Port Knocking

xtogen

VIP SILVER
Aug 29, 2023
25
21
0

1. Knockd quraşdırılması

bash
CopyEdit
<span>sudo apt install knockd<br></span>

2. Konfiqurasiya

Faylı redaktə edin:

bash
CopyEdit
<span>sudo nano /etc/knockd.conf<br></span>
Məsələn:

conf
CopyEdit
<span>[openSSH]<br>sequence = 1234,5678,9012<br>seq_timeout = 10<br>command = /sbin/iptables -A INPUT -s %IP% -p tcp --dport 22 -j ACCEPT<br><br>[closeSSH]<br>sequence = 9012,5678,1234<br>seq_timeout = 10<br>command = /sbin/iptables -D INPUT -s %IP% -p tcp --dport 22 -j ACCEPT<br></span>

3. Xidməti işə salın

bash
CopyEdit
<span>sudo systemctl <span>enable</span> knockd<br>sudo systemctl start knockd<br></span>

4. Düzgün Knock Ardıcıllığı

Port açmaq:

bash
CopyEdit
<span>knock &lt;server_ip&gt; 1234 5678 9012<br></span>
Port bağlamaq:

bash
CopyEdit
<span>knock &lt;server_ip&gt; 9012 5678 1234</span>