12.07.2015 Views

Red Hat Enterprise Linux 5 Administration Unleashed

Red Hat Enterprise Linux 5 Administration Unleashed

Red Hat Enterprise Linux 5 Administration Unleashed

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

490CHAPTER 24Configuring a Firewall--psd-lo-ports-weight Weight of a packet with a privileged destination port, which are port numbers1024 and under.--psd-hi-ports-weight Weight of a packet with a nonprivileged destination port, which are portnumbers 1024 and above.quotaNetwork quota calculated with a byte counter for each packet.--quota Total bytes allowed for each packet.randomRandomly match a defined percentage of packets.--average Defined percentage of packets to match. If not defined, 50% is used.realmMatch the routing realm.--realm [!] /Define the realm value to match. The mask is optional.recentGrant or deny access to a specific list of IP addresses, which can be modified at anytime.--name Name the list. DEFAULT is used if a name is not defined. The list is stored in the/proc/net/ipt_recent/ file. Use --set or --remove to add or remove thesource address of the packet to the list.Alternatively, to add IP addresses to the list (as root):echo xx.xx.xx.xx > /proc/net/ipt_recent/To remove IP address from the list:echo -xx.xx.xx.xx > /proc/net/ipt_recent/[!] --setAdd the source address of the packet to the list.[!] --rcheckCheck if the source address of the packet is in the list.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!