/etc/sysctl.conf acin (sysctl.conf biryere BACKUP yapin) ve su codu yapistirin
Sonra serveri veya Bilgisayarinizi yeniden baslatin
Kod:
# For binary values, 0 is disabled, 1 is enabled. See sysctl(
and
# sysctl.conf(5) for more details.
# Controls IP packet forwarding
net.ipv4.ip_forward = 0
# Controls source route verification
net.ipv4.conf.default.rp_filter = 1
# Controls the System Request debugging functionality of the kernel
kernel.sysrq = 0
# Controls whether core dumps will append the PID to the core filename.
# Useful for debugging multi-threaded applications.
kernel.core_uses_pid = 1
# Enables source route verification
net.ipv4.conf.all.rp_filter = 1
# ICMP abschalten
net.ipv4.icmp_echo_ignore_all = 1
# verhindert Broadcast-Attacken
net.ipv4.icmp_ignore_broadcasts = 1
# verhindert SYN-Flood-Attacken
net.ipv4.tcp_syncookies = 1
# verhindert RIP-Spoofing
net.ipv4.conf.all.acceps_source_route = 0
# verhindert Fragmentation
net.ipv4.ip_always_defrag = 1
# gespoofte Souce-routed- und Redirekt-Pakete
net.ipv4.conf.all.log_martians = 1
# ICMP-Redirect-Pakete verwerfen
net.ipv4.conf.all.accept_redirects = 0
# Enables source route verification
net.ipv4.conf.all.rp_filter = 1
# ICMP abschalten
net.ipv4.icmp_echo_ignore_all = 1
# verhindert Broadcast-Attacken
net.ipv4.icmp_ignore_broadcasts = 1
# verhindert SYN-Flood-Attacken
net.ipv4.tcp_syncookies = 1
# verhindert RIP-Spoofing
net.ipv4.conf.all.acceps_source_route = 0
# verhindert Fragmentation
net.ipv4.ip_always_defrag = 1
# gespoofte Souce-routed- und Redirekt-Pakete
net.ipv4.conf.all.log_martians = 1
# ICMP-Redirect-Pakete verwerfen
net.ipv4.conf.all.accept_redirects = 0
# Enables source route verification
net.ipv4.conf.all.rp_filter = 1
# ICMP abschalten
net.ipv4.icmp_echo_ignore_all = 1
# verhindert Broadcast-Attacken
net.ipv4.icmp_ignore_broadcasts = 1
# verhindert SYN-Flood-Attacken
net.ipv4.tcp_syncookies = 1
# verhindert RIP-Spoofing
net.ipv4.conf.all.acceps_source_route = 0
# verhindert Fragmentation
net.ipv4.ip_always_defrag = 1
# gespoofte Souce-routed- und Redirekt-Pakete
net.ipv4.conf.all.log_martians = 1
# ICMP-Redirect-Pakete verwerfen
net.ipv4.conf.all.accept_redirects = 0
# Enables source route verification
net.ipv4.conf.all.rp_filter = 1
# ICMP abschalten
net.ipv4.icmp_echo_ignore_all = 1
# verhindert Broadcast-Attacken
net.ipv4.icmp_ignore_broadcasts = 1
# verhindert SYN-Flood-Attacken
net.ipv4.tcp_syncookies = 1
# verhindert RIP-Spoofing
net.ipv4.conf.all.acceps_source_route = 0
# verhindert Fragmentation
net.ipv4.ip_always_defrag = 1
# gespoofte Souce-routed- und Redirekt-Pakete
net.ipv4.conf.all.log_martians = 1
# ICMP-Redirect-Pakete verwerfen
net.ipv4.conf.all.accept_redirects = 0