- 论坛徽章:
- 0
|
请是楼上各位这是过滤什么能否解释一下,我查了半了ASCII码的HEX对应也没查出来啊
QUOTE:
-A FORWARD -d 10.8.32.0/255.255.252.0 -m string --hex-string "|e5bdb1|" --algo kmp --to 65535 -j DROP
-A FORWARD -d 10.8.32.0/255.255.252.0 -m string --hex-string "|e5bdb1e999a2|" --algo kmp --to 65535 -j DROP
-A FORWARD -d 10.8.32.0/255.255.252.0 -m string --hex-string "|e5aebde9a291e5bdb1e999a2|" --algo kmp --to 65535 -j DROP
这几个是汉字"影院" 宽带影院等,利用IPTABELS-SAVE保存后,自动变成这个了
交换机配置:
vlan 33
name br33
#
vlan 34
description "1 hao sushelou internet"
name sushe_1
interface Vlan-interface33
ip address 10.8.33.252 255.255.255.0
#
interface Vlan-interface34
ip address 10.8.34.2 255.255.255.0
interface Ethernet3/0/5
port access vlan 33
interface Ethernet3/0/6
port access vlan 33
interface Ethernet3/0/7
port access vlan 34
interface Ethernet3/0/8
port access vlan 34
iptables这台机器接在Ethernet3/0/6,客户端接在Ethernet3/0/6,且客户端地址设成10.8.33.199/24,网关设成10.8.33.251,这时能ping通10.8.33.251,
iptables这台机器仍然接在Ethernet3/0/6不变,
客户端接在Ethernet3/0/7,且客户端地址设成10.8.34.199/24,网关设成10.8.34.5,这时不能ping通10.8.34.5,
请再帮忙,谢谢! |
|