Author |
Message |
|
Post subject: RE: Blocking P2Ps
Posted: 10.03.2005 - 10:20 #17289
|
|
Ucen
Joined: Okt 20, 2004
Posts: 561
|
|
hmm konecne nieco pekne aj v slovencine .... l7
uz ma stoho SFQ QSFQ TBF bolella hlava... prekladat a chapat sucasne to je na m,na moc..
tusim prejdem na mgx som system prelozim sy tie casti howtos do SK ktore vzdy zabudnem a tazsie chapem
ale kto to po mne sreviduje aby sa to ndalo publikovat tu na skfreee ????? |
|
|
|
|
|
|
Post subject: Blocking P2Ps
Posted: 23.03.2005 - 19:11 #17937
|
|
Ucen
Joined: Okt 20, 2004
Posts: 561
|
|
|
|
|
|
Post subject: RE: Blocking P2Ps
Posted: 23.03.2005 - 21:40 #17944
|
|
Basic
Joined: Aug 24, 2004
Posts: 206
Location: Prešov - Sekčov
|
|
Slonik: precitaj si diskusiu k tomu softu. Nie je to az take ruzove, ako si mysli autor. |
|
|
|
|
|
|
Post subject: RE: Blocking P2Ps
Posted: 23.03.2005 - 21:47 #17947
|
|
Basic
Joined: Feb 04, 2005
Posts: 175
Location: Gan
|
|
Ak sa mozem pridat tak blokovanie portov podla mna nieje na svojom mieste ak uz niekto ma internet a plati si zanho tak neni dovod mu nieco odopierat. a k tym zdielanym linkam da sa to krasne a diplomaticky vyriesit staci pouzit connbytes a je po probleme sice mam zatial podsebou cez 70 ludi ale zatial sa nikto nestazoval a dokonca niektory prechadzaju od konkurencie koli blokovaniu atd... |
|
|
|
|
|
|
Post subject: RE: Blocking P2Ps
Posted: 23.03.2005 - 21:59 #17948
|
|
Basic
Joined: Feb 04, 2005
Posts: 175
Location: Gan
|
|
este k tomu connbytes mam ho spraveny tak ze ak klient presiahne urcity limit tak nenastane -j DROP ale -j CLASSIFY a do inej pomalsej triedy mam v htb jednu triedu pre downloaderov a v nej sa biju ak presiahnu pocet bitov v jednom spojeni, samozrejme okrem portov web,posta atd... ale aj nanich mam connbytes ale nie az do takej drastickej triedy ako je pre p2p |
|
|
|
|
|
|
Post subject: Blocking P2Ps
Posted: 01.07.2005 - 00:30 #21212
|
|
Basic
Joined: Apr 06, 2005
Posts: 49
|
|
zok wrote: ›este k tomu connbytes mam ho spraveny tak ze ak klient presiahne urcity limit tak nenastane -j DROP ale -j CLASSIFY a do inej pomalsej triedy mam v htb jednu triedu pre downloaderov a v nej sa biju ak presiahnu pocet bitov v jednom spojeni, samozrejme okrem portov web,posta atd... ale aj nanich mam connbytes ale nie az do takej drastickej triedy ako je pre p2p
zok: mozes to prosim ta popisat trocha blisie nech som v obraze ale podla mna je to super riesenie klobuk dole. |
|
|
|
|
|
|
Post subject: Blocking P2Ps
Posted: 01.07.2005 - 09:33 #21216
|
|
Basic
Joined: Jún 29, 2005
Posts: 173
Location: Michalovce
|
|
si wrote: ›jo a sposoby boja ?
/usr/sbin/iptables -I FORWARD -p tcp --dport CISLO_PORTU -j DROP
akurat ten port 5000 sa mi nelubi, lebo som sa stretol uz aj s normalnymi chat-mi vysiacimi na porte 5000
ak by som pouzil ...
iptables -A FORWARD -p tcp --dport (cislo) -j DROP ..... aky je to presne rozdiel?
dik |
|
|
|
|
|
|
Post subject: Blocking P2Ps
Posted: 01.07.2005 - 13:11 #21225
|
|
Majster
Joined: Feb 25, 2003
Posts: 2606
Location: BA,BB
|
|
5gigac: oproti SIckovi vpodstate ziadny, rozdiel je len v sposobe vlozenia pravidla do firewallu (insert / add). Lepsie riesenie je pouzit CONNBYTES patch na iptables alebo IPP2P modul. |
|
|
|
|
|
|
Post subject: RE: Blocking P2Ps
Posted: 01.07.2005 - 14:36 #21228
|
|
Majster
Joined: Feb 05, 2003
Posts: 2686
Location: Topolcany
|
|
A nie je add ale apend ked uz a maly rozdiel tam je
Append one or more rules to the end of the selected chain. When the source and/or destination
names resolve to more than one address, a rule will be added for each possible address combinatio.
Insert one or more rules in the selected chain as the given rule number. So, if the rule number is
1, the rule or rules are inserted at the head of the chain. This is also the default if no rule
number is specified.
ale naco by sme citali manual vsak ano;o)) |
|
|
|
|
|
|
Post subject: Re: RE: Blocking P2Ps
Posted: 01.07.2005 - 14:48 #21230
|
|
Basic
Joined: Apr 06, 2005
Posts: 49
|
|
fleg wrote: ›A nie je add ale apend ked uz a maly rozdiel tam je
Append one or more rules to the end of the selected chain. When the source and/or destination
names resolve to more than one address, a rule will be added for each possible address combinatio.
Insert one or more rules in the selected chain as the given rule number. So, if the rule number is
1, the rule or rules are inserted at the head of the chain. This is also the default if no rule
number is specified.
ale naco by sme citali manual vsak ano;o))
prosim zverejnite njekto navod ako spravit dynamicky shaping. |
|
|
|
|
|
|
Post subject: Re: RE: Blocking P2Ps
Posted: 01.07.2005 - 15:37 #21232
|
|
Majster
Joined: Feb 25, 2003
Posts: 2606
Location: BA,BB
|
|
fleg wrote: ›A nie je add ale apend ked uz a maly rozdiel tam je
sorry jasne append nie add
tchudy wrote: ›]prosim zverejnite njekto navod ako spravit dynamicky shaping.
To je rovnaka lamerska otazka ako otazka typu AKO SI POSTAVIM SIET. Je to pomerne zlozita vec, takze zacni tym ze pouzijes SEARCH (ci uz skfree.net alebo czfree.net) a/alebo GOOGLE. A nepis sem ze si nic nenasiel lebo minimalne 100x sa rozoberal shaping na SKfree, na Czfree to bolo aspon 1000x a google ti vypluje okolo 100 000 stranok ! Ak si napriek tomu nic nenasiel zacni tu:
I. DIEL
http://www.root.cz/clanky/htb-jemny-uvod/
II. DIEL
http://www.root.cz/clanky/htb-dalsi-krucky/
III. DIEL
http://www.root.cz/clanky/htb-automatizujeme/ |
|
|
|
|
|
|
Post subject: Re: RE: Blocking P2Ps
Posted: 02.07.2005 - 01:02 #21237
|
|
Basic
Joined: Apr 06, 2005
Posts: 49
|
|
eXplorer wrote: › fleg wrote: ›A nie je add ale apend ked uz a maly rozdiel tam je
sorry jasne append nie add
tchudy wrote: ›]prosim zverejnite njekto navod ako spravit dynamicky shaping.
To je rovnaka lamerska otazka ako otazka typu AKO SI POSTAVIM SIET. Je to pomerne zlozita vec, takze zacni tym ze pouzijes SEARCH (ci uz skfree.net alebo czfree.net) a/alebo GOOGLE. A nepis sem ze si nic nenasiel lebo minimalne 100x sa rozoberal shaping na SKfree, na Czfree to bolo aspon 1000x a google ti vypluje okolo 100 000 stranok ! Ak si napriek tomu nic nenasiel zacni tu:
I. DIEL
http://www.root.cz/clanky/htb-jemny-uvod/
II. DIEL
http://www.root.cz/clanky/htb-dalsi-krucky/
III. DIEL
http://www.root.cz/clanky/htb-automatizujeme/
dakujem mam este jednu lam otazku za kolko mi to niekto spravy nestiham sa stym hrat. |
|
|
|
|
|
|
Post subject: Blocking P2Ps
Posted: 02.07.2005 - 03:20 #21238
|
|
Majster
Joined: Feb 25, 2003
Posts: 2606
Location: BA,BB
|
|
Quote: › dakujem mam este jednu lam otazku za kolko mi to niekto spravy nestiham sa stym hrat.
Je to pre komercnu siet (ISP) alebo nejaky free projekt ? |
|
|
|
|
|
|
Post subject: Blocking P2Ps
Posted: 06.07.2005 - 13:21 #21240
|
|
Majster
Joined: Okt 22, 2003
Posts: 3321
Location: Banská Bystrica - Rudlová
|
|
tchudy niesi nahodou z Detvy ? |
|
|
|
|
|
|
Post subject: Re: Blocking P2Ps
Posted: 07.07.2005 - 10:56 #21254
|
|
Basic
Joined: Apr 06, 2005
Posts: 49
|
|
gyro wrote: › tchudy niesi nahodou z Detvy ?
z detvy som neni aka by bola cena. |
|
|
|
|
|
|
Powered by PNphpBB2 © 2003-2005 The PNphpBB Group Credits |