Добро пожаловать, Гость. Пожалуйста авторизуйтесь здесь.
FGHIGate на GaNJa NeTWoRK ST@Ti0N - Просмотр сообщения в эхоконференции ENET.SYSOP
Введите FGHI ссылку:


Присутствуют сообщения из эхоконференции ENET.SYSOP с датами от 10 Jul 13 21:42:12 до 05 Jul 24 12:03:09, всего сообщений: 12525
Ответить на сообщение К списку сообщений Предыдущее сообщение Следующее сообщение
= Сообщение: 5532 из 12525 ====================================== ENET.SYSOP =
От   : Benny Pedersen                   2:230/0            04 Oct 17 14:27:38
Кому : Tommi Koivula                                       04 Oct 17 14:27:38
Тема : Spamming
FGHI : area://ENET.SYSOP?msgid=2:230/0+59d4ef1a
На   : area://ENET.SYSOP?msgid=2:221/100+59d4bd6c
= Кодировка сообщения определена как: LATIN1 =================================
==============================================================================
Hello Tommi!

04 Oct 2017 13:52, Tommi Koivula wrote to Ward Dossche:

TK> Cool. I'd use a firewall instead.

   ----- qico begins -----
# binkp = 24554
# tfido = 60179
# fido = 60177
service tfido
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_tfido.ipv4
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 2.104.223.10
        disable = yes
        protocol = tcp
        flags = IPv4
        port = 60177
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a auto
        per_source = 1
        instances = 1
}
service fido
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_fido.ipv4
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 2.104.223.10
        disable = yes
        protocol = tcp
        flags = IPv4
        port = 60179
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a auto
        per_source = 1
        instances = 1
}
service binkp
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_binkp.ipv4
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 2.104.223.10
        disable = no
        protocol = tcp
        flags = IPv4
        port = 24554
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a binkp
        per_source = 1
        instances = 1
}
service telnet
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_binkp.ipv4
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 2.104.223.10
        disable = yes
        protocol = tcp
        flags = IPv4
        port = 23
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a auto
        per_source = 1
        instances = 1
}
service tfido
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_tfido.ipv4
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 192.168.5.100
        disable = yes
        protocol = tcp
        flags = IPv4
        port = 60177
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a auto
        per_source = 1
        instances = 1
}
service fido
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_fido.ipv4
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 192.168.5.100
        disable = yes
        protocol = tcp
        flags = IPv4
        port = 60179
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a auto
        per_source = 1
        instances = 1
}
service binkp
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_binkp.ipv4
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 192.168.5.100
        disable = yes
        protocol = tcp
        flags = IPv4
        port = 24554
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a binkp
        per_source = 1
        instances = 1
}
service tfido
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_tfido.ipv6
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 2001:470:27:bb3::2
        # 2001:16d8:dd00:137::2
        disable = yes
        protocol = tcp
        flags = IPv6
        port = 60177
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a auto
        per_source = 1
        instances = 1
}
service fido
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_fido.ipv6
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 2001:470:27:bb3::2
        # 2001:16d8:dd00:137::2
        disable = yes
        protocol = tcp
        flags = IPv6
        port = 60179
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a auto
        per_source = 1
        instances = 1
}
service binkp
{
        # log_type = FILE /home/xpoint/fido/log/xinetd_binkp.ipv6
        # log_on_succes = HOST PID
        # log_on_failure = HOST PID
        # bind = 2001:470:27:bb3::2
        # 2001:16d8:dd00:137::2
        disable = yes
        protocol = tcp
        flags = IPv6
        port = 24554
        socket_type = stream
        wait = no
        user = xpoint
        server = /usr/sbin/qico
        server_args = -a binkp
        per_source = 1
        instances = 1
}
   ----- qico ends -----

shorewall macro

   ----- macro.fido begins -----
?FORMAT 2
# PARAM -       -       tcp     60179   -       15/hour:5       -
PARAM   -       -       tcp     60179   -       -       -
   ----- macro.fido ends -----

   ----- macro.binkp begins -----
?FORMAT 2
# PARAM  -       -       tcp     24554   -       15/hour:5       -
PARAM   -       -       tcp     24554   -       -       -
   ----- macro.binkp ends -----

   ----- macro.tfido begins -----
?FORMAT 2
# PARAM -       -       tcp     60177   -       15/hour:5       -
PARAM   -       -       tcp     60177   -       -       -
   ----- macro.tfido ends -----

that is still not in use with limit here, but i think xinetd is all i need now

15/hour is 15 connect pr hour accepted, but 30 will get busy not connection fails

i still just have it commented, just in case


 Regards Benny

... there can only be one way of life, and it works :)

--- Msged/LNX 6.2.0 (Linux/3.10.107-gentoo-r1 (i686))
* Origin: I will always keep a PC running CPM 3.0 (2:230/0)

К главной странице гейта
Powered by NoSFeRaTU`s FGHIGate
Открытие страницы: 0.062313 секунды