IPTABLE ddos 简单脚本
| |
Posted in Unix/Linux/FreeBsd on 2008/12/14 / 引用(0)
#!/bin/sh

/bin/netstat -na|grep ESTABLISHED|awk '{print $5}'|awk -F: '{print $1}'|sort|uniq -c|sort -rn|head -10|grep -v -E '192.168|127.0'|awk '{if ($2!=null && $1>4) {print $2}}'>/tmp/dropip
for i in $(cat /tmp/dropip)
do
/sbin/iptables -A INPUT -s $i -j DROP
echo "$i kill at `date`">>/var/log/ddos
done

还没试过
呵呵
This entry comes from 本站原创 and has been read for 955 times.It is tagged with , .
0 Responses
发表评论

昵称

网址

电邮

OpenID登入 高级选项 表情