近来发现服务器存在网络异常流量的问题,于是进行了网络的监控监控发现如下日志,
问题如下:
1.由于对网络攻击不熟不知道这个算是udp flood攻击么?但是感觉更像UDP 端口扫描。
2.我服务器上有防火墙,并且配置规则只允许tcp指定的几个端口可以访问INPUT默认规则都是DROP ,为什么防火墙防不住这样的攻击呢?
先感谢大家,希望可以帮助回答谢谢
UDP/591: 1 packets, 1500 bytes total, 0.00 kbits/s; 1 packets, 1500 bytes incoming, 0.00 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/284: 2 packets, 3000 bytes total, 0.01 kbits/s; 2 packets, 3000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/389: 2 packets, 3000 bytes total, 0.01 kbits/s; 2 packets, 3000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/133: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/56: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.0
UDP/515: 6 packets, 9000 bytes total, 0.02 kbits/s; 6 packets, 9000 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/171: 1 packets, 1500 bytes total, 0.00 kbits/s; 1 packets, 1500 bytes incoming, 0.00 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/423: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/891: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/31: 6 packets, 9000 bytes total, 0.02 kbits/s; 6 packets, 9000 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.0
UDP/24: 6 packets, 9000 bytes total, 0.02 kbits/s; 6 packets, 9000 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.0
UDP/30: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.0
UDP/570: 6 packets, 9000 bytes total, 0.02 kbits/s; 6 packets, 9000 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/842: 3 packets, 4500 bytes total, 0.01 kbits/s; 3 packets, 4500 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/527: 8 packets, 12000 bytes total, 0.03 kbits/s; 8 packets, 12000 bytes incoming, 0.03 kbits/s; 0 packets, 0 bytes outgoing,
UDP/538: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/689: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/221: 2 packets, 3000 bytes total, 0.01 kbits/s; 2 packets, 3000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/19: 2 packets, 3000 bytes total, 0.01 kbits/s; 2 packets, 3000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.0
UDP/321: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/105: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/932: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/170: 2 packets, 3000 bytes total, 0.01 kbits/s; 2 packets, 3000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/296: 9 packets, 13500 bytes total, 0.03 kbits/s; 9 packets, 13500 bytes incoming, 0.03 kbits/s; 0 packets, 0 bytes outgoing,
UDP/10: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.0
UDP/571: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/818: 7 packets, 10500 bytes total, 0.02 kbits/s; 7 packets, 10500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing,
UDP/927: 3 packets, 4500 bytes total, 0.01 kbits/s; 3 packets, 4500 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/723: 3 packets, 4500 bytes total, 0.01 kbits/s; 3 packets, 4500 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/305: 1 packets, 1500 bytes total, 0.00 kbits/s; 1 packets, 1500 bytes incoming, 0.00 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/422: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/433: 6 packets, 9000 bytes total, 0.02 kbits/s; 6 packets, 9000 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/537: 8 packets, 12000 bytes total, 0.03 kbits/s; 8 packets, 12000 bytes incoming, 0.03 kbits/s; 0 packets, 0 bytes outgoing,
UDP/883: 6 packets, 9000 bytes total, 0.02 kbits/s; 6 packets, 9000 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/693: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/88: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.0
UDP/163: 1 packets, 1500 bytes total, 0.00 kbits/s; 1 packets, 1500 bytes incoming, 0.00 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/839: 5 packets, 7500 bytes total, 0.02 kbits/s; 5 packets, 7500 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/208: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/116: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/658: 6 packets, 9000 bytes total, 0.02 kbits/s; 6 packets, 9000 bytes incoming, 0.02 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/115: 2 packets, 3000 bytes total, 0.01 kbits/s; 2 packets, 3000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/161: 4 packets, 6000 bytes total, 0.01 kbits/s; 4 packets, 6000 bytes incoming, 0.01 kbits/s; 0 packets, 0 bytes outgoing, 0.
UDP/450: 1 packets, 1500 bytes total, 0.00 kbits/s; 1 packets, 1500 bytes incoming, 0.00 kbits/s; 0 packets, 0 bytes outgoing, 0.
|