ͳ¼ÆÁ¬½ÓÊý״̬(LinuxÍøÂçÁ¬½Ó״̬¼ì²é£¡)
ͳ¼ÆÁ¬½ÓÊý״̬£º
LinuxÍøÂçÁ¬½Ó״̬¼ì²é£¡
¼ì²élinuxµÄÍøÂçÁ¬½Ó״̬ÆäʵºÜ¼òµ¥£¬ÀûÓÃLinuxÄÚÖõÄһЩÃüÁîºÍSHELLµÄ¼¸¸öС¼¼ÇɾͿÉÒÔÍê³É¿´ËƸ´Ôӵļì²éÈÎÎñ£¬ÕâÒ²ÊÇLinuxµÄ÷ÈÁ¦Ö®Ò»£¡
×î»ù±¾µÄ£¬
netstat -atn
¸ÃÃüÁîµÄ½âÊÍÊÇÁгö»ùÓÚTCPÐÒé(-t)µÄËùÓÐÁ¬½Ó£¬²¢½«Í¨ÐÅË«·½ÒÔIPµØÖ·µÄ£¨-n)µÄ·½Ê½ÏÔʾ£¬¶ø²»ÊÇÖ÷»úÃû£¡£¡
netstat -atn | cut -b 49-75 | grep -o -P "\b\d{1,3}\.\d{1,3}\.\d{1,3}\.\d{1,3}\b" | sort | uniq -c | sort -n -r -k 1,7 | head -10
ÕâÐÐÃüÁîÓÃÀ´·ÖÎönetstatµÄÊä³ö½á¹û£¬×îºóµÃ³öµÄÊÇĿǰ´¦ÓÚÁ¬½ÓÖеIJ»Í¬µÄIPµØÖ·£»Õâ¸öÃüÁîÔÚUbuntu£¨cut -b 45-75)Éϲ»ÄÜʵÏÖ£¬ÕâÊDz»Í¬µÄLinux¶ÔÓÚһЩ»ù±¾ÃüÁîµÄʵÏÖ²»Í¬£¨±àÒëµÄÑ¡ÏîºÍ²ÎÊý²»Ò»Ö£©£¬µ«ÊÇubuntuÉÏ¿ÉÒÔÓÃÏÂÃæµÄÃüÁîʵÏÖÏàËÆµÄ¹¦ÄÜ£¬
netstat -atn | cut -b 45-75 | cut -d':' -f1 |sort | uniq -c | sort -n -r -k 1,7 | head -10
ΨһµÄȱµãÊDz»ÓÃÕýÔò±í´ïʽµÄÇé¿öÏÂtitleÄÚÈÝÐÐÒ²±»·ÅÁ˽øÀ´£¬µ±È»»¹¿ÉÒÔÓÃһЩÃüÁîÈ¥³ýÕâЩÎÄ×ÖÐУ¬ÕâÀï¾Í²»Õ¹¿ªÁË£¡
netstat -atn |cut -b 77-90 £ü sort | uniq -c ÊÇÁгöÿ¸öÁ¬½ÓµÄ״̬²¢Í³¼Æ£¡
¶ÔÓÚnetstatÃüÁîÊä³öµÄ·ÖÎöÆäʵ»¹Óкܶ෽·¨£¬Õâ¶ù¾Í²»ÔÙÁо٣¡
time tcpdump -ns 200 -c 100 '(dst port http or dst port https) and tcp[13] & 2!=0' | grep -o -P '\b\d{1,3}\.\d{1,3}\.\d{1,3}\.\d{1,3}.\d{1,5}\s\>' | cut -d '.' -f 1-4 | sort | uniq -c | sort -n -r -k 1,7 | head -25
Õâ¸öÃüÁîÊǶÔÓÚ100¸ö°üÖÐÓжàÉÙ¸öÐÂÁ¬½ÓÇëÇóµÄͳ¼Æ£¡ÔËÓÃÁËtcpdumpץȡ100¸ö£¨£c 100£©°ü£¬×îºóÁгöÕâЩÇëÇóµÄIPµØÖ·¡£
ÕâÀïÖ»ÊÇÁ½¸ö¼òµ¥µÄÀý×Ó£¬»¹ÓкܶàÃüÁî×éºÏÔËÓõÄʵÀý¿ÉÒÔ´ó´ó¼Ó¿ìÎÒÃǵŤ×÷ЧÂÊ£¬ÕâЩ¶¼Ö»ÒªºÏÀíÔËÓÃLinuxµÄÃüÁî¾Í¿ÉÒÔÁË£¡£¡
²é¿´http½ø³ÌÊý£º
[root@localhost conf]# ps -ef|grep httpd|wc -l
½á¹û - 1 (ÒòΪ°üº¬ÁËgrep httpdÕâ¸ö½ø³Ì)
[root@localhost conf]# netstat -n|awk '/^tcp/{++S[$NF]} END {for(a in S) print a,S[a]}'
LAST_ACK 173
SYN_RECV 35
CLOSE_WAIT 159
ESTABLISHED 152
FIN_WAIT1 29
FIN_WAIT2 10
CLOSING 39
TIME_WAIT 103
Ïà¹ØÎĵµ£º
1 »ùÓÚ80x86µÄLinux·Ö¶Î»úÖÆ
80386µÄÁ½ÖÖ¹¤×÷ģʽ£º80386µÄ¹¤×÷ģʽ°üÀ¨ÊµµØÖ·Ä£Ê½ºÍÐéµØÖ·Ä£Ê½£¨±£»¤Ä£Ê½£©¡£LinuxÖ÷Òª¹¤×÷ÔÚ±£»¤Ä£Ê½Ï¡£
ÔÚ±£»¤Ä£Ê½Ï£¬80386Ð鵨ַ¿Õ¼ä¿É´ï16K¸ö¶Î£¬Ã¿¶Î´óС¿É±ä£¬×î´ó´ï4GB¡£Âß¼µØÖ·µ½ÏßÐÔµØÖ·µÄת»»ÓÉ80386·Ö¶Î»úÖÆ¹ÜÀí¡£¶Î¼Ä´æÆ÷CS¡¢DS¡¢ES¡¢SS¡¢FS»òGS¸÷±êʶһ¸ö¶Î¡£ÕâЩ¶Î¼Ä´æÆ ......
ÈëÇÖ¼ì²âϵͳ£¨IDS£©ÊǶԼÆËã»úºÍÍøÂçϵͳ×ÊÔ´ÉϵĶñÒâʹÓÃÐÐΪ½øÐÐʶ±ðºÍÏìÓ¦µÄ´¦Àíϵͳ£¬ËüÏñÀ״ᆵ½äÒ»Ñù£¬ÔÚ²»Ó°ÏìÍøÂçÐÔÄܵÄǰÌáÏ£¬¶ÔÍøÂç½øÐо¯½ä¡¢¼ì²â£¬´Ó¼ÆËã»úÍøÂçµÄÈô¸É¹Ø¼üµãÊÕ¼¯ÐÅÏ¢£¬Í¨¹ý
·ÖÎöÕâЩÐÅÏ¢£¬²é¿´ÍøÂçÖÐÊÇ·ñÓÐÎ¥·´°²È«²ßÂÔµÄÐÐΪºÍÔâµ½¹¥»÷µÄ¼£Ï󣬴ӶøÀ©Õ¹ÁËϵͳ¹ÜÀíÔ±µÄ°²È«¹ÜÀíÄÜÁ¦ ......
Ubuntu Linuxϵͳ¿ªÆôTELNET·þÎñµÄ·½·¨
¡¡¡¡RSS¶©ÔÄ,µÚһʱ¼ä»ñÈ¡¿ªÔ´×ÊѶ¶¯Ì¬
1. sudo apt-get install xinetd telnetd
2. °²×°³É¹¦ºó£¬ÏµÍ³Ò²»áÓÐÏàÓ¦Ìáʾ£¨ºÃÏó7.10²ÅÓУ¬6.10¾Íû¿´µ½£©
sudo vi /etc/inetd.conf²¢¼ÓÈëÒÔÏÂÒ»ÐÐ
telnet stream tcp nowait telnetd /usr/sbin/tcpd /usr/sbin/in.tel ......
Ò»£® ÒÔrootÉí·Ý½¨Á¢tuxedoÓû§£¬²¢ÒÔtuxeduÓû§µÇ½£¬´ËÓû§½«×öΪÒÔºótuxedo¹ÜÀíÔ±,Óû§Ä¬ÈÏĿ¼Ϊ/home/tuxedo£»
¶þ£® ÓÃFTP°Ñ°²×°Îļþ£¨tuxedo81_linux.bin£©ºÍÓû§Ðí¿ÉÖ¤ÊéÎļþ£¨lic.txt£©´«µ½/home/tuxedoĿ¼ÖУ»
Èý. ÅäÖû·¾³±äÁ¿£¬.bash_profileÎļþ£¬¸½ÎÄÄ©£»
ËÄ£® ½øÈë/home/tuxedoĿ¼ÖУ¬Ö´ÐÐs ......
¾¹ýÊýÌ첻иµÄŬÁ¦£¬LINUXÀú¾¡Èý´Î֨װ£¬ORACLE֨װN´ÎÖÕÓÚÔÚLiNUXAS4 update6 x86_64 ϰ²×°ºÃORACLE10g R 2 (64λ) ÁË¡£
ÏÂÃæ°Ñ°²×°¹ý³ÌºÍ´ó¼Ò·ÖÏíһϣ¬ÒÔÃâ¸ü¶àÈËÏñÎÒÒ»Ñù»¨·Ñ´óÁ¿µÄʱ¼äÔÚĪÃûÆäÃîµÄÎÊÌâÉÏ¡£
Ê×ÏÈҪ˵Ã÷µÄÊÇ£¬¹Ù·½Ò²ÓÐÏàÓ¦µÄÎĵµ°²×°µ«ÊÇʵ¼Ê¹ý³ÌÖУ¬»áÓÐһЩÎÊÌâÐèÒª½â¾ö¡£
±¾Îĵµ²ÎÕÕÁËÏà¹ØËµ ......