡¤ MAIL
¡¤ openbsd
¡¤ Perl
¡¤ PHP
¡¤ SHELL
¡¤ Windows Server System
Ê×Ò³
¹ØÓÚ×÷Õß
ÐÕÃû£ºÀÏ»¢ Ö°Òµ£º´ò¹¤µÄ ÄêÁ䣺³ÉÄêÁË Î»Ö㺹㶫ÉîÛÚ ¸öÐÔ½éÉÜ£ºÃ»ÓÐʲô¸öÐÔ!
||
<<
>>
||
ÎҵķÖÀà
ÎÄÕÂÁбí - freebsd
ipfw ʵÀý
<DIV>################ Start of IPFW rules file ###############################<BR># Flush out the list before we begin.<BR>ipfw -q -f flush</DIV> <DIV># Set rules command prefix<BR>cmd="ipfw -q add"<BR>pif="sis0" # public interface name of NIC<BR> # facing the public Internet</DIV> <DIV>#################################################################<BR># No restrictions on Inside LAN Interfa¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-12-19 ©ª
ÔĶÁ(278)
©ª
ÆÀÂÛ(0)
[×ªÔØ]FreeBSDϵÄarp·À»¤
<font style="font-size: 14pt;" color="#02368d"><b>[×ªÔØ]</b></font><font style="font-size: 14pt;" color="#295200"><b>FreeBSDϵÄarp·À»¤</b></font><table style="border-collapse: collapse;" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td><div style="margin: 15px;" id="art"><div> <p>»ùÓÚϵͳ±¾Éí»·¾³ºÍÃüÁîµÄ¸ü¼ò±ãÒ×ÐÐÖ®·¨£¬Í¨¹ý×ÔÉíipÓëmacµÄ°ó¶¨²¢¶ÔÍ⣨ÄÚÍø£©Ðû¸æµÄÐÎÊÆÀ´¶ôÖÆarpÆÛƵÄÇé¿ö¡£</p> <p>Ê×ÏÈʹÓÃifconfigÀ´»ñµÃµ±Ç°ÍøÂç½Ó¿ÚµÄmacµØÖ·£¬È»ºó½«±¾»úÄÚÍøÍø¿¨ipµØÖ·+±¾»úÄÚÍøÍø¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-12-12 ©ª
ÔĶÁ(177)
©ª
ÆÀÂÛ(0)
FreeBSD쵀CLOSE_WAIT
ÔÚFreeBSDÏ£¬¿´µ½ºÜ¶àapache²úÉúµÄCLOSE_WAIT״̬£¬ÕâÖÖ״̬Êǵȴý¿Í»§¶Ë¹Ø±Õ£¬µ«Êǿͻ§¶ËÄDZ߲¢Ã»ÓÐÕý³£µÄ¹Ø±Õ£¬ÓÚÊÇÁôϺܶàÕâÑùµÄ¶«¶«£¬Ä¬ÈÏÇé¿ö£¬FreeBSDÓ¦¸ÃÔÚ3600ÃëÇå³ýµôÕâЩ£¬¸Ä³É10ÃëÇå³ý¡£<br><code><br><font size="2"><font style="background-color: rgb(21, 21, 21);" color="#669999" face="ÐÂËÎÌå">sysctl -w net.inet.ip.rtexpire=10<br>sysctl -w net.inet.ip.rtminexpire=10</font></font></code>
²é¿´È«ÎÄ
·¢±íÓÚ:2007-12-12 ©ª
ÔĶÁ(174)
©ª
ÆÀÂÛ(0)
rsyncÃüÁî²Î¿¼
<DIV> <P class=MsoNormal style="MARGIN: 0cm 0cm 0pt; TEXT-ALIGN: center; mso-pagination: widow-orphan" align=center><B><SPAN lang=EN-US style="FONT-SIZE: 14pt; COLOR: #d52847; FONT-FAMILY: Verdana">rsync</SPAN></B><B><SPAN style="FONT-SIZE: 14pt; COLOR: #d52847; FONT-FAMILY: ËÎÌå; mso-ascii-font-family: Verdana; mso-hansi-font-family: Verdana">ÃüÁî²Î¿¼</SPAN></B><SPAN lang=EN-US style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-font-kerning: 0pt; mso-bidi-font-family: ËÎÌå"><?xml:namespace prefi¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-12-07 ©ª
ÔĶÁ(213)
©ª
ÆÀÂÛ(0)
SFTP Ô¶³Ì±¸·Ý FreeBSD ϵͳÉ趨Îļþ¼°ÖØÒªÊý¾ÝÎļþ
<P class=MsoNormal style="MARGIN: 0cm 0cm 0pt; TEXT-ALIGN: left; mso-pagination: widow-orphan" align=left><SPAN lang=EN-US style="FONT-SIZE: 10pt; FONT-FAMILY: Helvetica; mso-font-kerning: 0pt"><?xml:namespace prefix = st1 ns = "urn:schemas-microsoft-com:office:smarttags" /><st1:chsdate w:st="on" Year="2005" Month="11" Day="29" IsLunarDate="False" IsROCDate="False"></st1:chsdate></SPAN><SPAN lang=EN-US style="FONT-SIZE: 12pt; FONT-FAMILY: ËÎÌå; mso-font-kerning: 0pt; mso-bidi-font-family: ËÎÌå">¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-11-16 ©ª
ÔĶÁ(163)
©ª
ÆÀÂÛ(0)
FreeBSD 6.2ÏÂΪapache 2.2.6ÅäÖÃssl
<DIV> <DIV class=lh3 id=veryContent style="OVERFLOW: hidden; WIDTH: 100%"> <TABLE class=contentTable cellSpacing=0 cellPadding=0> <TBODY> <TR> <TD style="FONT-SIZE: 12px"> <P>1¡¢°²×°apache<BR>apache22ûÓе¥¶ÀµÄmod_sslµÄport£¬¶øÊǼ¯³ÉÔÚapacheÖУ¬ÔÚ°²×°Ê±Ñ¡ÖÐmod_ssl<BR>cd /usr/ports/www/apache22<BR>make install <BR> <BR>2¡¢°²×°openssl<BR>cd /usr/ports/security/openssl<BR>make install <BR> <BR>3¡¢Éú³ÉÃÜÔ¿ºÍÖ¤Êé<BR>cd /usr/local/etc/apache22/httpd/c¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-11-16 ©ª
ÔĶÁ(188)
©ª
ÆÀÂÛ(0)
ports Èí¼þ°ü¹ÜÀí
<DIV>ʹÓÃPorts Collection <P>¡¡¡¡ÏÂÃæµÄ¼¸¸öС½ÚÖУ¬ ¸ø³öÁ˹ØÓÚÈçºÎʹÓà Ports Ì×¼þÀ´ÔÚÄúµÄϵͳÖа²×°»òÐ¶ÔØ³ÌÐòµÄ½éÉÜ¡£ ¹ØÓÚ¿ÉÓÃµÄ <TT class=COMMAND><FONT face=ÐÂËÎÌå>make</FONT></TT> targets ÒÔ¼°»·¾³±äÁ¿µÄ½éÉÜ£¬ ¿ÉÒÔÔÚ <A href="http://www.freebsd.org/cgi/man.cgi?query=ports&sektion=7"><SPAN class=CITEREFENTRY><FONT color=#0000ff><SPAN class=REFENTRYTITLE>ports</SPAN>(7)</FONT></SPAN></A> ÖÐÕÒµ½¡£</P> <DIV class=SECT2> <H2 class=SECT2><A id=PORTS-TREE name=PORTS-TREE>4.5.1 »ñµÃPorts Collect¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-11-16 ©ª
ÔĶÁ(208)
©ª
ÆÀÂÛ(0)
FREEBSDÈí¼þ°üµÄ¸üйÜÀí
<DIV> <P class=MsoNormal style="MARGIN: 0cm 0cm 0pt; LINE-HEIGHT: 130%; TEXT-ALIGN: left; mso-pagination: widow-orphan; mso-outline-level: 2" align=left><SPAN lang=EN-US style="FONT-SIZE: 15pt; COLOR: #494949; LINE-HEIGHT: 130%; FONT-FAMILY: Helvetica; mso-font-kerning: 0pt">[FreeBSD] portupgrade </SPAN><SPAN style="FONT-SIZE: 15pt; COLOR: #494949; LINE-HEIGHT: 130%; FONT-FAMILY: ËÎÌå; mso-font-kerning: 0pt; mso-ascii-font-family: Helvetica; mso-hansi-font-family: Helvetica; mso-bidi-font-famil¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-11-16 ©ª
ÔĶÁ(196)
©ª
ÆÀÂÛ(0)
mrtg ¼àÊÓ±¾»úÁ÷Á¿µÄÎÊÌâ
mrtg ¼àÊÓ±¾»úÁ÷Á¿µÄÎÊÌâ<br>СµÜÉÏ´Î×ömrtg µÄʱºò £¬¼àÊÓ²»Á˱¾»úµÄÁ÷Á¿¡£¡£¡£ºÇºÇ¡£ÔÀ´ÊÇûÓн¨Á¢snmpd.conf Îļþ<br>Ì«´ÖÐÄÁË<br><br><br>SNMP Error:<br>no response received<br>SNMPv1_Session (remote host: "localhost" [127.0.0.1].161)<br> community: "public"<br> request ID: -1300814939<br> &nbs¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-10-15 ©ª
ÔĶÁ(218)
©ª
ÆÀÂÛ(0)
ʹÓÃprozÀ´¼ÓËÙÄãµÄFreebsd ports°²×°
ÍæBSDµÄÅóÓѶ¼ÖªµÀ¡£ÓÐʱºòports ÏÂÔØ±È½ÏÂý¡£ÎÒÃÇÓÃprozilla À´¼ÓËÙport ÏÂÔØ¡£¡£ÕâÑù£¬¾Í²»Òª°×µÈÄÇô³¤Ê±¼ä <br><br>ʹÓÃprozÀ´¼ÓËÙÄãµÄFreebsd ports°²×° <br>°²×° <br>#cd /usr/ports/ftp/prozilla <br>#make install clean <br> <br>ÉèÖà <br>±à¼/etc/make.conf Ìî¼ÓÈçÏÂÁ½ÐУº <br>FETCH_CMD=/usr/local/bin/proz -s -k 10 -r --no-curses <br>DISABLE_SIZE=yes <br> <br> <br> <br> <br>
²é¿´È«ÎÄ
·¢±íÓÚ:2007-10-15 ©ª
ÔĶÁ(205)
©ª
ÆÀÂÛ(0)
sshµÄÅäÖÃÎļþ
<div> <h4 class="TextColor1" id="subjcns!83F6B9C8443599BF!129" style="margin-bottom: 0px;">sshµÄÅäÖÃÎļþ</h4> <div id="msgcns!83F6B9C8443599BF!129"> <div>ѧϰÁËÒ»ÏÂsshµÄÅäÖÃÎļþ,×÷¸ö¼Ç¼ÏÈ,ºÃ¼ÇÒä²»ÈçÀñÊÍ·Âï..:)<br>#·þÎñÆ÷¶ËÅäÖà /etc/ssh/sshd_config <br>#Ö»¿¼ÂÇÐÒé°æ±¾2 <br>/usr/local/etc/ssh/sshd_config<br>#È«¾ÖÅäÖà <br>VersionAddendum TecZm-20050505 #ÔÚtelnet ip 22ʱֻÄÜ¿´³öopensshµÄ°æ±¾£¬¿´²»³öOS <br>Protocol 2 #ʹÓÃÐÒé°æ±¾2 ¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-08-21 ©ª
ÔĶÁ(292)
©ª
ÆÀÂÛ(0)
mysql ÈëÃÅ
<P>ÓÉÓÚÐÂÊÖÈëÃÅPHP+Mysql¼¼Êõ£¬±Ø¶¨¶ÔMysql²Ù×÷´æÓÐÒÉÎÊ¡£</P> <P>¡¡¡¡¾¡¹ÜPHPMyadmin¹ÜÀíÊý¾Ý¿â¶ÔÐÂÊÖÀ´ËµÒ²²»·ÁΪһÖֺܺõķ½Ê½¡£µ«¸ü¶àµÄʵ¼ÊʹÓû¹Òª¿¿´ó¼Ò¶ÔMyqlÓï¾ä¸ñʽ<BR>µÄ¾«Í¨ºÍÊìÁ·µÄ²Ù×÷¡£</P> <P>¡¡¡¡ÎªÁË·½±ãÐÂÊÖ¾¡¿ìÈëÃÅ£¬ÕÆÎÕMysqlµÄ°ÂÃî¡£ÔÚÏ·ÑÁËÒ»¸öÀñ°Ýʱ¼äµÄµ÷ÊÔºÍÕûÀí£¬ÖÕÓÚÍê¸åÁËÕâ·Ý±È½ÏÍêÉÆµÄÈë<BR>Ãż¶²Ù×÷ʵÀýµÄÖ¸ÄÏ¡£Ï£ÍûÄܸøÐÂÈëÃŵÄÅóÓÑÑ﷫ָ·£¬ËÍÒ»Âú·«µÄ˳·ç¡£</P> <P> </P> <P>Mysql4.1.10³õ¼¶½â¶Á</P> <P>¡ù¡ù¡ù¡ù¡ù¡ù¡ù¡ù¡ù¡ù¡ù¡ù¡ù¡ùMysql ³õ¼¶½â¶Á £¨ËùÓð汾£º4.1.10£©¡ù¡ù¡ù¡ù¡ù¡ù¡ù¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-08-17 ©ª
ÔĶÁ(345)
©ª
ÆÀÂÛ(0)
ÔÚFreeBSD 6ÉÏÃæÔõô·ÀDDOS¹¥»÷
<P>ÔÚFreeBSD 6ÉÏÃæÔõô·ÀDDOS¹¥»÷</P> <P><BR> anthony дµ½: <BR>Á½ÄêǰµÄ°ì·¨ÏÖÔÚÔõô¿´ÕâÖÖ°ì·¨ <BR>ipfw add check-state <BR>ipfw add deny tcp from any to any established <BR>ipfw add allow tcp from my-net to any setup keep-state </P> <P><BR>DDoS»áÈÃipfw״̬±íѸËÙÌîÂú¡£ </P> <P>anthony дµ½: <BR>1£¬Ôö¼Ó±»¹¥»÷Õß×Ô¼ºµÄµÖ¿¹Á¦£¬±ÈÈçÔö´óÔÊÐítcpͬʱÁ¬½Ó½øÀ´µÄ°ü£¨¿¼ÑéÄãµÄosµÄÎȶ¨ÐÔÁË£¬solarisºÍfreebsdÎȶ¨ÐÔ¶¼²»´í£©£¬Ôö¼ÓÍø¿¨µÄ»º´æ£¬±ÈÈç </P> <P><BR>Íø¿¨»º´æÈçºÎÔö¼Ó£¿ </P> <P>anthony дµ½¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-08-17 ©ª
ÔĶÁ(181)
©ª
ÆÀÂÛ(0)
ÊÕ¼¯¿ÉÓõÄFREEBSD ports ¸üР·½·¨
<P>FREEBSD ports ¸üР·½·¨ <BR>[cybertingred ·¢±íÓÚ 2007-4-14 9:59:00]</P> <P>1.ÐÞ¸Ä/usr/examples/portsĿ¼ÏÂÃæµÄports-supfileÎļþ,¸ü¸ÄÏÂÔØ·þÎñÆ÷Ϊcvsup2.cn.freebsd.org<BR>È»ºócpµ½±¾µØÄ¿Â¼ÏÂ.<BR>cvsup -g -L 2 ports-supfile</P> <P>2.make.confµÄλÖÃÔÚ/usr/share/examples/etcÏÂÃæ<BR>Ôö¼Ó<BR>MASTER_SITE_BACKUP?= \ <BR><A href="ftp://ftp.cn.freebsd.org/pub/FreeBSD/ports/distfiles/${DIST_SUBDIR}/">ftp://ftp.cn.freebsd.org/pub/FreeBSD/ports/distfiles/${DIST_SUBDIR}/</A> \ <BR><A href="ftp://ftp.¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-08-17 ©ª
ÔĶÁ(214)
©ª
ÆÀÂÛ(0)
freebsd6.0ÖÐhttpdready ÎÊÌâ
<DIV>ÔÚ /boot/loader.conf ÖмÓÈëÈçÏÂÒ»ÐУº<BR>accf_http_load="yes"<BR>ÖØÐ†¢„Óapache22 ¾Í›]³öåeÁË¡£</DIV>
²é¿´È«ÎÄ
·¢±íÓÚ:2007-08-17 ©ª
ÔĶÁ(136)
©ª
ÆÀÂÛ(0)
ÈÃFreeBSD¸ü°²È«(Securing FreeBSD)
<DIV>ÈÃFreeBSD¸ü°²È«(Securing FreeBSD)</DIV> <DIV>×÷ÕߣºDru Lavigne <BR>·Ò룺Delphij </DIV> <DIV>ת×Ô¡¶CNFUGÆÚ¿¯¡·£º<A href="http://cvs.cnfug.org/cgi-bin/cvs.cgi?4@03">http://cvs.cnfug.org/cgi-bin/cvs.cgi?4@03</A></DIV> <DIV><BR>ǰ¼¸ÌìÎÒÕûÀíÁ˹ýÈ¥µÄһЩ±Ê¼Ç£¬ÒÔ¼°½ü¼¸ÄêÊÕ¼¯µÄһЩ°²È«½¨Òé¡£ÎÒÈÏΪÕâ¿ÉÄܶÔÄúÓаïÖú£¬ËùÒÔ±¾ÖÜÎÒ¾ÍÔÝÍ£ÎĵµÏµÁеÄÎÄÕ£¬Ð´Ò»µã¹ØÓÚʹÄãµÄFreeBSDϵͳ¸ü°²È«µÄÄÚÈÝ¡£</DIV> <DIV>ºÜÃ÷ÏÔ£¬ÔÚÕâ¸öÁìÓòÎÒ²»¿ÉÄÜÓÃһƪÎÄÕÂÈ«ÃæµØ½éÉÜËùÓеÄÊÂÇé¡£ÁíÍ⣬Ҳ²»¿ÉÄܸø³öÒ»¸ö·ÀÖ¹Ëĺ£½Ô×¼µÄ£¬±£Ö¤ÈκÎϵͳ¶¼°²È«µÄ·½°¸¡£</DIV> <DIV>ÔÚÎÒÕûÀí±Ê¼ÇµÄ¹ý³ÌÖУ¬ÎÒ×¢Òâµ½ºÜ¶à¶¼ÊǹØÓÚÈçºÎÈÃFreeBSD·þÎñÆ÷(È磬Web·þÎñÆ÷£¬Óʼþ·þÎñÆ÷£¬µÈµÈ)¸ü°²È«µÄ·½·¨¡£Èç¹ûÄãÓÃFreeBSD×öΪ¸öÈËϵͳ£¬²¢Ï£ÍûÍêÈ«µÄ×ÀÃæ¹¦Äܵϰ£¬Õâ¾Í²»Ì«¹»ÓÃÁË¡£Äã¿Ï¶¨²»Ô¸ÒâÒòΪijЩǿ»¯°²È«µÄÉèÖã¬Ôì³ÉijЩ¹¦ÄÜÎÞ·¨Ê¹Ó㬲¢Ôڴ˺óµÄÒ»ÖÜÄÚ¹ÂÁ¢ÎÞÔ®µØÓë¼ÆËã»ú½øÐв«¶·£¬Ö±µ½ÕÒµ½ÎÊÌâµÄËùÔÚ¡£</DIV> <DIV>Òò´Ë£¬Ä㽫עÒâµ½£¬ºÍÐí¶àÆäËü°²È«½Ì³Ì²»Í¬£¬Õâ·ÝÎĵµ²¢²»½¨ÒéÄãÐÞ¸ÄFreeBSDϵͳÖÐÎļþµÄȨÏÞ¡£ÕâÊÇÓÐÒâµÄ¡£³ý·ÇÄãÕýÔÚÇ¿»¯Ò»Ì¨Éú²ú·þÎñÆ÷µÄ°²È«ÐÔ£¬²¢ÇÒÊ®·ÖÃ÷°××Ô¼ºÔÚ×öʲô£¬·ñÔò¾ø²»ÒªÐÞ¸ÄÎļþµÄȨÏÞ¡£(Èç¹ûÄãÒ»¶¨Òª×ö×öʵÑéµÄ»°£¬ÇëÔÚ×Ô¼ºµÄhomeÎļþ¼ÐÖÐ×÷)¡£²»È»µÄ»°£¬Ò»Ð©¶«Î÷¿ÉÄܾͻáÍ£Ö¹¹¤×÷£¬ÀýÈ磬µç×ÓÓʼþ£¬X Windowϵͳ£¬ÉùÒô¡£¹ÖÊ»áÔÚ²»¾ÒâµÄʱ¿Ì·¢Éú£¬ÈÃÄãÍ·ÌÛÁ¼¾ÃÖ®ºó²ÅÒâʶµ½¿ÉÄÜÊÇÒ»ÖÜǰµÄij¸öȨÏÞÉèÖÃÔì³ÉµÄÎÊÌâ¡£</DIV> <DIV>ÎÒÃǶ¼ÖªµÀInternet²¢²»×ÜÊÇÒ»¸öÓѺõĵط½£¬¶øÇÒÄã¿ÉÄÜÒ²²»ÏëÈÃÁíÒ»¸öµØ·½µÄÈËÓµÓÐÓëÄãÒ»ÑùµÄ·ÃÎÊÐí¿ÉȨÏÞ¡£ÕâÒâζ×ÅÄã¿ÉÄܲ»Ï£ÍûÔÚûÓÐijÖÖ·À»ðǽµÄǰÌáÏ·ÃÎÊInternet¡£ÐÒÔ˵ÄÊÇ£¬ÄãµÄFreeBSDϵͳ֧³ÖÁ¼ÖÖ·À»ðǽ£ºipfw ºÍ ipfilter¡£¸üÁîÈËÕñ·ÜµÄÊÇ£¬Í¨Ë×Ò×¶®µÄÎĵµÕýÔÚѸËÙÔö¼Ó¡£Èç¹ûÄã²»ÔÚ·À»ðǽºóÃæ£¬ÄÇôÇ뻨һ¸öÖÜÁùÏÂÎçµÄʱ¼ä¶ÁÒ»¶ÁÈçºÎÔÚÄãµÄϵͳÉÏÅäÖ÷À»ðǽµÄÎÄÕ£¬²¢²ÙÁ·Ò»°Ñ¡£Ä㽫Ϊ´Ë¸Ðµ½Óä¿ì£¬ÒÔÏÂÊÇÒ»²¿·Ö¿ÉÓõÄ×ÊÔ´£º</DIV> <DIV>man ipfw<BR>FreeBSD Handbook: Section 10.7 -- Firewalls<BR>Setting Up a Dual-Homed Host using IPFW and NATD</DIV> <DIV>man ipf<BR>IPFilter and PF resources</DIV> <DIV>ºÃµÄ°²È«×ÜÊÇ¡°²ã²ãÉè·À¡±£¬ÕâÒâζ×ÅÈç¹ûÒ»¸ö»úÖÆÊ§Ð§ÁË£¬ÈÔÈ»Óб¸ÓõĻúÖÆ¡£¼´Ê¹ÄãµÄϵͳÒѾÊܵ½ÁË·À»ðǽµÄ±£»¤£¬ÄãÈÔÈ»ÐèÒª½ûÓÃËùÓзþÎñ£¬³ýÁËÄÇЩ¾ø¶ÔÐèÒªµÄ¡£ÔÚ×ÀÃæÏµÍ³ÖУ¬²»ÐèÒªºÜ¶àµÄ·þÎñ¡£</DIV> <DIV>ÓÃÏÂÃæµÄÃüÁî¿ÉÒԲ鿴ÄÄЩ·þÎñÕýÔÚÊÔͼ¼àÌýÁ¬½ÓÄãµÄϵͳ£º<BR>sockstat -4<BR>Êä³öµÄ²î±ð¿ÉÄܴܺó£¬ÕâÈ¡¾öÓÚÔÚ°²×°µÄ×îºó½×¶ÎÑ¡ÔñµÄÈí¼þ£¬ÒÔ¼°Ö®ºó×ÔÐа²×°µÄportºÍpackage¡£</DIV> <DIV>¶Ë¿Ú6000(X Window·þÎñÆ÷)ÊÇÊä³öÖзdz£³£¼ûµÄ£»Èç¹ûû¿´µ½ËüµÄ»°£¬Æô¶¯Ò»¸öX Window»á»°£¬È»ºóÖØÐÂÔËÐÐ sockstat -4¡£²»ÐÒµÄÊÇ£¬ÔÚ¹ýÈ¥µÄ¼¸ÄêÖÐÓкܶàÕë¶ÔX WindowµÄ¹¥»÷¡£ÐÒÔ˵ÄÊÇ£¬Ê¹ÓÃX²¢²»ÐèÒª´ò¿ª6000¶Ë¿Ú£¬²»±Øµ£ÐÄ£¬¼´Ê¹¹Ø±ÕÁËÕâ¸ö¶Ë¿Ú£¬ÈÔÈ»¿ÉÒÔʹÓÃͼÐνçÃæ£¡</DIV> <DIV>Ðí¶à·½·¨¿ÉÒԹصôÕâ¸ö¶Ë¿Ú¡£ÎÒ·¢ÏÖµÄ×î¼òµ¥µÄ·½·¨ÊdzÉΪ³¬¼¶Óû§£¬²¢±à¼ /usr/X11R6/bin/startx¡£ÕÒµ½ serverargs ÄÇÒ»ÐУ¬²¢°ÑËü¸ÄΪÀàËÆÏÂÃæµÄÑù×Ó£º<BR>serverargs="-nolisten tcp"<BR>±£´æÐÞ¸ÄÖ®ºó£¬ÒÔÆÕͨÓû§Éí·ÝÔËÐÐX²¢Ö´ÐÐ sockstat -4¡£Èç¹ûûÓдò×Ö´íÎó£¬ÄÇôX»áÏñÍù³£ÄÇÑùÆô¶¯£¬µ« sockstat -4 Êä³öÖв»»áÔÙ³öÏÖ¶Ë¿Ú6000¡£</DIV> <DIV>Èç¹ûÏëÁ˽â6000¶Ë¿Ú´ò¿ªµÄºó¹û£¬ÇëÔĶÁ Crash Course in X Window Security¡£</DIV> <DIV>ºÃÁË£¬ÏÖÔÚ sockstat -4 Êä³öÖеķþÎñÉÙÁËÒ»¸ö¡£ÎÒÃÇ»¹ÐèÒª´¦ÀíÒ»ÏÂÓʼþ£º¶Ë¿Ú 25 (smtp) ºÍ 587 (submission)¡£ÊÕ·¢Óʼþ²¢²»ÐèÒª 587 ¶Ë¿Ú£¬ÎªÁ˹رÕËü£¬ÎÒÃÇÐèÒªÐÞ¸Ä /etc/mail/sendmail.cf¡£²éÕÒÕâÒ»ÐУº<BR>O DaemonPortOptions=Port=587, Name=MSA, M=E<BR>È»ºóÔÚÇ°Ãæ¼ÓÉÏ # £¬²¢¸æËß sendmail ±ä»¯£º<BR>killall -HUP sendmail<BR>-HUP ²»»áɱµô sendmail£¬µ«Ëû»á¸æËßsendmailÖØÐ´¦Àí /etc/mail/sendmail.cf¡£Öظ´sockstat -4 £¬Ëü½«²»ÔÙÏÔʾ 587¡£</DIV> <DIV>ÄÇô¶Ë¿Ú25ÄØ£¿Äã¿ÉÄÜÐèÒª£¬Ò²¿ÉÄܲ»ÐèÒª´ò¿ªÕâ¸ö¶Ë¿Ú£¬ÕâÈ¡¾öÓÚʹÓÃʲôÑùµÄÓʼþ³ÌÐòÀ´ÊÕ·¢Óʼþ¡£¶ÔÓÚÔËÐÐ FreeBSD 4.6-RELEASE »ò¸ü¸ß°æ±¾µÄϵͳ£¬ÔÚ/etc/rc.confÖÐÔö¼ÓÏÂÃæµÄÐУº<BR>sendmail_enable="NO"<BR>½«¸æËß sendmail Ö»¼àÌý localhost£¬ÕâÔÊÐíËùÓеÄÓʼþ¿Í»§³ÌÐò·¢ËÍÓʼþ¡£Èç¹ûÄãÖªµÀÄãµÄÓʼþ¿Í»§³ÌÐò´øÓÐÄÚÖõÄSMTP´úÀí£¬»òÕßϲ»¶Ã°ÏÕ£¬ÄÇô¿ÉÒÔ³¢ÊÔһϣº<BR>sendmail_enable="NONE"<BR>Õ⽫³¹µ×¹Ø±Õ25¶Ë¿Ú¡£¼ì²éÒ»ÏÂÕâÊÇ·ñÈÃÄãÎÞ·¨·¢ËÍÓʼþÊǺÜÖØÒªµÄ£¬È·±£ÒѾ¹ØµôÁËËùÓÐÓ¦ÓóÌÐò£¬Ëæºó£¬ÒÔ³¬¼¶Óû§Éí·ÝÖ´ÐУº<BR>shutdown now<BR>ÊÕµ½Ìáʾºó°´»Ø³µ¡¢exit¡£ÖØÐµÇ¼ºó¸ø×Ô¼º·¢Ò»·âÓʼþ£¬Èç¹ûÊÕ²»µ½£¬ÄÇô°ÑNONE¸Ä»ØNO¡£</DIV> <DIV>Èç¹ûÄãµÄ"sockstat"ÏÔʾ¶Ë¿Ú111´ò¿ª£¬ÄÇô°ÑÏÂÃæ¼¸Ðмӵ½ /etc/rc.conf (»òÕߣ¬Èç¹ûÒѾÓÐÕâЩÐУ¬°Ñ YES ¸ÄΪ NO):<BR>nfs_server_enable="NO"<BR>nfs_client_enable="NO"<BR>portmap_enable="NO"<BR>PortmapÖ»ÓÐÔÚÔËÐÐNFSʱ²ÅÊDZØÐèµÄ£¬¶øÕâÍùÍù²»ÊÇFreeBSD×ÀÃæÏµÍ³µÄÐèÒª¡£ÀúÊ·ÉÏËüÓйýºÜ¶à°²È«ÎÊÌ⣬Òò´Ë³ý·ÇÄã¾ø¶ÔÐèÒªËü£¬·ñÔò¾Í±ðÓá£</DIV> <DIV>syslog (¶Ë¿Ú 514) Ò²¿ÉÄܳöÏÖÔÚÄãµÄÊä³ö½á¹ûÖС£ÎÒÃÇ¿ÉÄܲ¢²»Ï£ÍûÍêÈ«¹Øµô syslog £¬ÒòΪËüÌṩµÄÏûÏ¢¼Ç¼ÊÇÎÒÃÇÐèÒªµÄ¡£µ«ÎÒÃDz¢²»ÐèҪΪ´Ë´ò¿ª¶Ë¿Ú¡£ÔÚ /etc/rc.conf ÎļþÖÐÔö¼ÓÏÂÃæµÄÑ¡Ïî:<BR>syslogd_enable="YES"<BR>syslogd_flags="-ss"<BR>±êÖ¾ÖеÄss (È·ÈÏÓÃÁËÁ½¸ös£¬¶ø²»ÊÇÒ»¸ö) ½«½ûÖ¹À´×ÔÔ¶³ÌÖ÷»úµÄ¼Ç¼²¢¹Ø±Õ¶Ë¿Ú£¬µ«ÈÔÈ»ÔÊÐí localhost ½øÐÐÈÕÖ¾¼Ç¼¡£</DIV> <DIV>Ëæºó£¬È·ÈÏ /etc/rc.conf ÖÐinetd_enable²»ÊÇYES¡£Èç¹ûsockstatÊä³öÖÐÓÐinetd£¬ÄÇô/etc/inetd.confÖп϶¨ÓÐʲôÏîĿûÓб»×¢Ê͵ô£¬Èç¹û²»ÐèÒªµÄ»°£¬ÄÇô°ÑÄÇÒ»ÐÐÇ°Ãæ¼ÓÉÏ#£¬²¢ killall inetd¡£</DIV> <DIV>Èç¹ûÐèҪʹÓÃDHCP×Ô¶¯»ñÈ¡µØÖ·£¬ÄÇôÇë±£³Ödhclient (udp 6´ò¿ª£¬·ñÔò½«²»ÄÜˢеØÖ·¡£</DIV> <DIV>Èç¹ûÔÚ sockstat Êä³öÖз¢ÏÖÁËÆäËû¶«Î÷£¬ÄÇôÇë¿´¿´ man rc.conf ÀïÃæÓÐûÓйØÓÚÈçºÎ¹ØµôÕâЩ¶«Î÷µÄÌáʾ¡£Èç¹ûûÓеϰ£¬ÄÇôºÜ¿ÉÄÜÊÇij¸öÆô¶¯½Å±¾Æô¶¯ÁËһЩ·þÎñ³ÌÐò£¬ÇëÖ´ÐУº<BR>cd /usr/local/etc/rc.d<BR>À´¿´¿´ÄãµÄϵͳÖÐµÄÆô¶¯½Å±¾¡£¾ø´ó¶àÊý packages/ports »á°²×°Ò»¸öÀ©Õ¹ÃûΪsampleµÄʾ·¶½Å±¾ÓÃÓÚÆô¶¯·þÎñ£¬ÕâЩ½Å±¾²¢²»±»Ö´ÐУ»Ò²ÓÐһЩֱ½Ó°²×°Äܹ»Ö´ÐеĽű¾£¬ËüÃÇ»áÔÚ¼ÆËã»úÆô¶¯µÄʱºò¼ÓÔØ¡£½ûֹij¸ö½Å±¾ÖªÐÔ×î¼òµ¥µÄ·½·¨ÊǰÑËüµÄÀ©Õ¹Ãû¸ÄΪsample£¬ËæºóɱµôÊØ»¤³ÌÐò£¬ÕâÑùsockstat¾Í²»»áÔÙ˵ʲôÁË¡£ ¾ÙÀýÀ´Ëµ£¬ÎÒ×î½ü°²×°ÁË ethereal ½á¹û·¢ÏÖ snmpd ³öÏÖÔÚ sockstat -4 µÄÊä³öÖУ¬Õâ¸ö³ÌÐòÔÚ°²È«·½ÃæÃûÉù²»¼Ñ£¬Òò´ËÎÒ°Ñ×Ô¼ºÉý¼¶Îªroot²¢Ö´ÐÐÁËÏÂÃæµÄÃüÁ<BR>cd /usr/local/etc/rc.d<BR>mv snmpd.sh snmpd.sh.sample killall snmpd<BR>Äã¿ÉÄÜ»áÏ£Íû°ÑÏÂÃæµÄÑ¡Ïî¼ÓÈë /etc/rc.conf £º<BR>tcp_drop_synfin="YES"<BR>Õâ¸öÑ¡Ïî¿ÉÒÔ´ì°ÜÖîÈçOSÖ¸ÎÆÊ¶±ðµÄÆóͼ(Òë×¢£ºÕâ¸öÑ¡Ïî¶Ô×îеÄnmapÎÞЧ)¡£Èç¹ûÄã´òË㿪ÆôÕâ¸öÑ¡ÏÄÇô£¬»¹ÐèÒªÔÚÄں˱àÒëÅäÖÃÎļþÖмÓÈ룺<BR>options TCP_DROP_SYNFIN<BR>»¹ÓÐÁ½¸öÏà¹ØµÄÑ¡Ï<BR>icmp_drop_redirect="YES"<BR>icmp_log_redirect="YES"<BR>ICMP ÖØ¶¨Ïò¿ÉÒÔ±»ÀûÓÃÍê³ÉDoS¹¥»÷¡£ÕâÆª ARP and ICMP redirection games article ½éÉÜÁ˾ßÌåµÄһЩÇé¿ö¡£</DIV> <DIV>ÔÚ´ò¿ª icmp_log_redirect Ñ¡ÏîʱÇëÎñ±ØÐ¡ÐÄ£¬ÒòΪËü»á¼Ç¼ÿһ¸öICMPÖØ¶¨Ïò £¬Èç¹ûÄãÔâµ½ÁËÕâÑùµÄ¹¥»÷£¬ÄÇôÈÕÖ¾ºÜ¿ÉÄÜ»áÈûÂú¼Ç¼¡£</DIV> <DIV>½¨ºÃ·À»ðǽ֮ºó£¬Ç뿼ÂǼÓÈëÏÂÃæµÄÑ¡Ï<BR>log_in_vain="YES"<BR>Õâ¸öÑ¡Ïî»á¼Ç¼ÿһ¸öµ½¹Ø±Õ¶Ë¿ÚµÄÁ¬½ÓÆóͼ¡£ÁíÒ»¸ö±È½ÏÓÐÒâ˼µÄÑ¡ÏîÊÇ£º<BR>accounting_enable="YES"<BR>Õ⽫´ò¿ªÏµÍ³É󼯹¦ÄÜ£¬Èç¹ûÄã²»ÊìϤËûÃÇ£¬ÄÇôÇëÔĶÁ man sa ºÍ man lastcomm ¡£</DIV> <DIV>×îºó£¬ÏÂÃæµÄÑ¡Ïî¿ÉÄܷdz£ÓÐÓãº<BR>clear_tmp_enable="YES"<BR>ÒòΪËüÔÚϵͳÆô¶¯Ê±½«Çå¿Õ /tmp £¬ÕâÓÀÔ¶ÊÇÒ»¼þÖµµÃÈ¥×öµÄÊÂÇé¡£</DIV> <DIV>ÈÃÎÒÃÇÀ´Ñо¿Ò»ÏÂÆäËûÄܹ»¼ÓÇ¿°²È«µÄÉèÖá£ÎұȽÏϲ»¶°ÑĬÈϵĿÚÁî¼ÓÃÜËã·¨¸ÄΪBlowfish£¬ÒòΪËüÔÚÌṩ×î¼Ñ°²È«ÐÔµÄǰÌáÏ£¬Ò²ÌṩÁË×î¿ìµÄËÙ¶È¡£ÕâÀïÓÐÒ»·Ý comparison of algorithms[¼¸ÖÖÃÜÂëѧËã·¨µÄ±È½Ï]¡£</DIV> <DIV>µ±È»£¬Èç¹ûÄã¶ÔÕâÀà¶«Î÷¸ÐÐËȤµÄ»°£¬¿´¿´ Cryptogram newsletter £¬ËüÊÇBlowfish×÷ÕßдµÄ¡£</DIV> <DIV>ΪÁËÆôÓà Blowfish É¢ÁУ¬±à¼ /etc/login.conf ²¢°Ñ passwd_format Ò»ÐиijÉÏÂÃæÕâÑù£º<BR>:passwd_format=blf:\<BR>±£´æÉèÖã¬ÖØÐ´´½¨µÇ¼Êý¾Ý¿â£º<BR>cap_mkdb /etc/login.conf<BR>ËæºóÐèÒªÐÞ¸Äÿһ¸öÓû§µÄ¿ÚÁÒÔ±ãÈÃÕâЩ¿ÚÁʹÓà Blowfish É¢ÁÐÖµ¡£ÒÔ³¬¼¶Óû§µÄÉí·ÝÖ´ÐÐÏÂÃæµÄÃüÁ<BR>passwd username<BR>ÐèÒªÐÞ¸ÄËùÓÐÓû§µÄ¿ÚÁ°üÀ¨root×Ô¼º¡£</DIV> <DIV>Íê³ÉÁËÕâЩ²Ù×÷Ö®ºó£¬ÖØÐ¼ì²éÒ»ÏÂÈ·ÈÏ×Ô¼ºÃ»ÓÐÒÅ©ʲô£º<BR>more /etc/master.passwd <BR>ËùÓÐÓû§µÄ¿ÚÁîÓ¦¸ÃÒÔ$2.¿ªÊ¼</DIV> <DIV>×îºó£¬ÖØÐÂÅäÖà adduser ³ÌÐò£¬ÈÃËüÔÚÒÔºóʹÓÃBlowfish¡£ÐÞ¸Ä /etc/auth.conf£¬ÕÒµ½ crypt_default Ò»ÐУ¬¸ÄΪ£º<BR>crypt_default=blf<BR>Äã¿ÉÄÜÒѾעÒâµ½£¬Ã¿´ÎµÇ¼µÄʱºòFreeBSD¶¼»áÌáʾÄ㣬ÄãÔÚÓõÄÄǸöϵͳÊÇFreeBSD£¬ÒÔ¼°ËüµÄ°æÈ¨ÐÅÏ¢£¬°üÀ¨Äں˵ıàÒëʱ¼ä£¬µÈµÈ¡£ÕâЩÐÅÏ¢¿ÉÄÜÓÐÓ㬵«Ï൱·³ÈË£¬ÌرðÊǵ±±ðÈË¿ÉÒԵǼµÄʱºò£¬Ëü¿ÉÄܻᱩ¶һЩÄ㲻ϣÍû±©Â¶µÄÐÅÏ¢¡£</DIV> <DIV>¿ÉÒÔͨ¹ý±à¼ /etc/motd À´×èÖ¹¼ÆËã»ú˵³öһЩ²»¸Ã˵µÄ¶«Î÷£¬»òÕßÐûÑïÄãµÄһЩÏë·¨£¬°üÀ¨Äãϲ»¶¿´µÄ sci-fi ÎÄÕª£¬»òÕ߯äËûһЩ¡ª¡ª×ÜÖ®ÄãÏëдʲô¾Íдʲô¡£</DIV> <DIV>Ëæºó£¬É¾³ý°æÈ¨ÐÅÏ¢£º<BR>touch /etc/COPYRIGHT<BR>Ëæºó£¬»¹¿ÉÒÔÐ޸ĵǼÌáʾ£¬±à¼ /etc/gettytab. ÕÒµ½ default:\ С½Ú£¬ËüÒÔÏÂÃæµÄÎÄ×Ö¿ªÍ·£º<BR>:cb:ce:ck:lc<BR>СÐĵØÐÞ¸Ä \r\n\ \r\n\r\nr\n: Ö®¼äµÄÎÄ×ÖÀ´ÊÊÓ¦×Ô¼ºµÄÐèÒª¡£Çë×Ðϸ¼ì²é \r ºÍ \n µÄÊýÁ¿£¬²¢±£´æÐÞ¸
²é¿´È«ÎÄ
·¢±íÓÚ:2007-08-17 ©ª
ÔĶÁ(143)
©ª
ÆÀÂÛ(0)
FreeBSDÖÐ/etcϵÄÎļþ¼ò½é
<DIV>FreeBSDÖÐ/etcϵÄÎļþ¼ò½é</DIV> <DIV><BR>FreeBSDÖÐ/etcϵÄÎļþ¼ò½é</DIV> <DIV>FreeBSDÖÐ/etcϵÄÎļþ¿ÉÒÔ˵ÊÇ·×·±¸´ÔÓ£¬¶ÔÊìϤËüµÄÈËÀ´½²²»Ëãʲô£¬µ«¶ÔÓÚÒ»¸öÐÂÊÖÀ´Ëµ¾Í¡£¡£¡£Ì«ÂÒÁË£¬ÏÂÃæÊÇһЩ¾³£Óõ½µÄÅäÖÃÎļþµÄ×÷ÓúÍÅäÖ÷½·¨£¬µ«Ô¸ÄܸøÄãÒ»µã°ïÖú¡£ </DIV> <DIV>1. aliases <BR>2. crontab <BR>3. csh.cshrc <BR>4. csh.login <BR>5. csh.logout <BR>6. daily <BR>7. defaultdomain <BR>8. exports <BR>9. fbtab <BR>10.fstab <BR>11.ftpusers <BR>12.group <BR>13.host.conf <BR>14.hosts <BR>15.inetd.conf <BR>16¡¡
²é¿´È«ÎÄ
·¢±íÓÚ:2007-08-17 ©ª
ÔĶÁ(130)
©ª
ÆÀÂÛ(0)