Jump to content
  • 0

Как се защитавате от flood на микротика


selianina

Question

Здравейте колеги, искам да попитам как се справяте с проблемните клиенти който имат вируси и затрудняват работата на микротиците.Какви методи използвате или филтрирате определени портове? Четох някъде из нета за Syn-protect но не намерих много информация пише че е за защита от flood някой ползвал ли го е до сега?

Edited by Selianina

Поздрави,

Деян Димитров

Link to comment
Share on other sites

2 answers to this question

Recommended Posts

  • 0
  • Administrator

add action=drop chain=input comment="dropping port scanners" disabled=no in-interface=WAN-ИНТЕРФЕЙСА src-address-list="port scanners"
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=1d chain=input comment="Port scanners to list" disabled=no in-interface=WAN_ИНТЕРФЕЙСА protocol=tcp psd=21,3s,3,1
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="NMAP FIN Stealth scan" disabled=no protocol=tcp tcp-flags=fin,!syn,!rst,!psh,!ack,!urg
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="SYN/FIN scan" disabled=no protocol=tcp tcp-flags=fin,syn
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="SYN/RST scan" disabled=no protocol=tcp tcp-flags=syn,rst
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="FIN/PSH/URG scan" disabled=no protocol=tcp tcp-flags=fin,psh,urg,!syn,!rst,!ack
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=1d chain=input comment="ALL/ALL scan" disabled=no protocol=tcp tcp-flags=fin,syn,rst,psh,ack,urg
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=1d chain=input comment="NMAP NULL scan" disabled=no protocol=tcp tcp-flags=!fin,!syn,!rst,!psh,!ack,!urg
[/CODE]

Харесай поста ^^^
acer.gif htc.gifsigpic4024_2.gif

Форумът е за взаимопомощ а не за свършване на чужда работа


ɹɐǝɥ uɐɔ noʎ ǝɹoɯ ǝɥʇ 'ǝɯoɔǝq noʎ ɹǝʇǝınb ǝɥʇ

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.