请教ROS高手,下面几条防火墙规则可以封P2P吗?
/ ip firewall filterad ch forward pr tcp dst-po 1024-3999 act drop
ad ch forward pr udp dst-po 1024-3999 act drop
ad ch forward pr tcp dst-po 4001-7999 act drop
ad ch forward pr udp dst-po 4001-7999 act drop
ad ch forward pr tcp dst-po 8001-65534 act drop
ad ch forward pr udp dst-po 8001-65534 act drop 不能! 封这些端口好像不行哦 简直是饮鸩止渴。你可以把全部端口都封掉,只留下80端口。这样就能封住了。 有些东西是防君子不防小人的. / ip firewall filter
ad ch forward pr tcp any-po 1024-3999 act drop
ad ch forward pr udp any-po 1024-3999 act drop
ad ch forward pr tcp any-po 4001-7999 act drop
ad ch forward pr udp any-po 4001-7999 act drop
ad ch forward pr tcp any-po 8001-65534 act drop
ad ch forward pr udp any-po 8001-65534 act drop
这样总该可以,试试行不行~~~ 应该还是不行 简直是饮鸩止渴。你可以把全部端口都封掉,只留下80端口。这样就能封住了。
guxing 发表于 2008-9-18 10:59 http://bbs.routerclub.com/images/common/back.gif
只留80也不封不了。
页:
[1]