NP there, but if you reboot wont it just start the firewall again?.
Maybe a pre cofig for the ports that need to be open.....
Perhaps the author will shed some input.![]()
on the kiss install, all goes well but at this command it doesn't work
chown root:root
Code:chown root:root chown: too few arguements
Originally Posted by @how@ View Post
Kiss Version 2.0 ready to use in CentOS 4
cd /usr/bin/
wget http://www.web4host.net/tools/kiss
chmod 700 kiss
chown root:root
That's it! To get it running anywhere on the command line, you simply type:
kiss start
To stop the firewall, type:
kiss stop
To get status information, type:
kiss status
If you want to block an offenders IP address/subnet, simply edit the BLOCK_LIST variable in the /usr/bin/kiss file. You can separate IP addresses and subnet's with a space. Once you are finished, simply restart KISS by typing:
kiss restart
here you can fine Version 2.1
http://www.geocities.com/steve93138/
Wael
that's rightshould it have been?
chown root:root kiss
thank you Webcart.
just curious, if this file wasn't changed for ownership, what is the wost that could happen? could the firewall be compromised?
Thanks to all for the help, one of the many reasons I prefer DA over the others...![]()
there are no "logs" to this, are there? nice to be able to see what work it is doing....
iptables -L
KISS doesn't log. APF+BFD does log, and even send emails, but some people think it overlogs.there are no "logs" to this, are there? nice to be able to see what work it is doing....
Or:Type
to see the firewall rules.Code:iptables -L
kiss status
Kiss Version 2.0 ready to use in CentOS 4
cd /usr/bin/
wget http://www.web4host.net/tools/kiss
chmod 700 kiss
chown root:root
That's it! To get it running anywhere on the command line, you simply type:
kiss start
To stop the firewall, type:
kiss stop
To get status information, type:
kiss status
If you want to block an offenders IP address/subnet, simply edit the BLOCK_LIST variable in the /usr/bin/kiss file. You can separate IP addresses and subnet's with a space. Once you are finished, simply restart KISS by typing:
kiss restart
here you can fine Version 2.1
http://www.geocities.com/steve93138/
Wael
mod_limitipconn![]()
can someone explain the tcp/udp connections, default is set at 150, is this a normal high?, how much can you tighten this without going to low....The config file is in /usr/local/ddos/ddos.conf , set your max connections, alert and such in there.
The usage is pretty self explanatory
Usage: ddos.sh [OPTIONS] [N]
N : number of tcp/udp connections (default 150)
OPTIONS:
-h | --help: Show this help screen
-c | --cron: Create cron job to run this script regularly (default 1 mins)
-k | --kill: Block the offending ip making more than N connections
can someone explain the tcp/udp connections, default is set at 150, is this a normal high?, how much can you tighten this without going to low....
Banned the following ip addresses on Fri Sep 21 14:47:01 EDT 2007
xxx.xxx.xx.xx with 1644 connections