Suricata Schaubild: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
Zeile 3: Zeile 3:
 
=Mit IDS/IPS=
 
=Mit IDS/IPS=
 
{{#drawio:ids-1}}
 
{{#drawio:ids-1}}
 +
=Änderungen=
 +
==Firewall==
 +
;enp0s8
 +
172.31.31.1/24
 +
;ip route add 10.0.101.0/24 via 172.31.31.2
 +
;iptables -A FORWARD -s 172.31.31.2/24 -i $DMZDEV -o $WANDEV -m state --state NEW -j ACCEPT
 +
;iptables -tnat POSTROUTING -s 172.31.31.2/24 -o $WANDEV -j MASQUERADE

Version vom 27. September 2022, 15:01 Uhr

Ohne IDS/IPS

Mit IDS/IPS

Änderungen

Firewall

enp0s8
172.31.31.1/24
ip route add 10.0.101.0/24 via 172.31.31.2
iptables -A FORWARD -s 172.31.31.2/24 -i $DMZDEV -o $WANDEV -m state --state NEW -j ACCEPT
iptables -tnat POSTROUTING -s 172.31.31.2/24 -o $WANDEV -j MASQUERADE