1. Knockd quraşdırılması
bashCopyEdit
<span>sudo apt install knockd<br></span>
2. Konfiqurasiya
Faylı redaktə edin:bash
CopyEdit
<span>sudo nano /etc/knockd.conf<br></span>
Məsələn:
conf
CopyEdit
<span>[openSSH]<br>sequence = 1234,5678,9012<br>seq_timeout = 10<br>command = /sbin/iptables -A INPUT -s %IP% -p tcp --dport 22 -j ACCEPT<br><br>[closeSSH]<br>sequence = 9012,5678,1234<br>seq_timeout = 10<br>command = /sbin/iptables -D INPUT -s %IP% -p tcp --dport 22 -j ACCEPT<br></span>
3. Xidməti işə salın
bashCopyEdit
<span>sudo systemctl <span>enable</span> knockd<br>sudo systemctl start knockd<br></span>
4. Düzgün Knock Ardıcıllığı
Port açmaq:bash
CopyEdit
<span>knock <server_ip> 1234 5678 9012<br></span>
Port bağlamaq:
bash
CopyEdit
<span>knock <server_ip> 9012 5678 1234</span>