瀏覽代碼

Block external access to port 9050

Bob Mottram 11 年之前
父節點
當前提交
da3ec04f02
共有 1 個文件被更改,包括 2 次插入0 次删除
  1. 2
    0
      beaglebone.txt

+ 2
- 0
beaglebone.txt 查看文件

1175
 iptables -A INPUT -p tcp --destination-port 137 -j DROP
1175
 iptables -A INPUT -p tcp --destination-port 137 -j DROP
1176
 iptables -A INPUT -p tcp --destination-port 3306 -j DROP
1176
 iptables -A INPUT -p tcp --destination-port 3306 -j DROP
1177
 iptables -A INPUT -p tcp --destination-port 4242 -j DROP
1177
 iptables -A INPUT -p tcp --destination-port 4242 -j DROP
1178
+iptables -A INPUT -p tcp --destination-port 9050 -j DROP
1178
 iptables -A INPUT -p udp --destination-port 1 -j DROP
1179
 iptables -A INPUT -p udp --destination-port 1 -j DROP
1179
 iptables -A INPUT -p udp --destination-port 7 -j DROP
1180
 iptables -A INPUT -p udp --destination-port 7 -j DROP
1180
 iptables -A INPUT -p udp --destination-port 109:111 -j DROP
1181
 iptables -A INPUT -p udp --destination-port 109:111 -j DROP
1199
 iptables -A INPUT -p udp --destination-port 8433 -j DROP
1200
 iptables -A INPUT -p udp --destination-port 8433 -j DROP
1200
 iptables -A INPUT -p udp --destination-port 3306 -j DROP
1201
 iptables -A INPUT -p udp --destination-port 3306 -j DROP
1201
 iptables -A INPUT -p udp --destination-port 4242 -j DROP
1202
 iptables -A INPUT -p udp --destination-port 4242 -j DROP
1203
+iptables -A INPUT -p udp --destination-port 9050 -j DROP
1202
 
1204
 
1203
 # Make sure NEW incoming tcp connections are SYN packets
1205
 # Make sure NEW incoming tcp connections are SYN packets
1204
 iptables -A INPUT -p tcp ! --syn -m state --state NEW -j DROP
1206
 iptables -A INPUT -p tcp ! --syn -m state --state NEW -j DROP