For example, the data center in Guangzhou municipal government has put forward and strive to 2-3 years, through the "integration of resources, sharing information, collaboration services" trilogy, and "one-stop processing, subnet connectivity, Yi Hao service, a little log Smart Card "and one of the five e-government, reduce government operating costs and the cost of public work, and improve government service levels, improve government management and efficiency, improve management and service level of urban modernization. The new e-government in Guangzhou City, the public service system is gradually reveal its new look, which will include members of the public e-mail, digital certificate, social security card, government portal, as well as in building a unified platform calls, SMS and other convenience services application platform. The public can apply through the government portal and on-site, "a virtual one real" window of two things, to enjoy social security, health care, employment, health, civil affairs, the public housing fund and other information services daily life.
Through the patch into the kernel or add the code to recompile the kernel to be added after the corresponding function modules in the user space must also be recompiled iptables to provide new options. 2.5 Snort rules into IPTABLES rules to add a good character matching module, you can define the corresponding characters by matching IPTABLES rules to achieve intrusion detection features, such as the request of some of the worm contains the cmd.exe, you can write the following rules of Such requests dropped: iptables-I INPUT-j DROP-p tcp-s 0.0.0.0 / 0-m ids - ids "cmd.exe". This operation mode and SNORT detection in a similar way, and SNORT rules and update speed can be set into its rules can be used in the firewall rule set. The following are the Snort rules used to detect the scanner is converted to an instance of the firewall rules: alert icmp 192.168.0.12 any - 192.168.0.27 any Iptables-A INPUT-p icmp-s 192.168.0.12-d 192.168.0.27 - icmp -type 8-m ids - ids "Cinco Network, Inc."-j LOG - log-prefix "SID484" # "ICMP PING Sniffer Pro / Net Ray network scan" classtype: misc-activity sid: 484
About IcFull.com | Services | Payment | Advertisements Service | Contact Us | Links
All rights reserved:iceach.com © 2000-2010 Certificate No.:Guangdong ICP No.08108781