Network Resource Access Controls
*Netfilter
#iptables
#chkconfig --list iptables
iptables 0:off 1:off 2:on 3:on 4:on 5:on 6:off
(1)Rule Targets
DROP, ACCEPT, LOG, REJECT, custom chain
- Aug 03 Mon 2009 11:44
[雜記]RHCE筆記整理-RH253-Unit4(1)
- Aug 03 Mon 2009 10:59
[雜記]RHCE筆記整理-RH253-Unit2(1)
System Service Access Controls
*chkconfig控制服務在開機後是否自動啟動
(1)
#chkconfig --list
#chkconfig name {on|off}
#chkconfi vsftpd on
#chkconfig --level levels name {on|off}
- Aug 03 Mon 2009 00:30
[雜記]RHCE筆記整理-RH253-Unit1(3)
LAB
*Logging to a centralized loghost
%server1的log複寫一份到server118
(1) server1
#vi /etc/syslog.conf
加入 user,* @server118
- Aug 03 Mon 2009 00:16
[雜記]RHCE筆記整理-RH253-Unit1(2)
Syslogd and Klogd Configuration
configuration: /etc/syslog.conf
Syntax:
facility.priority log_location
Ex:
mail.info /dev/tty8
- Aug 02 Sun 2009 23:55
[雜記]RHCE筆記整理-RH253-Unit1(1)
System Performance and Security
*即時監看log
#tail -f /var/log/[logfile]
*查看網路狀態
#netstat -tupln
-n : do not resolve IP address to host name
-t : list TCP connections
-u : list UDP connections