{"id":228,"date":"2008-11-16T17:08:19","date_gmt":"2008-11-16T08:08:19","guid":{"rendered":"https:\/\/deskplate.net\/blog\/2008\/11\/16\/linux-%e5%88%9d%e6%9c%9f%e8%a8%ad%e5%ae%9a%e3%81%aa%e3%81%a9\/"},"modified":"2008-11-16T17:08:19","modified_gmt":"2008-11-16T08:08:19","slug":"linux-%e5%88%9d%e6%9c%9f%e8%a8%ad%e5%ae%9a%e3%81%aa%e3%81%a9","status":"publish","type":"post","link":"https:\/\/deskplate.net\/blog\/archives\/228","title":{"rendered":"Linux \u521d\u671f\u8a2d\u5b9a\u306a\u3069"},"content":{"rendered":"<p>CentOS\u3000\u305f\u3076\u3093\u4ed6\u306e\u3067\u3082\u5171\u901a<br \/>\n\/etc\/ssh\/sshd_config\u7de8\u96c6<br \/>\nPermitRootLogin no<br \/>\nDenyUsers       postgres mysql test apache<br \/>\nsetup \u30b3\u30de\u30f3\u30c9\u3067\u30b7\u30b9\u30c6\u30e0\u30b5\u30fc\u30d3\u30b9\u306e\u4f7f\u308f\u306a\u3044\u3068\u601d\u308f\u308c\u308b\u30b5\u30fc\u30d3\u30b9\u3092\u6b62\u3081\u308b<br \/>\niptables\u8a2d\u5b9a<br \/>\n\u30b3\u30de\u30f3\u30c9\u304c\u9762\u5012\u306a\u306e\u3067Webmin\u3092\u4f7f\u3048\u3070\u697d<br \/>\n\u3082\u3057\u304f\u306f\u30b7\u30a7\u30eb\u3092\u4f5c\u3063\u3066\u304a\u304f<br \/>\n\u4f8b\uff09<br \/>\n#clear<br \/>\n\/sbin\/iptables -F<br \/>\n\/sbin\/iptables -X<br \/>\n#policy<br \/>\n\/sbin\/iptables -P INPUT DROP<br \/>\n\/sbin\/iptables -P FORWARD DROP<br \/>\n\/sbin\/iptables -P OUTPUT ACCEPT<br \/>\n\/sbin\/iptables -A INPUT -p icmp -j ACCEPT<br \/>\n\/sbin\/iptables -A INPUT -i lo -j ACCEPT<br \/>\n#http<br \/>\n\/sbin\/iptables -A INPUT -p tcp &#8211;dport 80 -j ACCEPT<br \/>\n#\/sbin\/iptables -A INPUT -s 192.168.1.1\/24 -p tcp &#8211;dport 80 -j ACCEPT<br \/>\n#\/sbin\/iptables -A INPUT -p tcp &#8211;dport 8080 -j ACCEPT<br \/>\n#ftp<br \/>\n\/sbin\/iptables -A INPUT -s 192.168.1.1\/24 -p tcp &#8211;dport 21 -j ACCEPT<br \/>\n#ssh<br \/>\n\/sbin\/iptables -A INPUT -s 192.168.1.1\/24 -p tcp &#8211;dport 22 -j ACCEPT<br \/>\n#postgresql<br \/>\n\/sbin\/iptables -A INPUT -s 192.168.1.1\/24 -p tcp &#8211;dport 5432 -j ACCEPT<br \/>\n#webmin<br \/>\n\/sbin\/iptables -A INPUT -s 192.168.1.1\/24 -p tcp &#8211;dport 10000 -j ACCEPT<br \/>\n\/sbin\/iptables -A INPUT -p tcp &#8211;dport 53 -j ACCEPT<br \/>\n\/sbin\/iptables -A OUTPUT -p tcp &#8211;dport 53 -j ACCEPT<br \/>\n\/sbin\/iptables -A INPUT -p tcp &#8211;dport 25 -j ACCEPT<br \/>\n\/sbin\/iptables -A OUTPUT -p tcp &#8211;dport 25 -j ACCEPT<br \/>\n\/sbin\/iptables -A INPUT -p tcp &#8211;dport 110 -j ACCEPT<br \/>\n\/sbin\/iptables -A OUTPUT -p tcp &#8211;dport 110 -j ACCEPT<br \/>\n\/sbin\/iptables -A INPUT -m state &#8211;state ESTABLISHED,RELATED -j ACCEPT<br \/>\n#save<br \/>\n\/etc\/init.d\/iptables save<br \/>\n#restart<br \/>\n\/etc\/init.d\/iptables restart<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CentOS\u3000\u305f\u3076\u3093\u4ed6\u306e\u3067\u3082\u5171\u901a \/et<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[],"class_list":["post-228","post","type-post","status-publish","format-standard","hentry","category-linux"],"_links":{"self":[{"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/posts\/228","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/comments?post=228"}],"version-history":[{"count":0,"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/posts\/228\/revisions"}],"wp:attachment":[{"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/media?parent=228"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/categories?post=228"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/deskplate.net\/blog\/wp-json\/wp\/v2\/tags?post=228"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}