分页: 2 / 2

发表于 : 2006-01-29 23:28
firehare
id_sonic 写了:用firestarter 就是低ID, 你 sudo iptables -L 看看
这倒不会,你可以看一下我上面所说的配置,就可以让你不再是低ID的!如果是由于路由器引起的,那么你就要将路由器上的公网IP同你机器上的Amule端口绑定,这样的话,也可以得到高ID!因为我现在的环境就是路由环境下起了Firestarter防火墙,照样可以得到高ID。只需设置适当就成。:)

发表于 : 2006-01-30 20:23
id_sonic
firestarter 默认设置 不自己设置就是 低ID啊 我

发表于 : 2006-01-30 21:28
firehare
不设置当然是低ID了,所以要你看我在上面的设置呀!:)

发表于 : 2006-01-31 11:48
donny
firehare 写了:奇了怪了!
我这里却是:

ED2K Status: 已建立连接
IP地址:端口 X.X.X.X:9662
ID 1183888700
高ID
iptables -L
Chain INBOUND (1 references)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere state RELATED,ESTAB LISHED
ACCEPT udp -- anywhere anywhere state RELATED,ESTAB LISHED
ACCEPT tcp -- anywhere anywhere tcp dpt:9662
ACCEPT udp -- anywhere anywhere udp dpt:9662
LSI all -- anywhere anywhere

Chain INPUT (policy DROP)
target prot opt source destination
ACCEPT tcp -- ns-px.online.sh.cn anywhere tcp flags:!SYN,RST, ACK/SYN
ACCEPT udp -- ns-px.online.sh.cn anywhere
ACCEPT tcp -- ns-pd.online.sh.cn anywhere tcp flags:!SYN,RST, ACK/SYN
ACCEPT udp -- ns-pd.online.sh.cn anywhere
ACCEPT all -- anywhere anywhere
LSI udp -- anywhere anywhere udp dpt:33434
LSI icmp -- anywhere anywhere
NR all -- !218.81.181.5 anywhere
DROP all -- anywhere 255.255.255.255
DROP all -- BASE-ADDRESS.MCAST.NET/8 anywhere
DROP all -- anywhere BASE-ADDRESS.MCAST.NET/8
DROP all -- 255.255.255.255 anywhere
DROP all -- anywhere 0.0.0.0
DROP all -- anywhere anywhere state INVALID
LSI all -f anywhere anywhere limit: avg 10/min b urst 5
INBOUND all -- anywhere anywhere
LOG_FILTER all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info pref ix `Unknown Input'

Chain FORWARD (policy DROP)
target prot opt source destination
LSI udp -- anywhere anywhere udp dpt:33434
LSI icmp -- anywhere anywhere
LOG_FILTER all -- anywhere anywhere
LOG all -- anywhere anywhere LOG level info pref ix `Unknown Forward'

Chain LOG_FILTER (5 references)
target prot opt source destination

Chain LSI (93 references)
target prot opt source destination
LOG_FILTER all -- anywhere anywhere
LOG tcp -- anywhere anywhere tcp flags:SYN,RST,A CK/SYN limit: avg 1/sec burst 5 LOG level info prefix `Inbound '
DROP tcp -- anywhere anywhere tcp flags:SYN,RST,A CK/SYN
LOG tcp -- anywhere anywhere tcp flags:FIN,SYN,R ST,ACK/RST limit: avg 1/sec burst 5 LOG level info prefix `Inbound '
DROP tcp -- anywhere anywhere tcp flags:FIN,SYN,R ST,ACK/RST
LOG icmp -- anywhere anywhere icmp echo-request l imit: avg 1/sec burst 5 LOG level info prefix `Inbound '
DROP icmp -- anywhere anywhere icmp echo-request
LOG all -- anywhere anywhere limit: avg 5/sec bu rst 5 LOG level info prefix `Inbound '
DROP all -- anywhere anywhere

Chain LSO (0 references)
target prot opt source destination
LOG_FILTER all -- anywhere anywhere
LOG all -- anywhere anywhere limit: avg 5/sec bu rst 5 LOG level info prefix `Outbound '
REJECT all -- anywhere anywhere reject-with icmp-po rt-unreachable

Chain NR (1 references)
target prot opt source destination
LSI all -- 0.0.0.0/8 218.81.181.5
LSI all -- 1.0.0.0/8 218.81.181.5
LSI all -- 2.0.0.0/8 218.81.181.5
LSI all -- 5.0.0.0/8 218.81.181.5
LSI all -- 7.0.0.0/8 218.81.181.5
LSI all -- 10.0.0.0/8 218.81.181.5
LSI all -- 23.0.0.0/8 218.81.181.5
LSI all -- 27.0.0.0/8 218.81.181.5
LSI all -- 31.0.0.0/8 218.81.181.5
LSI all -- 36.0.0.0/8 218.81.181.5
LSI all -- 37.0.0.0/8 218.81.181.5
LSI all -- 39.0.0.0/8 218.81.181.5

发表于 : 2006-01-31 11:52
donny
firehare 写了:不设置当然是低ID了,所以要你看我在上面的设置呀!:)
我已经在inbound里允许了9662端口。

发表于 : 2006-01-31 21:21
firehare
你的Amule端口也用的 9662 ??默认端口号可不是呀!

发表于 : 2006-01-31 23:51
donny
firehare 写了:你的Amule端口也用的 9662 ??默认端口号可不是呀!
我本来也用4662的,听你说是9662,索性改的和你一样,免得有差错。 :)

发表于 : 2006-02-01 14:36
firehare
O!
原来如此!

ICMP不要屏蔽掉再试试看?

发表于 : 2006-02-01 17:34
tdnongkun
各位大哥,我刚于昨天在电脑上正式安装了UBUNTU 5.1,但我连网都没连得上,只好回来用XP上网来向你们求助了,因为看了你们的讨论,觉得你们都是高手,倚望你们能指点小人一二,好让我早日完成不再使用XP的心愿。
呵呵,先谢谢了

发表于 : 2006-02-01 21:37
donny
firehare 写了:O!
原来如此!

ICMP不要屏蔽掉再试试看?
是不是取消ICMP filtering?

发表于 : 2006-02-01 22:05
donny
firehare 写了:O!
原来如此!

ICMP不要屏蔽掉再试试看?
试了,不行