- 论坛徽章:
- 0
|
原帖由 ISOneter 于 2006-5-10 09:38 发表
对一些p2p软件怎样做限制如:pplive 还有怎样限制用户用电骡下载
这个可以通过iptables加载ipp2p和layer7模块来实现
如
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto bittorrent -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto fasttrack -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto edonkey -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto kugoo -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto xunlei -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto code_red -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto kameng -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto poco -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto baiduxiaba -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto 100bao -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto socks -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto nimda -j DROP
- /sbin/iptables -t mangle -I POSTROUTING -m layer7 --l7proto live365 -j DROP
- /sbin/iptables -A FORWARD -m layer7 --l7proto rtsp -m time --timestart 8:00 --timestop 12:30 --days Mon,Tue,Wed,Thu,Fri,Sat -j DROP
- /sbin/iptables -A FORWARD -m layer7 --l7proto rtsp -m time --timestart 13:00 --timestop 21:30 --days Mon,Tue,Wed,Thu,Fri,Sat -j DROP
- /sbin/iptables -A FORWARD -m layer7 --l7proto ftp -m time --timestart 8:00 --timestop 12:30 --days Mon,Tue,Wed,Thu,Fri,Sat -j DROP
- /sbin/iptables -A FORWARD -m layer7 --l7proto ftp -m time --timestart 13:00 --timestop 21:30 --days Mon,Tue,Wed,Thu,Fri,Sat -j DROP
- /sbin/iptables -A FORWARD -m ipp2p --edk --kazaa --bit -j DROP
- /sbin/iptables -A FORWARD -p tcp -m ipp2p --ares -j DROP
- /sbin/iptables -A FORWARD -p udp -m ipp2p --kazaa -j DROP
复制代码 |
|