linux 防止攻击的配置:
hosts.deny
内容如下:
# # hosts.deny This file contains access rules which are used to # deny connections to network services that either use # the tcp_wrappers library or that have been # started through a tcp_wrappers-enabled xinetd. # # The rules in this file can also be set up in # /etc/hosts.allow with a 'deny' option instead. # # See 'man 5 hosts_options' and 'man 5 hosts_access' # for information on rule syntax. # See 'man tcpd' for information on tcp_wrappers # sshd:120.25.212. sshd:120.25.212. sshd:113.102.171. sshd:113.116.213. sshd:119.139.67. #sshd:123.59.55. sshd:223.5.17. sshd:120.25.212. sshd:1.85.21. sshd:91.184.23. sshd:183.131.175. sshd:59.56.76. sshd:59.36.97. sshd:14.17.64. sshd:106.122.249. sshd:122.228.245. sshd:60.10.2. sshd:79.174.70. sshd:216.45.110. sshd:58.217.255. sshd:114.215.132. sshd:218.205.169. sshd:103.224.166. sshd:113.108.21. sshd:66.240.213. sshd:114.215.132. sshd:134.219.148. sshd:91.218.231. sshd:113.240.250. sshd:113.68.209. sshd:69.71.66. sshd:219.134.55. sshd:119.164.254. sshd:159.226.92. sshd:97.126.196. sshd:185.130.5. sshd:59.47.0. sshd:58.242.245. sshd:191.5.95. sshd:113.92.245. sshd:89.248.172. # sshd:123.56.184. sshd:85.172.36. # sshd:117.255.235. sshd:177.86.2. sshd:177.21.63. # sshd:117.255.209. sshd:90.230.28. sshd:118.193.156. sshd:169.54.244. sshd:185.35.62. sshd:58.61.50. sshd:116.10.52. sshd:169.54.244. sshd:185.35.62. sshd:58.61.50. sshd:116.10.52. sshd:119.41.226. sshd:108.84.48. sshd:107.155.66. sshd:141.212.122. sshd:138.185.149. sshd:23.21.156. sshd:65.98.40. sshd:94.255.224. sshd:95.173.184. sshd:193.36.35. #sshd:212.224.123. sshd:101.201.232. sshd:112.74.176. sshd:129.41.232. sshd:129.41.232. sshd:81.27.85. sshd:178.239.177. sshd:107.6.130. sshd:208.116.37. sshd:107.6.130. sshd:124.16.173. sshd:59.47.76. # sshd:117.80.209. sshd:121.15.49. sshd:221.203.142. # sshd:123.59.146. sshd:210.192.100. sshd:98.210.146. sshd:94.50.4. sshd:120.24.81. sshd:113.90.230. sshd:120.24.81.
更新如下:
以下 ip 全是垃圾 ip
# # hosts.deny This file contains access rules which are used to # deny connections to network services that either use # the tcp_wrappers library or that have been # started through a tcp_wrappers-enabled xinetd. # # The rules in this file can also be set up in # /etc/hosts.allow with a 'deny' option instead. # # See 'man 5 hosts_options' and 'man 5 hosts_access' # for information on rule syntax. # See 'man tcpd' for information on tcp_wrappers sshd:120.25.212. sshd:120.25.212. sshd:113.102.171. sshd:113.116.213. sshd:119.139.67. sshd:223.5.17. sshd:120.25.212. sshd:1.85.21. sshd:91.184.23. sshd:183.131.175. sshd:59.56.76. sshd:59.36.97. sshd:14.17.64. sshd:106.122.249. sshd:122.228.245. sshd:60.10.2. sshd:79.174.70. sshd:216.45.110. sshd:58.217.255. sshd:114.215.132. sshd:218.205.169. sshd:103.224.166. sshd:113.108.21. sshd:66.240.213. sshd:114.215.132. sshd:134.219.148. sshd:91.218.231. sshd:113.240.250. sshd:113.68.209. sshd:69.71.66. sshd:219.134.55. sshd:119.164.254. sshd:159.226.92. sshd:97.126.196. sshd:185.130.5. sshd:59.47.0. sshd:58.242.245. sshd:191.5.95. sshd:113.92.245. sshd:89.248.172. sshd:85.172.36. sshd:177.86.2. sshd:177.21.63. sshd:90.230.28. sshd:118.193.156. sshd:169.54.244. sshd:185.35.62. sshd:58.61.50. sshd:116.10.52. sshd:169.54.244. sshd:185.35.62. sshd:58.61.50. sshd:116.10.52. sshd:119.41.226. sshd:108.84.48. sshd:107.155.66. sshd:141.212.122. sshd:138.185.149. sshd:23.21.156. sshd:65.98.40. sshd:94.255.224. sshd:95.173.184. sshd:193.36.35. sshd:101.201.232. sshd:112.74.176. sshd:129.41.232. sshd:129.41.232. sshd:81.27.85. sshd:178.239.177. sshd:107.6.130. sshd:208.116.37. sshd:107.6.130. sshd:124.16.173. sshd:59.47.76. sshd:121.15.49. sshd:221.203.142. sshd:210.192.100. sshd:98.210.146. sshd:94.50.4. sshd:120.24.81. sshd:113.90.230. sshd:120.24.81. sshd:112.74.23. sshd:120.25.144. sshd:18.85.59. sshd:217.95.127. sshd:189.47.179. sshd:39.110.149. sshd:67.222.139. sshd:77.174.80. sshd:218.7.221. sshd:121.42.0. sshd:120.26.78. sshd:188.18.23. sshd:115.28.93. sshd:223.100.11. sshd:218.87.109. sshd:115.28.243. sshd:203.174.140. sshd:70.77.145. sshd:121.40.100. sshd:62.24.112. sshd:120.25.103. sshd:123.57.229. sshd:190.8.50. sshd:66.96.206. sshd:120.77.24. sshd:46.223.36. sshd:89.163.134. sshd:115.29.108. sshd:79.150.202. sshd:125.62.22. sshd:192.241.182. sshd:82.113.72. sshd:166.111.7. sshd:216.104.196. sshd:223.68.132. sshd:123.56.145. sshd:115.28.240. sshd:89.163.134. sshd:109.74.248. sshd:104.197.46. sshd:43.241.208. sshd:121.42.177. sshd:121.41.108. sshd:112.74.68. sshd:43.250.44. sshd:207.190.196. sshd:121.41.121. sshd:1.82.243. sshd:73.186.113. sshd:138.118.7. sshd:107.184.57. sshd:120.26.106. sshd:123.56.4. sshd:112.74.113. sshd:89.34.24. sshd:113.90.175 sshd:139.196.150 sshd:101.200.158. sshd:123.57.4. sshd:139.196.150. sshd:115.28.26. sshd:101.200.32. sshd:115.28.176. sshd: 5.26.125.223 sshd: 14.152.59.9 sshd: 164.132.187.60 sshd: 101.200.158.220 sshd: 139.196.150.20 sshd: 115.28.26.72 sshd: 115.28.176.154 sshd: 115.28.140.155 sshd: 101.200.32.61 sshd: 123.57.220.183 sshd: 123.57.163.206 sshd: 89.34.24.160 sshd: 121.42.210.61 sshd: 123.57.4.140 sshd: 123.57.250.51 sshd: 140.205.225.184 sshd: 70.1.55.21 sshd: 139.196.173.11 sshd: 115.28.111.192 sshd: 120.26.85.133 sshd: 123.57.43.67 sshd: 123.57.217.199 sshd: 140.205.225.187 sshd: 114.215.255.23 sshd: 58.127.252.155 sshd: 188.19.206.126 sshd: 159.226.71.101 sshd: 124.16.71.20 sshd: 124.16.71.22 sshd: 202.146.80.178 sshd: 123.118.213.166 sshd: 123.118.216.224 sshd: 114.245.36.241 sshd: 222.129.38.115 sshd: 222.129.51.91 sshd: 140.205.201.31 sshd: 86.125.24.85 sshd: 120.26.202.239 sshd: 180.249.109.125 sshd: 112.74.36.202 sshd: 139.196.43.154 sshd: 140.205.201.40 sshd: 139.162.73.19 sshd: 203.146.40.168 sshd: 209.255.222.142 sshd: 186.178.175.183 sshd: 140.205.225.188 sshd: 67.205.139.92 sshd: 87.3.229.5 sshd: 140.205.201.37 sshd: 140.205.201.30 sshd: 123.57.70.124 sshd: 58.30.48.211 sshd: 139.196.13.60 sshd: 203.151.21.247 sshd: 140.205.201.39 sshd: 140.205.225.185 sshd: 139.224.196.86 sshd: 123.57.233.76 sshd: 123.57.2.76 sshd: 123.57.59.33 sshd: 140.205.201.38 sshd: 114.215.239.201 sshd: 101.200.78.64 sshd: 101.200.132.204 sshd: 91.11.199.6 sshd: 181.113.191.20 sshd: 178.186.20.243 sshd: 140.205.225.186 sshd: 190.152.197.107 sshd: 52.19.93.208 sshd: 31.181.161.19 sshd: 101.201.68.145 sshd: 139.224.223.223 sshd: 140.205.201 sshd: 62.212.130.196 sshd: 120.76.54.136 sshd: 120.25.197.98 sshd: 123.57.67.230 sshd: 50.60.153.98 sshd: 140.205.201.42 sshd: 114.215.253.127 sshd: 212.83.128.41 sshd: 123.57.183.41 sshd: 5.189.162.107 sshd: 118.123.119.124 sshd: 123.57.243.99 sshd: 109.196.180.174 sshd: 114.219.19.240 sshd: 121.199.70.200 sshd: 31.173.226.66 sshd: 223.81.27.109 sshd: 120.24.69.184 sshd: 79.33.178.159 sshd: 103.24.176.110 sshd: 123.56.233.113 sshd: 171.61.145.7 sshd: 60.173.184.182 sshd: 183.131.83.175 sshd: 115.236.0.243 sshd: 112.74.58.137 sshd: 123.56.233.103 sshd: 140.205.201.32 sshd: 140.205.201.33 sshd: 123.207.16.241 sshd: 61.160.211.141 sshd: 202.170.80.40 sshd: 195.154.57.248 sshd: 186.57.10.17 sshd: 218.63.123.243 sshd: 123.31.34.130 sshd: 112.74.112.143 sshd: 45.63.99.90 sshd: 5.141.132.239 sshd: 140.255.178.41 sshd: 49.4.143.237 sshd: 31.163.1.172 sshd: 46.63.22.190 sshd: 112.74.180.42 sshd: 189.90.219.123 sshd: 58.208.228 sshd: 58.208.228.84 sshd: 116.31.123.60 sshd: 140.205.201.41 sshd: 59.96.101.62 sshd: 101.200.42.194 sshd: 120.27.52.105 sshd: 46.48.253.116 sshd: 101.201.115.10 sshd: 120.76.98.218 sshd: 212.129.29.20 sshd: 79.133.155.139 sshd: 123.31.34.31 sshd: 186.133.197.224 sshd: 125.212.211.202 sshd: 140.205.201.43 sshd: 120.132.55.105 sshd: 123.207.233.112 sshd: 59.183.113.232 sshd: 182.44.25.122 sshd: 191.84.93.83 sshd: 222.186.44.19 sshd: 139.162.122.110 sshd: 108.61.126.204 sshd: 151.53.181.79 sshd: 94.50.158.217 sshd: 186.57.21.144 sshd: 94.62.0.54 sshd: 120.25.98.83 sshd: 117.21.224.127 sshd: 139.196.13.63 sshd: 162.243.171.119 sshd: 120.25.61.75 sshd: 123.57.183.61 sshd: 125.88.187.43 sshd: 94.51.130.246 sshd: 121.40.34.54 sshd: 167.160.182.3 sshd: 152.204.30.201 sshd: 139.196.188.21 sshd: 37.21.92.147 sshd: 94.78.224.70 sshd: 222.186.51.138 sshd: 213.111.32.39 sshd: 149.35.13 sshd: 123.57.184.64 sshd: 149.35.13.137 sshd: 140.205.201.36 sshd: 140.205.201.34 sshd: 212.83.134.168 sshd: 41.237.1.129 sshd: 123.56.65.139 sshd: 140.205.225.183 sshd: 122.231.173.241 sshd: 123.56.96.206 sshd: 91.224.161.71 sshd: 222.187.224.76 sshd: 183.129.160.229 sshd: 203.150.54.59 sshd: 112.207.224.217 sshd: 159.226.34.63 sshd: 35.162.173.219 sshd: 202.109.143.77 sshd: 23.253.159.118 sshd: 195.154.50.61 sshd: 121.42.152.49 sshd: 14.185.157.168 sshd: 163.172.219.77 sshd: 210.77.2.254 sshd: 220.162.247.195 sshd: 163.172.204.238 sshd: 162.243.68.172 sshd: 109.235.70.74 sshd: 45.55.84.154 sshd: 101.200.150.105 sshd: 123.57.66.127 sshd: 124.114.183. sshd: 120.24.218.139 sshd: 120.25.102.16 sshd: 62.210.189.248 sshd: 121.42.150.86 sshd: 120.24.251.13 sshd: 101.201.149.88 sshd: 62.48.142.153 sshd: 114.215.138.30 sshd: 18.85.59.34 sshd: 114.215.190.221 sshd: 112.90.72.2 sshd: 121.42.0.36 sshd: 121.42.0.37 sshd: 120.55.194.140 sshd: 121.42.0.86 sshd: 106.184.3.122 sshd: 120.25.144.134 sshd: 112.74.23.152 sshd: 123.56.4.238 sshd: 120.24.156.51 sshd: 121.42.0.83 sshd: 121.42.0.82 sshd: 120.69.220.5 sshd: 121.42.0.87 sshd: 96.50.185.81 sshd: 121.42.0.88 sshd: 204.210.205.152 sshd: 121.42.0.19 sshd: 67.222.139.227 sshd: 120.26.78.76 sshd: 121.42.0.16 sshd: 123.57.84.196 sshd: 123.103.9.9 sshd: 124.114.183.6 sshd: 115.112.66.194 sshd: 69.12.65.102 sshd: 212.83.149.82 sshd: 92.237.77.164 sshd: 124.17.88.2 sshd: 171.212.141.155 sshd: 69.12.65.101 sshd: 218.3.140.74 sshd: 218.87.138.210 sshd: 91.224.160.203 sshd: 140.205.201.44 sshd: 200.55.224.230 sshd: 212.5.157.135 sshd: 200.59.46.180 sshd: 212.50.239.218 sshd: 123.66.35.53 sshd: 59.93.167.187 sshd: 220.126.190.14 sshd: 59.110.48.26 sshd: 113.122.42.87 sshd: 5.154.240.143 sshd: 171.61.157.15 sshd: 202.109.143.15 sshd: 212.83.177.228 sshd: 47.89.180.222 sshd: 182.101.225.82 sshd: 140.205.201.45 sshd: 41.102.13.56 sshd: 220.191.15.175 sshd: 182.18.72.101 sshd: 37.114.62.115 sshd: 60.205.210.125 sshd: 217.128.65.238 sshd: 122.144.200.133 sshd: 47.88.102.23 sshd: 103.44.145.36 sshd: 81.171.12.132 sshd: 193.201.224.210 sshd: 115.28.42.203 sshd: 112.124.29.16 sshd: 101.201.82.179 sshd: 121.200.49.114 sshd: 112.74.37.184 sshd: 123.31.34.165 sshd: 199.217.118.45 sshd: 110.19.204.18 sshd: 52.200.176.100 sshd: 120.25.221.227 sshd: 212.83.150.29 sshd: 113.28.55.187 sshd: 139.196.143.158 sshd: 195.3.144.213 sshd: 101.200.160.48 sshd: 120.77.214.141 sshd: 123.57.246.34 sshd: 120.76.247.107 sshd: 80.241.223.175 sshd: 123.57.46.89 sshd: 120.26.85.119 sshd: 60.191.38.77 sshd: 112.74.54.79 sshd: 114.215.29.141 sshd: 120.77.36.130 sshd: 140.205.201.46 sshd: 113.108.127.187 sshd: 153.99.48.57 sshd: 35.154.150.76 sshd: 153.99.49.170 sshd: 123.57.49.163 sshd: 123.57.151.239 sshd: 111.121.193.223 sshd: 123.57.210.25 sshd: 106.14.236.59 sshd: 104.199.17.217 sshd: 189.113.129.126 sshd: 45.119.125.22 sshd: 176.123.27.28 sshd: 52.48.249.16 sshd: 139.196.18.95 sshd: 115.28.59.5 sshd: 90.125.236.131 sshd: 140.205.201.35 sshd: 106.14.72.174 sshd: 180.76.189.148 sshd: 121.41.29.130 sshd: 123.57.83.228 sshd: 157.52.165.11 sshd: 212.83.133.230 sshd: 212.83.141.81 sshd: 177.125.243.163 sshd: 5.35.252.222 sshd: 123.56.163.141 sshd: 5.8.10.202 sshd: 163.172.116.185 sshd: 119.193.140.217 sshd: 120.27.240.44 sshd: 202.109.143.114 sshd: 90.182.179.196 sshd: 50.62.147.76 sshd: 77.87.132.23 sshd: 116.62.104.112 sshd: 123.31.34.190 sshd: 180.97.81.71 sshd: 139.196.9.81 sshd: 140.205.201.47 sshd: 178.33.49.94 sshd: 117.18.79.201 sshd: 101.201.239.216 sshd: 199.38.243.13 sshd: 111.73.45.188 sshd: 115.92.245.18 sshd: 47.52.32.223 sshd: 123.57.73.49 sshd: 121.43.167.241 sshd: 121.42.247.16 sshd: 119.254.98.166 sshd: 120.24.171.149 sshd: 123.57.172.159 sshd: 123.57.213.175 sshd: 153.99.182.31 sshd: 120.55.115.226 sshd: 154.42.65.131 sshd: 119.147.115.37 sshd: 121.42.247.84 sshd: 111.73.46.224 sshd: 218.2.108.2 sshd: 123.57.80.140 sshd: 218.93.208.99 sshd: 115.239.248.137 sshd: 125.88.146.142 sshd: 125.88.146.104 sshd: 59.56.110.159 sshd: 125.88.182.181 sshd: 119.147.139.153 sshd: 125.88.183.166 sshd: 111.73.46.89 sshd: 101.200.149.0 sshd: 47.90.92.26 sshd: 123.56.65.175 sshd: 121.196.206.64 sshd: 212.83.136.67 sshd: 90.21.132.108 sshd: 120.77.156.234 sshd: 93.199.248.194 sshd: 47.93.90.175 sshd: 114.55.34.109 sshd: 23.248.219.85 sshd: 114.55.175.55 sshd: 14.134.243.85 sshd: 220.163.44.181 sshd: 120.77.155.205 sshd: 106.75.25.245 sshd: 118.190.15.31 sshd: 123.31.34.218 sshd: 118.193.154.98 sshd: 118.89.220.120
相关推荐
实验一:配置/etc/hosts.allow及/etc/hosts.deny 一、实验目的 了解/etc/hosts.allow与/etc/hosts.deny 掌握/etc/hosts.allow与/etc/hosts.deny的配置 二、实验内容与步骤 简介 /etc/hosts.allow与/etc/hosts.deny...
操作系统安全是保障系统资源免受恶意攻击和未经授权访问的关键领域,而/etc/hosts.deny文件在其中扮演着重要角色。这个文件是Linux系统中TCPWRAPPER的一部分,用于控制远程访问服务的权限。TCPWRAPPER是一个安全机制...
该项目是一款利用Python和Shell脚本编写的SSH暴力破解防护工具,包含36...该工具通过分析登录日志,自动将尝试通过暴力破解SSH密码的IP地址添加到hosts.deny文件中,从而阻止其进一步攻击尝试,以增强SSH登录的安全性。
openssh-server-8.4p1-1.el7.centos.x86_64.rpm源生的openssh的版本不支持tcpwraper
本教程将介绍两种方法来限制 IP 访问权限:使用 `/etc/hosts.allow` 和 `/etc/hosts.deny` 文件,以及使用防火墙策略。 方法 1:使用 `/etc/hosts.allow` 和 `/etc/hosts.deny` 文件 `/etc/hosts.allow` 和 `/etc...
TCP Wrappers是一个安全工具,它通过控制 `/etc/hosts.allow` 和 `/etc/hosts.deny` 两个配置文件,来决定哪些远程主机和服务可以访问系统上的网络服务。 首先,`hosts.allow` 文件用于指定允许访问的主机和服务,...
hosts.deny文件用于屏蔽来自所有的ssh连接请求,而hosts.allow文件用于允许来自内网的ssh连接请求。例如,可以在hosts.deny文件中添加一行sshd: ALL,以屏蔽来自所有的ssh连接请求。在hosts.allow文件中,可以添加...
使用 geoip 查找和 OpenLayers 3 映射被拒绝主机 IP 的位置。 该产品包括由 MaxMind 创建的 GeoLite2 数据,可从。 ##Setup 重命名和编辑配置文件 mv config_SAMPLE.py config.py ... python map-deny.py
实验一主要涉及Linux网络基础,特别是通过配置 `/etc/hosts.allow` 和 `/etc/hosts.deny` 文件来控制特定IP地址、网段和域名对本地服务的访问权限。例如,实验要求只允许172.16.100.0/24网段访问VSFTPD服务,而拒绝...
这个源代码库通常包含在`tcp_wrappers_7.6`这样的版本包中,允许管理员通过配置文件(如`/etc/hosts.allow`和`/etc/hosts.deny`)来定义哪些远程主机可以连接到特定的服务。以下是关于TCP_Wrapper源代码的一些关键...
例如,在`/etc/hosts.deny` 文件中添加 `in.telnetd:ALL:DENY` 将会禁止所有客户端通过 telnet 访问服务器。 #### 四、Solaris 10中的TCP Wrapper配置 在Solaris 10中,TCP Wrapper的配置与之前版本有所不同,这是...
例如,检查`resolv.conf`中的DNS服务器是否正确,`hosts`文件中是否有必要的域名映射,以及`hosts.allow`和`hosts.deny`是否允许了必要的网络访问。 总的来说,这些文件共同作用于开发板的网络配置,确保它能够正常...
这涉及到对系统日志(如/var/log/secure)的监控,识别失败的登录尝试,并根据一定的规则(如尝试次数超过设定阈值)将这些IP地址添加到/etc/hosts.deny文件中,从而拒绝其后续的连接请求。 ### 脚本解析 脚本的第...
离线安装包,亲测可用
在这个例子中,vsftpd服务只允许192.168.1.2访问,因为`hosts.allow`包含了这个地址,而`hosts.deny`中的设置不会覆盖`hosts.allow`。 这些知识点是Linux网络服务器管理和安全的基础,对于构建和维护稳定、安全的...
在本文中,我们将详细介绍如何在 Ubuntu 上配置网络文件共享服务器 NFS,从安装 nfs-kernel-server 到配置 /etc/exports 文件、hosts.deny 和 hosts.allow 文件,以及最后测试 Ubuntu nfs。 一、安装 Ubuntu nfs ...
应用于linux系统,DenyHosts是Python语言写的一个程序,它会分析sshd的日志文件(/var/log/secure),当发现重 复的攻击时就会记录IP到/etc/hosts.deny文件,从而达到自动屏IP的功能。 当你的linux服务器暴露在...