|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/hostiptables/
课程评论:没有评论
**课程名称:** 使用 iptables 防火墙保护您的 Linux 主机 **课程概述:** 本课程专注于使用强大的 iptables 防火墙来保护您的 Linux 主机。通过深入了解 iptables 的工作原理,您将能够实现复杂的防火墙规则,有效抵御攻击和资源耗尽。 鉴于 Linux 在物联网设备、云服务、网络设备等领域的主导地位,掌握 iptables 知识将帮助您更好地保护您的主机。 **课程内容涵盖:** * iptables 的链、表和处理顺序 * 防火墙的状态跟踪和会话管理 * 源 NAT 和目标 NAT 的配置 * 连接限制以防御拒绝服务攻击 (DoS) * 按时间窗口限制数据包和带宽 * 基于用户 ID (UID) 限制流量 * 基于组 ID (GID) 限制流量 * 使用 ipset 简化 iptables 管理 * 基于新兴威胁和其他列表阻止恶意 IP 地址 * 使用 FQDN 对象动态允许或阻止主机流量 * 配置地理位置封锁 **请注意:** 本课程内容仅限于讲座中提供的材料。
This class focuses on implementing iptables to protect your Linux host using iptables. Iptables is so powerful, with a little bit of understanding of how it works you can implement complex firewall rules that protects your Linux host from attacks and resource exhaustion. Since Linux is the operating system of choice for Internet Of Things devices IoT, cloud services, network devices and numerous other purpose build devices, having the knowledge would allow you to ward off attacks and protect your host.Some of the topics covered are:1. Understanding iptables chains, tables and processing order.2. Understanding the statefullness of the firewall and how you can track sessions and allow only necessary traffic.3. Understand how to configure your Linux host for Network Address Translation for both source and destination NAT.4. Understand how to configure connection limits to prevent DoS.5. Understand how to restrict packets and bandwidth per time window.6. Understand how to restrict user traffic based on their user ID.7. Understand how to restrict traffic based on group ID.8. Understand how to use ipset to simplify iptables management.9. Understand how to block malicious IP addresses based on emerging threats and other lists.10. Understand how to use FQDN objects in iptables to dynamically allow hosts inbound or outbound using FQDN objects.11. understand how to configure GeoLocation blocking with iptables.This class doesn't include any material other what's available in the lectures.