linuxϵͳ·ÀÖ¹/¼õÇáDDOS¹¥»÷½Å±¾(D)DoS Deflate
»¥ÁªÍøÈçͬÏÖʵÉç»áÒ»Ñù³äÂú¹³ÐĶ·½Ç£¬ÍøÕ¾±»DDOSÒ²³ÉΪվ³¤×îÍ·ÌÛµÄÊ¡£ÔÚûÓÐÓ²·ÀµÄÇé¿öÏ£¬Ñ°ÕÒÈí¼þ´úÌæÊÇ×îÖ±½ÓµÄ·½·¨£¬±ÈÈçÓÃiptables£¬µ«ÊÇiptables²»ÄÜÔÚ×Ô¶¯ÆÁ±Î£¬Ö»ÄÜÊÖ¶¯ÆÁ±Î¡£½ñÌìҪ˵µÄ¾ÍÊÇÒ»¿îÄܹ»×Ô¶¯ÆÁ±ÎDDOS¹¥»÷ÕßIPµÄÈí¼þ£ºDDoS Deflate¡£
¹ØÓÚDDOS deflate½Å±¾
DDOS deflateÊÇÒ»¸öÇáÁ¿¼¶µÄ½Å±¾£¬ÒÔÐÖú×èÖ¹¾Ü¾ø·þÎñ¹¥»÷µÄ¹ý³ÌÖеÄbash shell½Å±¾¡£ËüʹÓÃÏÂÃæµÄÃüÁîÀ´´´½¨Ò»¸öÁ¬½Óµ½·þÎñÆ÷µÄIPµØÖ·ÁÐ±í£¬ÒÔ¼°ÓëËüÃǵÄÁ¬½Ó×ÜÊý ¡£ÕâÊÇ×î¼òµ¥µÄ°²×°Èí¼þµÄ½â¾ö·½°¸Ö®Ò»¡£
# netstat -ntu | awk ‘{print $5}’ | cut -d£º -f1 | sort | uniq -c | sort -n
³¬¹ýÁËÔ¤ÏÈÅäÖõÄÁ¬½ÓÊýµÄIPµØÖ·×Ô¶¯±»·þÎñÆ÷·À»ðǽ×èÖ¹£¡
½Å±¾Ìص㣺
1.¿ÉÒÔÅäÖð×Ãûµ¥µÄIPµØÖ·£¬Í¨¹ýÅäÖãº/usr/local/ddos/ignore.ip.list
2.¼òµ¥µÄÅäÖÃÎļþ£º/usr/local/ddos/ddos.conf
3.IPµØÖ·±»·âʱ¼äÊÇÔ¤ÏÈÉ趨µÄ£¨Ä¬ÈÏ£º600Ãëºó×Ô¶¯½â³ý·âËø£©
4.ͨ¹ýÅäÖÃÎļþ£¬½Å±¾¿ÉÒÔ¶¨Ê±ÖÜÆÚÐÔÔËÐУ¨Ä¬ÈÏÊÇ£º1·ÖÖÓ£©
5.ÓÐIPµØÖ·±»·âËøʱ£¬¿ÉÒÔΪָ¶¨µÄÓÊÏä½ÓÊÕµç×ÓÓʼþ¾¯±¨¡£
°²×°£º
# wget http://www.inetbase.com/scripts/ddos/install.sh
# chmod 0700 install.sh
# ./install.sh
ÏÂÃæ½âÊÍÒ»ÏÂDDOS deflate½Å±¾Ö÷ÅäÎļþddos.conf£º
##### Paths of the script and other files
PROGDIR="/usr/local/ddos"//Îļþ´æ·ÅĿ¼
PROG="/usr/local/ddos/ddos.sh" //Ö÷Òª¹¦Äܽű¾
IGNORE_IP_LIST="/usr/local/ddos/ignore.ip.list" //°×Ãûµ¥µØÖ·Áбí
CRON="/etc/cron.d/ddos.cron"//crond¶¨Ê±ÈÎÎñ½Å±¾
APF="/etc/apf/apf"
IPT="/sbin/iptables"
ÍƼöÐÅÏ¢
- ¹¹½¨¸ß¿ÉÓú͵¯ÐÔÉìËõµÄKV´æ´¢ÏµÍ³
- ̸̸ÍøÕ¾¾²Ì¬»¯£¨¶þ£©
- ̸̸ÍøÕ¾¾²Ì¬»¯£¨Ò»£©
- Ðì¹úÏ飺΢²©ÊÇ·ñ»á²ÎÓëÍøÕ¾ÅÅÃû
- ApacheÔÚ±¾µØ½¨Á¢·ºÓòÃûÐéÄâÖ÷»ú¼ò·¨
- ÈçºÎ½øÐÐÍøÕ¾Õï¶Ï ΪÍøÕ¾½øÐÐÆÀ·Ö
- Ò»¸ö³É¹¦µÄÕ¾³¤Ó¦¸Ã¾ß±¸µÄËØÖÊ
- Ò»Ìõ΢²©Òý·¢µÄ·ÖÎö£ºÈçºÎÈÃ΢²©µÃµ½¹ã·º´«²¥
- ÈçºÎÈÃÒ»¸öÍøÕ¾ÓÐÇ¿´óÉúÃüÁ¦
- פ×ãIDCÃż÷³Ö±Ò¹ÛÍû Õ¾³¤Ñ¡¹º¿Õ¼ä³É¡°¼èÄѵľö¶¨¡±£¿
ÈÈÃÅÐÅÏ¢
- nohup: redirecting stderr to stdou....
- ʹÓÃlog_formatΪNginx·þÎñÆ÷ÉèÖøüÏêϸµÄÈÕÖ¾¸ñʽ
- jquery easyUI--dataGrid-Json
- [Ô´´]·ÂGoogle Reader¡¢ÐÂÀË΢²©¡¢ÌÚѶ΢²©µ....
- ÀûÓÃKeepalived+mysql¹¹½¨¸ß¿ÉÓÃMySQLË«Ö÷×Ô¶....
- Nginx+keepalivedʵÏÖ¸ºÔؾùºâºÍË«»úÈȱ¸¸ß¿ÉÓÃ
- jqueryʵÏÖÒ³Ãæ¼ÓÔؽø¶ÈÌõ
- Rolling cURL: PHP²¢·¢×î¼Ñʵ¼ù
- codeigniter ·ÓÉÖÕ¼«ÓÅ»¯(url rewrite)
- linuxÏÂÉèÖÃsshÎÞÃÜÂëµÇ¼
ÆÀÂÛ