Cipe 1.4.1 - maximalne pingnu :( (dlouhe-vypisy konfigurace :)

Jan Moravec javim na czech.net
Pondělí Září 18 14:06:32 CEST 2000


Hezky den

BTW: Nevim jak, ale prave se mi povedlo dosahnout uz i na stroje ve
vnitrni siti (az tedy na ten traceroute).

> Poslete svoji routovaci tabulku (route -n) a kompletni vypis ipchains 
> pravidel, pripadne i vypis ifconfig.

stroj A

Destination     Gateway         Genmask         Flags Metric Ref    Use
Iface
10.0.1.1        0.0.0.0         255.255.255.255 UH    0      0        0
cipcb0
194.213.226.224 0.0.0.0         255.255.255.224 U     0      0        0
eth1
10.0.0.0        0.0.0.0         255.255.255.0   U     0      0        0
eth0
10.0.1.0        0.0.0.0         255.255.255.0   U     0      0        0
cipcb0
0.0.0.0         194.213.226.225 0.0.0.0         UG    1      0        0
eth1

Chain input (policy DENY):
target     prot opt     source                destination           ports
ACCEPT     all  ------  anywhere             anywhere              n/a
ACCEPT     all  ------  anywhere             anywhere              n/a
ACCEPT     all  ------  10.0.0.0/24          anywhere              n/a
ACCEPT     icmp ------  anywhere             194.213.226.252       any ->
any
ACCEPT     udp  ------  anywhere             194.213.226.252       any ->
any
ACCEPT     tcp  !y----  anywhere             194.213.226.252       any ->
any
ACCEPT     tcp  ------  anywhere             194.213.226.252
ftp-data ->   any
ACCEPT     tcp  ------  anywhere             194.213.226.252       any ->
smtp
ACCEPT     tcp  ------  brno.czech.net       194.213.226.252       any ->
ssh
ACCEPT     tcp  ------  anywhere             194.213.226.252       any ->
domain
ACCEPT     udp  ------  anywhere             194.213.226.252       any ->
6789
DENY       all  ------ !10.0.0.0/24          anywhere              n/a
DENY       all  ------  10.0.0.0/24          anywhere              n/a
Chain forward (policy ACCEPT):
target     prot opt     source                destination           ports
MASQ       all  ------  10.0.0.0/24          anywhere              n/a
Chain output (policy ACCEPT):

cipcb0    Link encap:IPIP Tunnel  HWaddr   
          inet addr:10.0.0.7  P-t-P:10.0.1.1  Mask:255.255.255.255
          UP POINTOPOINT NOTRAILERS RUNNING NOARP  MTU:1442  Metric:1
          RX packets:685 errors:0 dropped:0 overruns:0 frame:0
          TX packets:527 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:100 

eth0      Link encap:Ethernet  HWaddr 00:00:F8:1F:E5:7B  
          inet addr:10.0.0.7  Bcast:10.0.0.255  Mask:255.255.255.0
          UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
          RX packets:145501 errors:34 dropped:0 overruns:0 frame:24
          TX packets:58947 errors:418 dropped:0 overruns:0 carrier:486
          collisions:262 txqueuelen:100 
          Interrupt:10 Base address:0xe000 

eth1      Link encap:Ethernet  HWaddr 00:02:B3:02:70:D9  
          inet addr:194.213.226.252  Bcast:194.213.226.255
	Mask:255.255.255.224
          UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
          RX packets:312161 errors:0 dropped:0 overruns:0 frame:0
          TX packets:31720 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:100 
          Interrupt:5 Base address:0xd000 

lo        Link encap:Local Loopback  
          inet addr:127.0.0.1  Mask:255.0.0.0
          UP LOOPBACK RUNNING  MTU:3924  Metric:1
          RX packets:119 errors:0 dropped:0 overruns:0 frame:0
          TX packets:119 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:0 

Stroj B

Destination     Gateway         Genmask         Flags Metric Ref    Use
Iface
10.0.0.7        0.0.0.0         255.255.255.255 UH    0      0        0
cipcb0
194.213.232.192 0.0.0.0         255.255.255.248 U     0      0        0
eth0
10.0.0.0        0.0.0.0         255.255.255.0   U     0      0        0
cipcb0
10.0.1.0        0.0.0.0         255.255.255.0   U     0      0        0
eth1
0.0.0.0         194.213.232.193 0.0.0.0         UG    1      0        0
eth0

Chain input (policy DENY):
target     prot opt     source                destination           ports
ACCEPT     all  ------  0.0.0.0/0            0.0.0.0/0             n/a
ACCEPT     all  ------  0.0.0.0/0            0.0.0.0/0             n/a
ACCEPT     all  ------  10.0.1.0/24          0.0.0.0/0             n/a
ACCEPT     icmp ------  0.0.0.0/0            194.213.232.197       * ->
*
ACCEPT     udp  ------  0.0.0.0/0            194.213.232.197       * ->
*
ACCEPT     tcp  !y----  0.0.0.0/0            194.213.232.197       * ->
*
ACCEPT     tcp  ------  0.0.0.0/0            194.213.232.197       20 ->
*
ACCEPT     tcp  ------  0.0.0.0/0            194.213.232.197       * ->
25
ACCEPT     tcp  ------  194.213.226.252      194.213.232.197       * ->
22
ACCEPT     tcp  ------  0.0.0.0/0            194.213.232.197       * ->
53
ACCEPT     udp  ------  0.0.0.0/0            194.213.232.197       * ->
6789
DENY       all  ------ !10.0.1.0/24          0.0.0.0/0             n/a
DENY       all  ------  10.0.1.0/24          0.0.0.0/0             n/a
Chain forward (policy ACCEPT):
target     prot opt     source                destination           ports
MASQ       all  ------  10.0.1.0/24          0.0.0.0/0             n/a
Chain output (policy ACCEPT):

cipcb0    Link encap:IPIP Tunnel  HWaddr   
          inet addr:10.0.1.1  P-t-P:10.0.0.7  Mask:255.255.255.255
          UP POINTOPOINT NOTRAILERS RUNNING NOARP  MTU:1442  Metric:1
          RX packets:487 errors:0 dropped:0 overruns:0 frame:0
          TX packets:737 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:100 

eth0      Link encap:Ethernet  HWaddr 00:00:C0:EF:7E:6B  
          inet addr:194.213.232.197  Bcast:194.213.232.199
Mask:255.255.255.248
          UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
          RX packets:16926 errors:0 dropped:0 overruns:0 frame:0
          TX packets:10433 errors:0 dropped:0 overruns:0 carrier:0
          collisions:4 txqueuelen:100 
          Interrupt:10 Base address:0x310 Memory:cc000-d0000 

eth1      Link encap:Ethernet  HWaddr 00:00:C0:32:B7:6B  
          inet addr:10.0.1.1  Bcast:10.0.1.255  Mask:255.255.255.0
          UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
          RX packets:0 errors:0 dropped:0 overruns:0 frame:0
          TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:100 
          Interrupt:5 Base address:0x350 Memory:b0000-b4000 

lo        Link encap:Local Loopback  
          inet addr:127.0.0.1  Mask:255.0.0.0
          UP LOOPBACK RUNNING  MTU:3924  Metric:1
          RX packets:34 errors:0 dropped:0 overruns:0 frame:0
          TX packets:34 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:0 

---
Odchozí zpráva neobsahuje viry.
Zkontrolováno antivirovým systémem AVG (http://www.grisoft.cz).
Verze: 6.0.187 / Virová báze: 80 - datum vydání: 32.13.2050





Další informace o konferenci Linux