How To Block All Traffic To A Port
Jun 3, 2007How do i block all traffic to a port using iptables?
For example, i need to stop all incoming traffic on port 80 of my server.
How do i block all traffic to a port using iptables?
For example, i need to stop all incoming traffic on port 80 of my server.
Is there a way to block Asia in a whole from my server.
I am getting nothing but spam/hack/warz/rapidleech sites on my free hosting server.
Can this be done with net blocks/ip ranges?
In AWStats I am getting a lot of traffic from one URL but it is all spam traffic. How can I make it so that any visitors that come from that URL cannot access my site?
They have a link on their site to mine...
Today I try to fit all FW rules to my need. After i blocked the traffic "allow other incoming traffic" in the Plesk FW i dont get folders listed via FTP. The FTP client connect to my server, but listing content times out. After allow other traffic the content get listed. The rule "Allow FTP connections" ist in all enabled all the time.
View 3 Replies View RelatedFor some reason, I want to block port 25 for temporary time while editing the exim config and open it back using iptables -F command.
Anyone can let me know the command to block port 25 using IPtables command.
I login & send email through thunderbird using SSL and it's ports (so I no longer connect using 25/26). Occasionally I use webmail (Squirrelmail)
My scripts do send mail via sendmail.
Does my cpanel server still need the basic 25 & 26 ports to deliver and receive mail successfully, or can they be blocked in APF without any problems arising?
if it is possible to block external access to Cpanel through port 2082?
View 7 Replies View RelatedWhat traffic monitor would everyone recommend for sites that have as many as 5,000 to 10,000 hits an hour?
View 8 Replies View RelatedI'm runnung a server with Apache2 (Apache/2.2.16 (Debian 6.0))
I would like Apache2 listen on port 8080 for IPv4 and on port 80 for IPv6.
This is what I have now:
/etc/apache2/ports.conf
Currently I am using Linux + cPAnel and using the port 25 for email sevrer. Currently we facing 1 problem is, some user's ISP is not support port. May I know how can I add additional port into server and allow users to send mail by different port?
View 1 Replies View RelatedI have an office internal website and I opened a port in the gateway of my office (7080) to this website (server )'s 80 port. That makes this website open to public as office has static IP. And then when I view the site from home . it's fine. But when I tried to login, the site is using a pop-up, I guess it's http authentciation, login, I was redirected to a url without my port number any more, that stops my access to the site as obviously I would.
How can I keep my connection/port number ...?
about the NIC and switch,
there are giga port vs mega port,
in your experience,do they really be different?
I recently changed my SSH port, but locked myself out when my APF firewall was installed.
Where would I got to add a custom port inside the APF's config file?
how can I use to control or cap the traffic on a per server basis ? in other words, I have 15 servers in one cabinet, in this cabinet there is one switch to feed all 15 servers, the swith is a DELL 3448, one of the servers is eatingup almost all the traffic I have fro the cabinet itself, is there a way I can cap or limit traffic quota on a per port basis at the switch level? or what is the best way to manage this?
View 8 Replies View RelatedI'm up Games for Windows VPS servers with VMWare Server ESXi and wonders whether some option to control the traffic of each IP, I thought about using a "Cisco ASA 5500" but I do not know if it has this option:
Example:
IP 192.168.254.1 = 100GB monthly.
IP 192.168.254.2 = 50GB monthly.
Etc. ..
Imagine you want a set of servers (VPSs would be a cheaper choice, that is why I am posting here) that do not have much outbound traffic but download from other servers (more or less as spiders, but I am not trying to create a web index). Disk space or memory size are not important, but port speed and monthly transfer should be as high as possible. As inbound traffic is less frequently used, I wonder if any provider offer cheaper rates if traffic is like this.
I have been searching the forums and have not found too much about this topic (a quite related post named "I want to download the Internet" or something similar did not get a conclusion).
I am not sure if my dedicated server is being attacked or if it is legitimate traffic. I need help figuring out the difference and if it is an attack, how to prevent it, and if it is legitimate traffic, how to configure the server to handle the load.
My server information is below:
HardwareIntel Xeon 3220-Quad Core [2.4GHz
8GB DDR2
SATAII 500GB
SoftwareCentOS 5.3-32
Apache2
MySQL 5
PHP 5
When I do ps aux|grep httpd|wc -l I get the count of current connected clients of 259 which is always maxing out my MaxClients of 256. I had increased it to 512, and it maxed out, I had increased it to 1024 and it maxed out, and lastly I had setup to 2048 and it works, but slows the entire server down.
if anyone knew of anything that maybe could be done to limit this band-width stealing by AVG or are we just going to have to live with this?
[url]
Recently I noticed the load on one of my servers way beyound what I would expect it to be. I run multi processor servers and even during a backup the load is only around 1.5.
But lately I noticed peak loads that high under normal web traffic.
I know 1.5 is low on an multi processor server, but I am hoping to add much more to those machines and with sustained load that high it leaves no room for expansion. The servers are not cheap, so adding another server to the cluster can only be done if I make money from the last one I added.
I checked the traffic levels and they were very high. After further review I had some bots hitting sites at over 1200 pages a minute. Multiply that by a few hundred bots and clearly I could have a load issue. The potential is there to bring any server to its knees when delivering those volumes.
I created programing to watch connections and block the abusive bots. While logging I became aware of over 600 bots crawling my servers. Many bots from, Japan, China, Germany and so on and on, useless to my customers even if they are legit search indexes.
Another problem I see is that the bots are running from many ip addresses and hitting the same sites from multiple ips at the same time. Why would the need to do that?
Among other things I decided to validate googlebot, msn and yahoo with dns lookups so I could determine that they were actually their bots and not imposters. In 24 hours I found valid bots from the big three hitting one server from 1100 different ips.
Now we are looking at thousands of vaild bots and thousands more email harvesters and content theives.
As a host, the number of sites I can host on a server is greatly reduced by the bot traffic. My customers do not want to hear that their website was being crawled at 3,000 pages a minute and that is why they could not access it. Of course they will blame it on me.
I was able to filter the bots at a firewall level and drop connections based on reverse dns lookups and site crawl rates and my server sits around 0.05 most of the time even with hundreds of pages a minute being accessed.
I am wondering how the rest of you hosts deal with this problem. Do you leave it up to your hosting customers? Or do you have some type of filter to get rid of the bots.
When you have a few sites it is not really a problem, but as you grow it grows exponetially out of control.
i need co-location to 5 servers 5U 5 ip adresses 4 TB traffic month i can share the cage with others Price ? my budget is around
Its going to be used to an internet radio
400 700 euro month
I want to be able to monitor (with statistic) and cap traffic on 3+ servers.
how is this done best?
I was thinking of somekind of switch or server set inbetween the servers and the internet monitoring and keeping data on the traffic use etc.
but what do you do?
and how to make such a monitor redundant so if it fails the network is not cut off from the world?
I've got a LAN setup that share an internet connection with some friend but unfortunately we have a "Limit" we can download per day.
One of my friend's seems to enjoy downloading movies day in day out till we reach our cap.
Now I know ingress shaping doesn't change the fact that we are gonna reach our cap earlier but it might discourage him for downloading as much.
how can I shape his traffic to say 50KB/s both in and out for just an IP (so it doesn't affect the rest of us ?)
i've a vps with iptables, but i've too much traffic (RX), there are too many packets received from random ports on both upt and tcp. Today in just 14 hours i've 2.8 gib of traffic, without any connection for web, email, etc (i've stopped all the services). How can i stop this? it's going to burn all my monthly traffic
View 5 Replies View RelatedI've only ever had a shared hosting account with Hostgator, plus a few freebie hosts. However, I'm now pulling some heavy traffic and I'm concerned that Hostgator is going to suspend me soon.
My traffic on Saturday for example was ~2600 unique visitors and ~5000 page views. All of this traffic was from WordPress blogs and a small SMF forum. I've since converted one of the blogs to a static site to limit my CPU usage and I've setup caching for my other WordPress blogs. Advice I've heard on the Hostgator forums is that 7000 page views per day for a database driven site is around the time you should be upgrading and based on my traffic from Saturday (which admittedly was a bit of a spike) I could potentially be receiving 150,000 page views/month, so about 20x the point at which they recommend upgrading at.
Anyhows, in a nutshell I need to upgrade, or risk Hostgator throwing a tantrum at me ... but I don't have a lot of cash to pay for an upgrade Due to my lack of cashflow I've been considering moving to a VPS. The company which has interested me the most is HostV.com who offer a 256 MB (with 1000 MB 'burst' RAM) for only US$39.99 which seems quite reasonable to me.
They say that their 256 MB plan should be able to handle over 5000 page views per day for a WordPress run site, but I'm a little suspect. Do any of you know if this is a reasonable expectation from a 256 MB chunk of a virtual server? I have no idea and am always wary of believing the sales pitch of a random company across the other side of the world.
I just want to ask. my ISP told me my server is generating high traffic from outside and paste me their traffic log with 1 IP address (xx.xx.xx.xx)
They rebooted my server and the problem disappear but I need to check what has been going on and where do I start? The only information I have is the IP xx.xx.xx.xx
I just got a quote from a colocation provider but they said their standard policy was to customise traffic shaping for each customer..
The term "traffic shaping" on a server screams "bad idea" to me..
Being honest, my knowledge of shaping is limited.. but I don't want traffic shaping on my cable connection nevermind my server.
I just recently upgraded my website from WordPress to WordPress Mu.
Everything went smoothly except for one problem. On WordPress, all my posts would appear as [url] but with WordPress Mu, it is now [url]. So whenever someone visits ht[url] or [url] they are given a 404 error because it no longer exists at that location.
I know there is a way, like a wildcard or something, that makes it so that wheneever anyone visits [url]anything it would change it to[url]whatever else was typed/, no? I can't figure out how to search for that exactly and tried reading through .htaccess docs and can't figure out how to make this work.
I have 4 sub domains on qisoftware.com and most have network traffic between 30-34%. Unresolved traffic about 12-14%. Is the network traffic statistic high? What would be considered normal?
A proxy server can mask IP address, right? Does a proxy server show up as network traffic in site statistics reports?
Okay, maybe that's enough questions for right now. I have been researching the internet for terms but I am not finding what would be considered normal.
An ad-network requires my website to have certain amount of traffic for x days to qualify, but they won't provide stats and have asked me to log the stats myself.
For incoming traffic stats, I already use AWstats etc, but is there anything available for logging outgoing traffic as well?