Hi,
So that potential responders will have an idea of what they're dealing with let me say that while I am a UNIX newbie I have been in IT for over 10 years.
We have several SUN boxes running ver 5 of the OS that have been sitting dormant for some time as they were part of a now defunct... (3 Replies)
Hi,
I will like to allow access to the mysql port (3306) to certain IP address. All other IP's should be automatically blocked. What is the best way to do this? (8 Replies)
I am trying to block ALL traffic except when from ports 9100,22,23 to destination network 192.0.0.0 (my WAN): 2 networks 192.0.3.0 with static route to 192.0.0.0
Shouldn't this work?:
iptables -A INPUT -p tcp -d 192.0.0.0/24 --dport 22 -j ACCEPT
iptables -A INPUT -p tcp -d 192.0.0.0/24... (3 Replies)
i want to kill a tcp connection by killing its pid
with netstat -an i got the tcp ip connection on port 5914
but when i type ps -a or ps-e there is not such process running on port 5914
is it possible that because i do not log on with proper user account i can not see that process running? (30 Replies)
Hi All,
I successfully configured a DEBIAN Lenny bridged firewall
using ebtables.
The bridged interface is br0.
The ethernet interface are eth0 & eth1 respectively.
All the traffic are transparently passing my firewall but i need to find & block temporarily the bandwidth abusers.
Can... (1 Reply)
hi guys
I doing some collocation for a customer, customer requested to use other port for ssh not the default one. OK no problem
and customer will be using rsync to sync backups among other things
I know we have to open port let's say port 5999 for ssh since we are using that one now but I... (1 Reply)
Hi Experts,
I am receiving below error while trying to connect port 8080.
Could not open connection to the host, on port 8080 : connection refused.
iptables configuration
/etc/sysconfig/iptables
# Firewall configuration written by system-config-firewall
# Manual customization of... (1 Reply)
If I would like to know what connection , data , traffic in a network port ( eth0 ) , what can I do ?
ps. because I always found the network is very slow , so I would like what the network port is doing .
Thanks
Login ID ust3 is currently in read-only mode for multiple infractions. Creating... (0 Replies)
Hi Friends,
How to do port forwarding in AIX? We would like to re route traffic from port A to port B on AIX LPAR.
for example: my application is using 8080 port on LPAR and would like to use the 8081 instead of 8080. By default application was configured with 8080. But instead of changing... (2 Replies)
Discussion started by: System Admin 77
2 Replies
LEARN ABOUT DEBIAN
cutter
CUTTER(8) System Manager's Manual CUTTER(8)NAME
cutter - cut tcp/ip connections
SYNOPSIS
cutter ipaddress1 [ port1 [ ipaddress2 [ port2 ] ] ]
DESCRIPTION
Cutter is an open source program that allows Linux firewall administrators to abort TCP/IP connections routed over the firewall or router
on which it is run.
WARNING
Cutter has been designed for use as a administrators tool for Linux firewalls. It's use (as is, or modified) for any other purpose is not
sanctioned by the author. So - do not use this tool as a parachute, or to dry your cat, chill meat, answer your phone, drive you car, teach
your kids to read or attack other people's computer systems or networks.
This software has been designed for legal and appropriate use by network security administrators and the like. It has been written as part
of a larger Linux firewall project, targetting at controlling traffic from peer-to-peer software such as Kazaa, iMesh and others into and
out of a private network. It is not designed as a tool for malicious use and the author in no way sanctions such use.
Users of the software should be aware that it's actions are easily detectable using a number of readily available network monitoring tools,
and it makes no attempt to disguise it's actions. Malicious use of "cutter" could result in a jail sentance in a number of countries around
the world.
The author is not responsible for the results of using this software. It is provided "as is" in the hope that it will be useful, but no
garantees are made about it's use.
USAGE
Cutter can be called using one of the following four syntaxes.
cutter ip-address
Example:
cutter 10.10.0.45
Cuts all connections passing through the firewall between any ports on the specified ip-address (either a "private" or "public"
address) and any other hosts. This can be used to close down all incoming connections to a particular server, all outgoing connec-
tions from a particular client or all outgoing connections to a server.
cutter ip-address port
Example:
cutter 200.1.2.3 80
Cuts all connections to or from the specified ip-address/port pair. This allows the user to be a little more specific than the pre-
vious example and allows targetting of specific services on specific hosts.
cutter ip-address-1 port-1 ip-address-2
Example:
cutter 200.1.2.3 22 10.10.0.45
Cuts all connections between ip-address-2 and ip-address-1/port-1. This allows the user to cut connections between a specified
"client" and a particular service on a specified host. Our example closes host 10.10.0.45's SSH connection to server 200.1.2.3.
cutter ip-address-1 port-1 ip-address-2 port-2
Example:
cutter 200.1.2.3 22 10.10.0.45 32451
Cuts the specific connection between the two ip/port number pairs given.
STATUS
Cutter 1.03 should be considered EXPERIMENTAL. The author is releasing a tool that works on the systems he has access to (namely: IPCop
and RedHat Linux), and he is seeking input on it's use on other systems, ideas for improvement, offers of sponsorship - etc.
ADDITIONAL DOCUMENTATION
This program is documented at http://www.lowth.com/cutter/ <http://www.lowth.com/cutter/>
AUTHOR
Blars Blarson addapted the README and web page written by Chris Lowth into this man page for debian package of cutter. This man page may
be distribuated under the terms of the Gnu GPL version 2.
April, 2005 CUTTER(8)