Anti-DDOS server Apache with Mod DoS-Deflate
Thứ Hai, 26 tháng 5, 2014
Deflate
basic os monitor and track the IP address is sent and set up large
number of TCP connections such as mass emailing, DoS ping, HTTP
requests) by using "netstat" command, it is symptomatic of a denial of
service attack. Upon
detecting the number of connections from a single node exceeds a
certain preset limit, the script will automatically uses APF or iptables
banned and IP blocked. Depending on the configuration, the IP address will be banned unbanned using APF or iptables (works on APF v 0.96 or better).
Linux has always been the target of hacker attacks
Installation and setup of (D) DOS-Deflate on the server is extremely easy. Simply login as root by open SSH access to the server, and run the following command:
# Wget http://www.inetbase.com/scripts/ddos/install.sh
# Chmod 0700 install.sh
#. / Install.sh
To uninstall D () DOS-Deflate, run the following command:
# Wget http://www.inetbase.com/scripts/ddos/uninstall.ddos uninstall.ddos chmod 0700. / Uninstall.ddos
The configuration file for (D) DOS-Deflate is ddos.conf, and by default it will have the following values:
FREQ
FREQ = 1 = 1 NO_OF_CONNECTIONS NO_OF_CONNECTIONS = 50 = 50 = 1 APF_BAN
APF_BAN 1 = KILL KILL = 1 = 1 EMAIL_TO = "root" EMAIL_TO = "root"
BAN_PERIOD BAN_PERIOD = 600 = 600
The user can change any of these settings to suit different needs or usage patterns of different servers. It
is also possible to whitelist and permanently unblock (never ban) IP
address list of them in the directory / usr / local / DDoS /
ignore.ip.list file. If you plan to implement and run the script interactively, users can set KILL = 0 so that any adverse findings IP is not banned
All comments [ 0 ]
Your comments