Sophos-Konsole: Unterschied zwischen den Versionen
Zur Navigation springen
Zur Suche springen
Thomas (Diskussion | Beiträge) (→iftop) |
Thomas (Diskussion | Beiträge) (→iftop) |
||
| Zeile 25: | Zeile 25: | ||
*iftop | *iftop | ||
[[Datei:sophoscomman-line1.png]] | [[Datei:sophoscomman-line1.png]] | ||
| + | =iptables= | ||
| + | ==view automatic firewall rules== | ||
| + | *iptables -L AUTO_FORWARD | ||
| + | <pre> | ||
| + | Chain AUTO_FORWARD (1 references) | ||
| + | target prot opt source destination | ||
| + | CONFIRMED all -- 192.168.3.0/24 10.2.2.0/24 policy match dir in pol ipsec mode tunnel | ||
| + | CONFIRMED all -- 10.2.2.0/24 192.168.3.0/24 policy match dir out pol ipsec mode tunnel | ||
| + | CONFIRMED all -- 192.168.77.0/24 10.2.2.0/24 policy match dir in pol ipsec mode tunnel | ||
| + | CONFIRMED all -- 10.2.2.0/24 192.168.77.0/24 policy match dir out pol ipsec mode tunnel | ||
| + | DROP icmp -- anywhere anywhere icmptype 8 code 0 policy match dir in pol none | ||
| + | CONFIRMED icmp -- anywhere anywhere icmptype 8 code 0 | ||
| + | DROP icmp -- anywhere anywhere icmptype 0 code 0 policy match dir in pol none | ||
| + | CONFIRMED icmp -- anywhere anywhere icmptype 0 code 0 | ||
| + | </pre> | ||
| + | |||
=links= | =links= | ||
*https://community.sophos.com/products/unified-threat-management/f/51/t/21326 | *https://community.sophos.com/products/unified-threat-management/f/51/t/21326 | ||
Version vom 20. September 2016, 12:13 Uhr
ssh
- ssh loginuser@sophos30
loginuser@sophos30:/home/login >
root access
- su -
sophos30:/root #
cc
command-line client
ifstat
- ifstat
#kernel
Interface RX Pkts/Rate TX Pkts/Rate RX Data/Rate TX Data/Rate
RX Errs/Drop TX Errs/Drop RX Over/Rate TX Coll/Rate
lo 0 0 0 0 0 0 0 0
0 0 0 0 0 0 0 0
eth0 17 0 15 0 1218 0 2254 0
0 0 0 0 0 0 0 0
eth1 0 0 0 0 0 0 0 0
0 0 0 0 0 0 0 0
eth2 0 0 0 0 0 0 0 0
0 0 0 0 0 0 0 0
iftop
- iftop
iptables
view automatic firewall rules
- iptables -L AUTO_FORWARD
Chain AUTO_FORWARD (1 references) target prot opt source destination CONFIRMED all -- 192.168.3.0/24 10.2.2.0/24 policy match dir in pol ipsec mode tunnel CONFIRMED all -- 10.2.2.0/24 192.168.3.0/24 policy match dir out pol ipsec mode tunnel CONFIRMED all -- 192.168.77.0/24 10.2.2.0/24 policy match dir in pol ipsec mode tunnel CONFIRMED all -- 10.2.2.0/24 192.168.77.0/24 policy match dir out pol ipsec mode tunnel DROP icmp -- anywhere anywhere icmptype 8 code 0 policy match dir in pol none CONFIRMED icmp -- anywhere anywhere icmptype 8 code 0 DROP icmp -- anywhere anywhere icmptype 0 code 0 policy match dir in pol none CONFIRMED icmp -- anywhere anywhere icmptype 0 code 0
