- 论坛徽章:
- 0
|
以下是iptables -L的
- root@file sysconfig]# iptables -L
- Chain INPUT (policy ACCEPT)
- target prot opt source destination
- ACCEPT all -- file file
- ACCEPT all -- 212.21.89.72 anywhere
- ACCEPT tcp -- anywhere anywhere tcp dpt:http
- ACCEPT tcp -- anywhere anywhere tcp dpt:8000
- ACCEPT tcp -- anywhere anywhere tcp dpt:ftp-data
- ACCEPT tcp -- anywhere anywhere tcp dpt:ftp
- ACCEPT tcp -- anywhere anywhere tcp dpt:ssh
- ACCEPT tcp -- anywhere anywhere tcp dpt:rtsp
- ACCEPT all -- 61.155.21.32/27 anywhere
- ACCEPT all -- 192.168.156.0/24 anywhere
- ACCEPT icmp -- anywhere anywhere
- ACCEPT all -- anywhere anywhere state ESTABLISHED
- DROP all -- anywhere anywhere
- Chain FORWARD (policy ACCEPT)
- target prot opt source destination
- Chain OUTPUT (policy ACCEPT)
- target prot opt source destination
复制代码
proftpd.conf配置以下
- # This is a basic ProFTPD configuration file (rename it to
- # 'proftpd.conf' for actual use. It establishes a single server
- # and a single anonymous login. It assumes that you have a user/group
- # "nobody" and "ftp" for normal operation and anon.
- ServerName "ProFTPD Default Installation"
- ServerType standalone
- DefaultServer on
- # Port 21 is the standard FTP port.
- Port 21
- # Umask 022 is a good standard umask to prevent new dirs and files
- # from being group and world writable.
- Umask 022
- RequireValidShell off
- # To prevent DoS attacks, set the maximum number of child processes
- # to 30. If you need to allow more than 30 concurrent connections
- # at once, simply increase this value. Note that this ONLY works
- # in standalone mode, in inetd mode you should use an inetd server
- # that allows you to limit maximum number of processes per service
- # (such as xinetd).
- MaxInstances 60
- TimeoutSession 0
- TimeoutLogin 0
- AllowStoreRestart on
- # Set the user and group under which the server will run.
- User nobody
- Group nobody
- # To cause every FTP user to be "jailed" (chrooted) into their home
- # directory, uncomment this line.
- #DefaultRoot ~
- # Normally, we want files to be overwriteable.
- <Directory />
- AllowOverwrite on
- #RateReadBPS 50000
- </Directory>
- # A basic anonymous configuration, no upload directories. If you do not
- # want anonymous users, simply delete this entire <Anonymous> section.
- <Anonymous /var/upload>
- User ftpuser
- Group ftpuser
- AnonRequirePassword on
- # Limit the maximum number of anonymous logins
- MaxClients 200
- #MaxClientsPerHost 2
- # We want 'welcome.msg' displayed at login, and '.message' displayed
- # in each newly chdired directory.
- DisplayLogin welcome.msg
- DisplayFirstChdir .message
- AllowStoreRestart on
- AllowOverwrite on
- <Directory /var/download>
- # Limit WRITE everywhere in the anonymous chroot
- <Limit STOR MKD RMD DELE APPE RNFR RNTO>
- AllowAll
- IgnoreHidden on
- </Limit>
- </Directory>
- </Anonymous>
复制代码 |
|