发表于 : 2006-01-29 23:28
这倒不会,你可以看一下我上面所说的配置,就可以让你不再是低ID的!如果是由于路由器引起的,那么你就要将路由器上的公网IP同你机器上的Amule端口绑定,这样的话,也可以得到高ID!因为我现在的环境就是路由环境下起了Firestarter防火墙,照样可以得到高ID。只需设置适当就成。:)id_sonic 写了:用firestarter 就是低ID, 你 sudo iptables -L 看看
这倒不会,你可以看一下我上面所说的配置,就可以让你不再是低ID的!如果是由于路由器引起的,那么你就要将路由器上的公网IP同你机器上的Amule端口绑定,这样的话,也可以得到高ID!因为我现在的环境就是路由环境下起了Firestarter防火墙,照样可以得到高ID。只需设置适当就成。:)id_sonic 写了:用firestarter 就是低ID, 你 sudo iptables -L 看看
iptables -Lfirehare 写了:奇了怪了!
我这里却是:
ED2K Status: 已建立连接
IP地址:端口 X.X.X.X:9662
ID 1183888700
高ID
Chain INBOUND (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere state RELATED,ESTAB LISHED
ACCEPT udp -- anywhere anywhere state RELATED,ESTAB LISHED
ACCEPT tcp -- anywhere anywhere tcp dpt:9662
ACCEPT udp -- anywhere anywhere udp dpt:9662
LSI all -- anywhere anywhere
Chain INPUT (policy DROP)
target prot opt source destination
ACCEPT tcp -- ns-px.online.sh.cn anywhere tcp flags:!SYN,RST, ACK/SYN
ACCEPT udp -- ns-px.online.sh.cn anywhere
ACCEPT tcp -- ns-pd.online.sh.cn anywhere tcp flags:!SYN,RST, ACK/SYN
ACCEPT udp -- ns-pd.online.sh.cn anywhere
ACCEPT all -- anywhere anywhere
LSI udp -- anywhere anywhere udp dpt:33434
LSI icmp -- anywhere anywhere
NR all -- !218.81.181.5 anywhere
DROP all -- anywhere 255.255.255.255
DROP all -- BASE-ADDRESS.MCAST.NET/8 anywhere
DROP all -- anywhere BASE-ADDRESS.MCAST.NET/8
DROP all -- 255.255.255.255 anywhere
DROP all -- anywhere 0.0.0.0
DROP all -- anywhere anywhere state INVALID
LSI all -f anywhere anywhere limit: avg 10/min b urst 5
INBOUND all -- anywhere anywhere
LOG_FILTER all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info pref ix `Unknown Input'
Chain FORWARD (policy DROP)
target prot opt source destination
LSI udp -- anywhere anywhere udp dpt:33434
LSI icmp -- anywhere anywhere
LOG_FILTER all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info pref ix `Unknown Forward'
Chain LOG_FILTER (5 references)
target prot opt source destination
Chain LSI (93 references)
target prot opt source destination
LOG_FILTER all -- anywhere anywhere
LOG tcp -- anywhere anywhere tcp flags:SYN,RST,A CK/SYN limit: avg 1/sec burst 5 LOG level info prefix `Inbound '
DROP tcp -- anywhere anywhere tcp flags:SYN,RST,A CK/SYN
LOG tcp -- anywhere anywhere tcp flags:FIN,SYN,R ST,ACK/RST limit: avg 1/sec burst 5 LOG level info prefix `Inbound '
DROP tcp -- anywhere anywhere tcp flags:FIN,SYN,R ST,ACK/RST
LOG icmp -- anywhere anywhere icmp echo-request l imit: avg 1/sec burst 5 LOG level info prefix `Inbound '
DROP icmp -- anywhere anywhere icmp echo-request
LOG all -- anywhere anywhere limit: avg 5/sec bu rst 5 LOG level info prefix `Inbound '
DROP all -- anywhere anywhere
Chain LSO (0 references)
target prot opt source destination
LOG_FILTER all -- anywhere anywhere
LOG all -- anywhere anywhere limit: avg 5/sec bu rst 5 LOG level info prefix `Outbound '
REJECT all -- anywhere anywhere reject-with icmp-po rt-unreachable
Chain NR (1 references)
target prot opt source destination
LSI all -- 0.0.0.0/8 218.81.181.5
LSI all -- 1.0.0.0/8 218.81.181.5
LSI all -- 2.0.0.0/8 218.81.181.5
LSI all -- 5.0.0.0/8 218.81.181.5
LSI all -- 7.0.0.0/8 218.81.181.5
LSI all -- 10.0.0.0/8 218.81.181.5
LSI all -- 23.0.0.0/8 218.81.181.5
LSI all -- 27.0.0.0/8 218.81.181.5
LSI all -- 31.0.0.0/8 218.81.181.5
LSI all -- 36.0.0.0/8 218.81.181.5
LSI all -- 37.0.0.0/8 218.81.181.5
LSI all -- 39.0.0.0/8 218.81.181.5
我已经在inbound里允许了9662端口。firehare 写了:不设置当然是低ID了,所以要你看我在上面的设置呀!:)
我本来也用4662的,听你说是9662,索性改的和你一样,免得有差错。firehare 写了:你的Amule端口也用的 9662 ??默认端口号可不是呀!
是不是取消ICMP filtering?firehare 写了:O!
原来如此!
ICMP不要屏蔽掉再试试看?
试了,不行firehare 写了:O!
原来如此!
ICMP不要屏蔽掉再试试看?