gentlemon
16.05.15, 15:42
Du kannst mal versuchen die UDP Packets zu filtern:
iptables -N BAD_SMALL
iptables -A BAD_SMALL -p udp -m length --length 0:27 -m recent --set -j DROP
iptables -A BAD_SMALL -p tcp -m length --length 0:39 -m recent --set -j DROP
iptables -A BAD_SMALL -p 30 -m length --length 0:31 -m recent --set -j DROP
iptables -A BAD_SMALL -p 47 -m length --length 0:39 -m recent --set -j DROP
iptables -A BAD_SMALL -p 50 -m length --length 0:49 -m recent --set -j DROP
iptables -A BAD_SMALL -p 51 -m length --length 0:35 -m recent --set -j DROP
iptables -A BAD_SMALL -m length --length 0:19 -m recent --set -j DROP
iptables -A BAD_SMALL -j RETURN
iptables -A INPUT -p tcp -j BAD_SMALL
iptables -A FORWARD -p tcp -j BAD_SMALL
welche Dienste laufen denn auf dem Server?
OVH oder SYS Server? Welcher?
iptables -N BAD_SMALL
iptables -A BAD_SMALL -p udp -m length --length 0:27 -m recent --set -j DROP
iptables -A BAD_SMALL -p tcp -m length --length 0:39 -m recent --set -j DROP
iptables -A BAD_SMALL -p 30 -m length --length 0:31 -m recent --set -j DROP
iptables -A BAD_SMALL -p 47 -m length --length 0:39 -m recent --set -j DROP
iptables -A BAD_SMALL -p 50 -m length --length 0:49 -m recent --set -j DROP
iptables -A BAD_SMALL -p 51 -m length --length 0:35 -m recent --set -j DROP
iptables -A BAD_SMALL -m length --length 0:19 -m recent --set -j DROP
iptables -A BAD_SMALL -j RETURN
iptables -A INPUT -p tcp -j BAD_SMALL
iptables -A FORWARD -p tcp -j BAD_SMALL
welche Dienste laufen denn auf dem Server?
OVH oder SYS Server? Welcher?