bet as kad visai sustabdes ta ssh, ssh sustabdytas pas mane... "ejs" <ejs@no.where> wrote in message news:i997sa$dcm$1@trimpas.omnitel.net... > 2010.10.15 12:11, news-omni rašė: >> On 15.10.2010 10:35, Idomu wrote: >>> tcp 0 1 www.xxx.xxx:41602 www.irrp.org.ua:ircd >>> SYN_SENT 21698/sshd: >>> >>> tcp 0 1 www.xxx.xxx:40964 www.irrp.org.ua:ircd >> apsisaugok su iptables >> >> iptables -A INPUT -p tcp --dport 22 -s leidziamas_ip -j ACCEPT >> iptables -A INPUT -p tcp --dport 22 -s 0.0.0.0/0 -j REJECT > > žiauru ir neteisinga savo paties atžvilgiu. > > -A INPUT -s ... -i ... -p tcp -m tcp --dport 22 -j ACCEPT > > -A INPUT -i ... -p tcp -m limit --limit 1/sec --limit-burst 2 -m > tcp --dport 22 -j ACCEPT > > -A INPUT -i ... -p udp -m limit --limit 1/sec --limit-burst 2 -m > udp --dport 22 -j ACCEPT > > -- > ejs