Solaris 篇(下)[27]

[入库:2006年2月23日] [更新:2007年3月24日]

本文简介:

pass in quick on lo0 all

pass out quick on lo0 all

 

# 禁止外网的无效地址通过

block in quick on tun0 all with ipopts

block in quick on tun0 all with short

block in quick on tun0 all with frag

block in quick on tun0 proto tcp all flags FUP

block in quick on tun0 from 255.255.255.255/32 to any

block in quick on tun0 from 192.168.0.0/16 to any

block in quick on tun0 from 10.0.0.0/8 to any

block in quick on tun0 from 172.16.0.0/12 to any

block in quick on tun0 from 127.0.0.0/8 to any

block in quick on tun0 from 0.0.0.0/8 to any

block in quick on tun0 from 192.0.2.0/14 to any

block in quick on tun0 from 204.152.64.0/23 to any

block in quick on tun0 from 224.0.0.0/3 to any

 

# 对外网信息的处理, 允许内网包发送到外网, 并且允许外网对这些包的回应信息通过

本文关键:Solaris 篇(下)
 

本站最佳浏览方式为 分辨率 1024x768 IE 6.0(或更高版本的 IE浏览器)

go top