The first step, login device address, familiar with the menu bar step 2, configure firewall interface mode and address (this time is transparent mode) step 3, add default route step 4, define address, address segment step 5, define port step 6, define access rules in changing firewall exit address, need to refresh
Original Security [root@localhost~] # vi / etc/iptables_settings.sh###
Configure centos5.5 server 1, configure the network card to set the network card connection mode to nat2, and the login user name and password of the network configuration Centos5.5 are root and 123456 (1) vi etc/sysconfig/network-sc
In the preface, before sharing this event, the author first understands that CC***: [CC***] users generate legitimate requests to the victim host with the help of a proxy server to achieve DDOS and camouflage is called CC (ChallengeCollapsar). CC is mainly
Recently, we have seen a large number of threads initiated by IP addresses on the production platform service, and we originally planned to use APF or scripts to block these connections. But think about why you did it on the final defense? Here I use the access control list of the firewall to reject it, considering that the control list often maintains ordinary operation suggestions.
The second book 2. List of user permissions 1. The definition of the permission list specifies the record table 2 for which a special user has special permissions on a file. Identification of permission list-rw-rw-r--. Permission bit has a plus sign, permission list is open-rw-r--r--+ permission is yes. , permission level off
Data encryption Standard (DES) is an ancient symmetric key encryption algorithm, which is no longer used. It is not a very secure algorithm. Triple DES (Triple-DES) is still safe, but it is only a better choice when there is no other way. Obviously, senior plus.
Rpm-vih http://yum.puppetlabs.com/el/6.5/products/x86_64/puppetlabs-release-6-5.noarch.rpm1, install puppe
1. Juniper firewall MVPMIP is an one-to-one two-way address translation (translation) process. The usual situation is: when you have several public network IP addresses, and there are several servers that provide network services (the servers use private IP addresses), in order to achieve each other
Property string each instance of the String type has a length property that represents the number of characters in the string. Because the string is immutable, the length of the string is also immutable. The length property of the string is not enumerated in the for/in loop, nor can it be enumerated through de
Explaining the configuration of several Huawei switches in detail is the basic skill of the network administrator. This paper takes Huawei S5700 switch as an example, combined with sNSP simulator, describes in detail VLAN configuration, communication between VLAN, cross-switch VLAN configuration, cross-switch VLAN.
As a more and more inseparable part of our daily life, smart phones often store a large amount of personal information of users. once the mobile phone loopholes are exploited by hackers, it will have a considerable impact on the victimized users. Some users may have considered the security problem, so they chose the more secure one.
Ethernet is the most general communication protocol standard used in the existing local area network. The protocol defines the cable type and signal processor used in the local area network. It consists of a 6-byte destination MAC address, a 6-byte source MAC address, and a 2-byte type domain (used to indicate that it is encapsulated in this Frame,
I hope my own documents will be helpful to my brothers! Welcome to correct if there is a mistake. Attachment: http://down.51cto.com/data/2363015
[lab name] OSPF single-area basic configuration. [lab purpose] learn how to configure OSPF single area on a router. [background description] suppose the campus network is connected to the campus network exit router through a layer 3 switch, and the router is connected to another router outside the campus.
Blog outline: first, virtual private network overview; 1. The definition of virtual private network; 2. The model and type of virtual private network; (1) the connection mode of virtual private network; (2) the type of virtual private network; second, virtual private network technology; 1. Encryption technology; (1) symmetric encryption algorithm; (2) asymmetric addition
Port is divided into physical port and logical port physical port: hub, switch, router interface logical port used to connect other network devices: generally refers to the port in the TCP/IP protocol, the port number ranges from 0 to 65535, such as port 80 for web browsing service, for FTP
The TCP concurrent web server for the introduction to the network hacker TCP concurrent server was originally intended to be written behind the TCP programming for the introduction to the network hacker, but because the code is a bit long, I wrote a separate note: because the browser sends a lot of data, it serves as the acceptance buffer rec for this server
CISSP includes 10 CBK (Common Body of Knowledge): access control: administrators and operators need ways to control access mechanisms to access content, authorization, authentication, audit and monitoring communications and network security: internal, external, public
1) Interface set interfaces ge-0/0/0.0 family inet address x.x.x.x/24set interfaces ge-0/0/1.0 family inet a