<?xml version="1.0" encoding="windows-1251"?>




Unknown column 'siteurl' in 'field list'<rss version="2.0">

<channel>
<title>Mrejata.us. New posts at the forum</title>
<link>http://mrejata.us/</link>
<description>Новини, Софтуер, Хардуер, Галерия, Download, Форум. Можете да изказвате ваши мнения за програми или хардуер. Имате програма която искате да споделите с приятели. Вие търсите ние намираме.</description>
<managingEditor>wWw.X-iWeb.Ru</managingEditor>
<webMaster>Mrejata.us. New posts at the forum</webMaster>
<language>en-en</language>

<item>

	<title> [ Linux ]</title>

	<link>forum/viewthread.php?forum_id=45&amp;amp;thread_id=712</link>

	<description>Малък лек и удобен десктоп за Slackware&lt;br /&gt;
[url]http://slacke17.sourceforge.net/[/url]&lt;br /&gt;
&lt;br /&gt;
[img]http://mrejata.us/images/slacke.jpg[/img]</description>

	</item>

<item>

	<title> [ Ново на страницата ]</title>

	<link>forum/viewthread.php?forum_id=18&amp;amp;thread_id=711</link>

	<description>Вече и видео уроци &lt;br /&gt;
[url]http://mrejata.us/articles.php?cat_id=14[/url]</description>

	</item>

<item>

	<title> [ Linux ]</title>

	<link>forum/viewthread.php?forum_id=45&amp;amp;thread_id=710</link>

	<description>компилиране от source кода - може да бъде свален от [url=http://znc.in/releases/]тук[/url]&lt;br /&gt;
&lt;br /&gt;
1. (сваляме) wget [url=http://znc.in/releases/znc-0.204.tar.gz]znc[/url]&lt;br /&gt;
2. (разархивираме) tar -xzvf znc*.*gz&lt;br /&gt;
3. (влизане в папката) cd znc*&lt;br /&gt;
4. (проверка и настройка) ./configure&lt;br /&gt;
(използвайте --prefix=$HOME/znc ако не искате да инсталирате в папка по подразбиране или нямате root права; използвайте --with-openssl=/path/to/openssl ако SSL библиотеките не са в директория по подразбиране)&lt;br /&gt;
(използвайте --enable-extra за да конфигурирате  за допълнителни екстри)&lt;br /&gt;
5. (подготвяме инсталацията) make&lt;br /&gt;
(ако процесора ви е с повече от едно ядро, можете да използвате make -jX където X е броя на ядрата, по този начин можете да ускорите времето за инсталация)&lt;br /&gt;
6.  (инсталираме) make install</description>

	</item>

<item>

	<title> [ Linux ]</title>

	<link>forum/viewthread.php?forum_id=45&amp;amp;thread_id=709</link>

	<description>mount -o loop -t iso9660 file.iso /mnt/test</description>

	</item>

<item>

	<title> [ Hardware &amp; Software ]</title>

	<link>forum/viewthread.php?forum_id=41&amp;amp;thread_id=706</link>

	<description>[b]Как да си направя Hiren&amp;#39;s BootCD на флаш USB[/b]&lt;br /&gt;
&lt;br /&gt;
[b]Стъпка 1[/b]&lt;br /&gt;
Сложете вашия USB стик (1GB препоръчително за по новите версии)&lt;br /&gt;
&lt;br /&gt;
[b]Стъпка 2[/b]&lt;br /&gt;
Изтеглете файла и форматирайте вашата флаш памет USB Disk Storage Format&lt;br /&gt;
[url]http://letitbit.net/download/50707.5010e9020a8623f67834bd0e1c19/USBFormat.zip.html[/url]  [img]http://mrejata.us/images/save.gif[/img] USBFormat.zip (34KB)&lt;br /&gt;
[img]http://mrejata.us/images/usbformat.gif[/img]&lt;br /&gt;
&lt;br /&gt;
[b]Стъпка 3[/b]&lt;br /&gt;
Изтеглете [i]grubinst_gui[/i] [url]http://letitbit.net/download/86494.84218fe294d5aaa5f50a50f3874e/grub4dos.zip.html[/url] Grub 4 Dos Grub 4 Dos [img]http://mrejata.us/images/save.gif[/img] grub4dos.zip (179KB) и стартирайте с Администратор&lt;br /&gt;
[img]http://www.mrejata.us/images/grubinst.gif[/img]&lt;br /&gt;
&lt;br /&gt;
[b]Стъпка 4[/b]&lt;br /&gt;
Поставете BootCD (10.3 или по-нова) копирайте всички файлове от вашето CD в USB Flash &lt;br /&gt;
&lt;br /&gt;
[b]Стъпка 5[/b]&lt;br /&gt;
Копирайте файловете [color=red]grldr[/color] и [color=red]menu.lst[/color] от папка grub4dos във вашето USB [img]http://mrejata.us/images/usbboot2.gif[/img]&lt;br /&gt;
&lt;br /&gt;
[b]Стъпка 6[/b]&lt;br /&gt;
Можете да тествате вашия USB Drive</description>

	</item>

<item>

	<title> [ Развлечение  ]</title>

	<link>forum/viewthread.php?forum_id=22&amp;amp;thread_id=705</link>

	<description>I want to play a game on the computer that only needs the keyboard and you don&amp;#39;t/rarely need to use the mouse. I would like this to be a full game and possibly downloadable. If the game requires money, post anyway. Also, I would appreciate it if the game was an action, adventure or RPG game.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
___________________________</description>

	</item>

<item>

	<title> [ Linux ]</title>

	<link>forum/viewthread.php?forum_id=45&amp;amp;thread_id=692</link>

	<description>su&lt;br /&gt;
chmod 755 /etc/rc.d/rc.mysqld&lt;br /&gt;
mysql_install_db&lt;br /&gt;
chown -R mysql:mysql /var/lib/mysql&lt;br /&gt;
chmod +x /etc/rc.d/rc.mysqld&lt;br /&gt;
/etc/rc.d/rc.mysqld start&lt;br /&gt;
/usr/bin/mysqladmin -u root password yourpassword&lt;br /&gt;
mysql_secure_installation</description>

	</item>

<item>

	<title> [ Linux ]</title>

	<link>forum/viewthread.php?forum_id=45&amp;amp;thread_id=691</link>

	<description>Пускане на lighttpd +PHP за Slackware&lt;br /&gt;
&lt;br /&gt;
Нужно Ви е да изтеглите [url]http://mrejata.us/infusions/pro_download_panel/download.php?did=347[/url]&lt;br /&gt;
След което изпълнете командите:&lt;br /&gt;
[code]groupadd -g 208 lighttpd&lt;br /&gt;
useradd -u 208 -g lighttpd -d /var/www lighttpd[/code]&lt;br /&gt;
[code]installpkg lighttpd-1.4.26-i486-1_SBo.tgz[/code]&lt;br /&gt;
[code]/etc/rc.d/rc.lighttpd start&lt;br /&gt;
/etc/rc.d/rc.lighttpd stop[/code]&lt;br /&gt;
[code]pico /etc/lighttpd/lighttpd.conf[/code]&lt;br /&gt;
и добавете в секция fastcgi.server&lt;br /&gt;
[code]fastcgi.server = ( &amp;quot;.php&amp;quot; =&amp;gt;&lt;br /&gt;
( &amp;quot;localhost&amp;quot; =&amp;gt;&lt;br /&gt;
(&lt;br /&gt;
&amp;quot;socket&amp;quot; =&amp;gt; &amp;quot;/tmp/php-fastcgi.socket&amp;quot;,&lt;br /&gt;
&amp;quot;bin-path&amp;quot; =&amp;gt; &amp;quot;/usr/bin/php-cgi -c /etc/lighttpd/php.ini&amp;quot;&lt;br /&gt;
)&lt;br /&gt;
)&lt;br /&gt;
)[/code]&lt;br /&gt;
След което трябва да копирате php.ini файла си:&lt;br /&gt;
[code]cp /etc/httpd/php.ini /etc/lighttpd/[/code]&lt;br /&gt;
[code]chown -R lighttpd.lighttpd /var/lib/php[/code]&lt;br /&gt;
След което можете да стартирате вашия lighttpd server&lt;br /&gt;
[code]/etc/rc.d/rc.lighttpd start[/code]</description>

	</item>

<item>

	<title> [ Мрежи и Комуникации ]</title>

	<link>forum/viewthread.php?forum_id=42&amp;amp;thread_id=644</link>

	<description>[b]Drop port scanners[/b]&lt;br /&gt;
[code]/ip firewall filter&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp psd=21,3s,3,1 action=add-src-to-address-list address-list=&amp;quot;port scanners&amp;quot; address-list-timeout=2w comment=&amp;quot;Port scanners to list &amp;quot; disabled=no&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp tcp-flags=fin,!syn,!rst,!psh,!ack,!urg action=add-src-to-address-list address-list=&amp;quot;port scanners&amp;quot; address-list-timeout=2w comment=&amp;quot;NMAP FIN Stealth scan&amp;quot;&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp tcp-flags=fin,syn action=add-src-to-address-list address-list=&amp;quot;port scanners&amp;quot; address-list-timeout=2w comment=&amp;quot;SYN/FIN scan&amp;quot;&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp tcp-flags=syn,rst action=add-src-to-address-list address-list=&amp;quot;port scanners&amp;quot; address-list-timeout=2w comment=&amp;quot;SYN/RST scan&amp;quot;&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp tcp-flags=fin,psh,urg,!syn,!rst,!ack action=add-src-to-address-list address-list=&amp;quot;port scanners&amp;quot; address-list-timeout=2w comment=&amp;quot;FIN/PSH/URG scan&amp;quot;&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp tcp-flags=fin,syn,rst,psh,ack,urg action=add-src-to-address-list address-list=&amp;quot;port scanners&amp;quot; address-list-timeout=2w comment=&amp;quot;ALL/ALL scan&amp;quot;&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp tcp-flags=!fin,!syn,!rst,!psh,!ack,!urg action=add-src-to-address-list address-list=&amp;quot;port scanners&amp;quot; address-list-timeout=2w comment=&amp;quot;NMAP NULL scan&amp;quot;&lt;br /&gt;
&lt;br /&gt;
add chain=input src-address-list=&amp;quot;port scanners&amp;quot; action=drop comment=&amp;quot;dropping port scanners&amp;quot; disabled=no&lt;br /&gt;
[/code]&lt;br /&gt;
&lt;br /&gt;
[b]Bruteforce login prevention (FTP &amp; SSH)[/b]&lt;br /&gt;
&lt;br /&gt;
[code]/ip firewall filter&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp dst-port=21 src-address-list=ftp_blacklist action=drop &amp;#92;&lt;br /&gt;
comment=&amp;quot;drop ftp brute forcers&amp;quot;&lt;br /&gt;
&lt;br /&gt;
add chain=output action=accept protocol=tcp content=&amp;quot;530 Login incorrect&amp;quot; dst-limit=1/1m,9,dst-address/1m&lt;br /&gt;
&lt;br /&gt;
add chain=output action=add-dst-to-address-list protocol=tcp content=&amp;quot;530 Login incorrect&amp;quot; &amp;#92;&lt;br /&gt;
address-list=ftp_blacklist address-list-timeout=3h&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp dst-port=22 src-address-list=ssh_blacklist action=drop &amp;#92;&lt;br /&gt;
comment=&amp;quot;drop ssh brute forcers&amp;quot; disabled=no&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp dst-port=22 connection-state=new &amp;#92;&lt;br /&gt;
src-address-list=ssh_stage3 action=add-src-to-address-list address-list=ssh_blacklist &amp;#92;&lt;br /&gt;
address-list-timeout=10d comment=&amp;quot;&amp;quot; disabled=no&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp dst-port=22 connection-state=new &amp;#92;&lt;br /&gt;
src-address-list=ssh_stage2 action=add-src-to-address-list address-list=ssh_stage3 &amp;#92;&lt;br /&gt;
address-list-timeout=1m comment=&amp;quot;&amp;quot; disabled=no&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp dst-port=22 connection-state=new src-address-list=ssh_stage1 &amp;#92;&lt;br /&gt;
action=add-src-to-address-list address-list=ssh_stage2 address-list-timeout=1m comment=&amp;quot;&amp;quot; disabled=no&lt;br /&gt;
&lt;br /&gt;
add chain=input protocol=tcp dst-port=22 connection-state=new action=add-src-to-address-list &amp;#92;&lt;br /&gt;
address-list=ssh_stage1 address-list-timeout=1m comment=&amp;quot;&amp;quot; disabled=no&lt;br /&gt;
&lt;br /&gt;
add chain=forward protocol=tcp dst-port=22 src-address-list=ssh_blacklist action=drop &amp;#92;&lt;br /&gt;
comment=&amp;quot;drop ssh brute downstream&amp;quot; disabled=no[/code]&lt;br /&gt;
&lt;br /&gt;
[b]TCP SYN flood[/b]&lt;br /&gt;
&lt;br /&gt;
[code]/ip firewall filter add chain=input protocol=tcp connection-limit=LIMIT,32  &amp;#92;&lt;br /&gt;
action=add-src-to-address-list  address-list=blocked-addr address-list-timeout=1d&lt;br /&gt;
/ip firewall filter add chain=input protocol=tcp src-address-list=blocked-addr &amp;#92;&lt;br /&gt;
connection-limit=3,32 action=tarpit&lt;br /&gt;
/ip firewall filter add chain=forward protocol=tcp tcp-flags=syn connection-state=new &amp;#92;&lt;br /&gt;
action=jump jump-target=SYN-Protect comment=&amp;quot;SYN Flood protect&amp;quot; disabled=yes&lt;br /&gt;
/ip firewall filter add chain=SYN-Protect protocol=tcp tcp-flags=syn limit=400,5 connection-state=new &amp;#92;&lt;br /&gt;
action=accept comment=&amp;quot;&amp;quot; disabled=no&lt;br /&gt;
/ip firewall filter add chain=SYN-Protect protocol=tcp tcp-flags=syn connection-state=new &amp;#92;&lt;br /&gt;
action=drop comment=&amp;quot;&amp;quot; disabled=no&lt;br /&gt;
/ip firewall connection tracking set tcp-syncookie=yes[/code]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[b]Protecting your customers&lt;br /&gt;
Virus filter[/b]&lt;br /&gt;
&lt;br /&gt;
[code]/ip firewall filter&lt;br /&gt;
add chain=forward connection-state=established comment=&amp;quot;allow established connections&amp;quot;  &lt;br /&gt;
add chain=forward connection-state=related comment=&amp;quot;allow related connections&amp;quot;&lt;br /&gt;
add chain=forward connection-state=invalid action=drop comment=&amp;quot;drop invalid connections&amp;quot;&lt;br /&gt;
&lt;br /&gt;
add chain=virus protocol=tcp dst-port=135-139 action=drop comment=&amp;quot;Drop Blaster Worm&amp;quot; &lt;br /&gt;
add chain=virus protocol=udp dst-port=135-139 action=drop comment=&amp;quot;Drop Messenger Worm&amp;quot;    &lt;br /&gt;
add chain=virus protocol=tcp dst-port=445 action=drop comment=&amp;quot;Drop Blaster Worm&amp;quot; &lt;br /&gt;
add chain=virus protocol=udp dst-port=445 action=drop comment=&amp;quot;Drop Blaster Worm&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=593 action=drop comment=&amp;quot;________&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1024-1030 action=drop comment=&amp;quot;________&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1080 action=drop comment=&amp;quot;Drop MyDoom&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1214 action=drop comment=&amp;quot;________&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1363 action=drop comment=&amp;quot;ndm requester&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1364 action=drop comment=&amp;quot;ndm server&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1368 action=drop comment=&amp;quot;screen cast&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1373 action=drop comment=&amp;quot;hromgrafx&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1377 action=drop comment=&amp;quot;cichlid&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=1433-1434 action=drop comment=&amp;quot;Worm&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=2745 action=drop comment=&amp;quot;Bagle Virus&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=2283 action=drop comment=&amp;quot;Drop Dumaru.Y&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=2535 action=drop comment=&amp;quot;Drop Beagle&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=2745 action=drop comment=&amp;quot;Drop Beagle.C-K&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=3127-3128 action=drop comment=&amp;quot;Drop MyDoom&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=3410 action=drop comment=&amp;quot;Drop Backdoor OptixPro&amp;quot;&lt;br /&gt;
add chain=virus protocol=tcp dst-port=4444 action=drop comment=&amp;quot;Worm&amp;quot; &lt;br /&gt;
add chain=virus protocol=udp dst-port=4444 action=drop comment=&amp;quot;Worm&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=5554 action=drop comment=&amp;quot;Drop Sasser&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=8866 action=drop comment=&amp;quot;Drop Beagle.B&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=9898 action=drop comment=&amp;quot;Drop Dabber.A-B&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=10000 action=drop comment=&amp;quot;Drop Dumaru.Y&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=10080 action=drop comment=&amp;quot;Drop MyDoom.B&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=12345 action=drop comment=&amp;quot;Drop NetBus&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=17300 action=drop comment=&amp;quot;Drop Kuang2&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=27374 action=drop comment=&amp;quot;Drop SubSeven&amp;quot; &lt;br /&gt;
add chain=virus protocol=tcp dst-port=65506 action=drop comment=&amp;quot;Drop PhatBot, Agobot, Gaobot&amp;quot;&lt;br /&gt;
add chain=forward action=jump jump-target=virus comment=&amp;quot;jump to the virus chain&amp;quot;&lt;br /&gt;
add chain=forward action=accept protocol=tcp dst-port=80 comment=&amp;quot;Allow HTTP&amp;quot; &lt;br /&gt;
add chain=forward action=accept protocol=tcp dst-port=25 comment=&amp;quot;Allow SMTP&amp;quot; &lt;br /&gt;
add chain=forward protocol=tcp comment=&amp;quot;allow TCP&amp;quot;&lt;br /&gt;
add chain=forward protocol=icmp comment=&amp;quot;allow ping&amp;quot;&lt;br /&gt;
add chain=forward protocol=udp comment=&amp;quot;allow udp&amp;quot;&lt;br /&gt;
add chain=forward action=drop comment=&amp;quot;drop everything else&amp;quot;[/code]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[b]Set up packet filtering[/b]&lt;br /&gt;
&lt;br /&gt;
[code]/ ip firewall filter&lt;br /&gt;
add chain=input connection-state=established comment=&amp;quot;Accept established connections&amp;quot;&lt;br /&gt;
add chain=input connection-state=related comment=&amp;quot;Accept related connections&amp;quot;&lt;br /&gt;
add chain=input connection-state=invalid action=drop comment=&amp;quot;Drop invalid connections&amp;quot; &lt;br /&gt;
add chain=input protocol=udp action=accept comment=&amp;quot;UDP&amp;quot; disabled=no &lt;br /&gt;
add chain=input protocol=icmp limit=50/5s,2 comment=&amp;quot;Allow limited pings&amp;quot; &lt;br /&gt;
add chain=input protocol=icmp action=drop comment=&amp;quot;Drop excess pings&amp;quot; &lt;br /&gt;
add chain=input protocol=tcp dst-port=22 comment=&amp;quot;SSH for secure shell&amp;quot;&lt;br /&gt;
add chain=input protocol=tcp dst-port=8291 comment=&amp;quot;winbox&amp;quot; [/code]&lt;br /&gt;
&lt;br /&gt;
[b][color=red]Edit these rules to reflect your actual IP addresses![/color][/b]&lt;br /&gt;
&lt;br /&gt;
[code]add chain=input src-address=159.148.172.192/28 comment=&amp;quot;From Mikrotikls network&amp;quot; &lt;br /&gt;
add chain=input src-address=10.0.0.0/8 comment=&amp;quot;From our private LAN&amp;quot;[/code]&lt;br /&gt;
&lt;br /&gt;
[b][color=red]End of Edit [/color][/b]&lt;br /&gt;
[code]add chain=input action=log log-prefix=&amp;quot;DROP INPUT&amp;quot; comment=&amp;quot;Log everything else&amp;quot;&lt;br /&gt;
add chain=input action=drop comment=&amp;quot;Drop everything else&amp;quot;[/code]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[b]Redirect mail traffic to a specified server[/b]&lt;br /&gt;
&lt;br /&gt;
[code]ip firewall nat add chain=dstnat protocol=tcp dst-port=25 action=dst-nat to-addresses=10.0.0.1 to-ports=25[/code]&lt;br /&gt;
&lt;br /&gt;
[b]FIREWALL[/b]&lt;br /&gt;
&lt;br /&gt;
[code]/ip firewall connection tracking &lt;br /&gt;
set enabled=yes generic-timeout=10m icmp-timeout=10s tcp-close-timeout=10s tcp-close-wait-timeout=10s tcp-established-timeout=1d &amp;#92;&lt;br /&gt;
    tcp-fin-wait-timeout=10s tcp-last-ack-timeout=10s tcp-syn-received-timeout=5s tcp-syn-sent-timeout=5s tcp-syncookie=no &amp;#92;&lt;br /&gt;
    tcp-time-wait-timeout=10s udp-stream-timeout=3m udp-timeout=10s &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
/ip firewall filter &lt;br /&gt;
add action=accept chain=accept_list comment=&amp;quot;Forward HTTP to webserver&amp;quot; dst-address=192.168.11.10 dst-port=80 protocol=tcp &lt;br /&gt;
add action=accept chain=accept_list comment=&amp;quot;Forward HTTPS to webserver&amp;quot; dst-address=192.168.11.10 dst-port=443 &amp;#92;&lt;br /&gt;
    protocol=tcp &lt;br /&gt;
add action=accept chain=accept_list comment=&amp;quot;Forward FTP to Server&amp;quot; dst-address=192.168.11.10 dst-port=21 protocol=tcp &lt;br /&gt;
add action=accept chain=accept_list comment=&amp;quot;Forward RDP to Server&amp;quot; dst-address=192.168.11.10 dst-port=3389 protocol=tcp &amp;#92;&lt;br /&gt;
    src-port=3389 &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;windows - not EXACTLY a virus&amp;quot; dst-port=135-139 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;windows - not EXACTLY a virus&amp;quot; dst-port=135-139 protocol=udp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;winXP netbios not EXACTLY a virus&amp;quot; dst-port=445 protocol=udp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;winXP netbios not EXACTLY a virus&amp;quot; dst-port=445 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;msblast worm&amp;quot; dst-port=593 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;msblast worm&amp;quot; dst-port=4444 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;WITTY worm&amp;quot; dst-port=4000 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;SoBig.f worm&amp;quot; dst-port=995-999 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;SoBig.f worm&amp;quot; dst-port=8998 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;beagle worm&amp;quot; dst-port=2745 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;beagle worm&amp;quot; dst-port=4751 protocol=tcp &lt;br /&gt;
add action=drop chain=known_viruses comment=&amp;quot;SQL Slammer&amp;quot; dst-port=1434 protocol=tcp &lt;br /&gt;
add action=drop chain=bad_people comment=&amp;quot;Known Spammer&amp;quot; src-address=81.180.98.3 &lt;br /&gt;
add action=drop chain=bad_people comment=&amp;quot;Known Spammer&amp;quot; src-address=24.73.97.226 &lt;br /&gt;
add action=drop chain=bad_people comment=&amp;quot;http://isc.incidents.org/top10.html listed&amp;quot; src-address=67.75.20.112 &lt;br /&gt;
add action=drop chain=bad_people src-address=218.104.138.166 &lt;br /&gt;
add action=drop chain=bad_people src-address=212.3.250.194 &lt;br /&gt;
add action=drop chain=bad_people src-address=203.94.243.191 &lt;br /&gt;
add action=drop chain=bad_people src-address=202.101.235.100 &lt;br /&gt;
add action=drop chain=bad_people src-address=58.16.228.42 &lt;br /&gt;
add action=drop chain=bad_people src-address=58.248.8.2 &lt;br /&gt;
add action=drop chain=bad_people src-address=202.99.11.99 &lt;br /&gt;
add action=drop chain=bad_people src-address=218.52.237.219 &lt;br /&gt;
add action=drop chain=bad_people src-address=222.173.101.157 &lt;br /&gt;
add action=drop chain=bad_people src-address=58.242.34.235 &lt;br /&gt;
add action=drop chain=bad_people src-address=222.80.184.23 &lt;br /&gt;
add action=accept chain=forward comment=&amp;quot;Allow WIFI access to ALL&amp;quot; src-address=192.168.22.0/24 &lt;br /&gt;
add action=drop chain=input comment=&amp;quot;drop ssh brute forcers&amp;quot; dst-port=22 protocol=tcp src-address-list=ssh_blacklist &lt;br /&gt;
add action=add-src-to-address-list address-list=ssh_blacklist address-list-timeout=1w3d chain=input connection-state=new &amp;#92;&lt;br /&gt;
    dst-port=22 protocol=tcp src-address-list=ssh_stage3 &lt;br /&gt;
add action=add-src-to-address-list address-list=ssh_stage3 address-list-timeout=1m chain=input connection-state=new &amp;#92;&lt;br /&gt;
    dst-port=22 protocol=tcp src-address-list=ssh_stage2 &lt;br /&gt;
add action=add-src-to-address-list address-list=ssh_stage2 address-list-timeout=1m chain=input connection-state=new &amp;#92;&lt;br /&gt;
    dst-port=22 protocol=tcp src-address-list=ssh_stage1 &lt;br /&gt;
add action=add-src-to-address-list address-list=ssh_stage1 address-list-timeout=1m chain=input connection-state=new &amp;#92;&lt;br /&gt;
    dst-port=22 protocol=tcp &lt;br /&gt;
add action=drop chain=input comment=&amp;quot;allows only 10 FTP login incorrect answers per minute&amp;quot; dst-port=21 protocol=tcp &amp;#92;&lt;br /&gt;
    src-address-list=ftp_blacklist &lt;br /&gt;
add action=accept chain=output content=&amp;quot;530 Login incorrect&amp;quot; dst-limit=1/1m,9,dst-address/1m protocol=tcp &lt;br /&gt;
add action=add-dst-to-address-list address-list=ftp_blacklist address-list-timeout=3h chain=output content=&amp;quot;530 Login &amp;#92;&lt;br /&gt;
    incorrect&amp;quot; protocol=tcp &lt;br /&gt;
add action=drop chain=forward comment=&amp;quot;drop invalid connections DELETE&amp;quot; connection-state=invalid &lt;br /&gt;
add action=drop chain=forward comment=&amp;quot;Blocks SSH&amp;quot; dst-port=22 protocol=tcp &lt;br /&gt;
add action=jump chain=forward comment=&amp;quot;Known virus ports DELETE&amp;quot; jump-target=known_viruses &lt;br /&gt;
add action=jump chain=forward comment=&amp;quot;kill known bad source addresses DELETE&amp;quot; jump-target=bad_people &lt;br /&gt;
add action=jump chain=forward comment=&amp;quot;Jump to Accepted List&amp;quot; jump-target=accept_list &lt;br /&gt;
add action=accept chain=forward comment=&amp;quot;allow established connections DELETE&amp;quot; connection-state=established &lt;br /&gt;
add action=accept chain=forward comment=&amp;quot;allow related connections DELETE&amp;quot; connection-state=related &lt;br /&gt;
add action=accept chain=forward comment=&amp;quot;Allow All&amp;quot;&lt;br /&gt;
&lt;br /&gt;
/ip firewall nat &lt;br /&gt;
add action=masquerade chain=srcnat src-address=192.168.11.0/24 &lt;br /&gt;
add action=dst-nat chain=dstnat dst-address=24.16.119.193 dst-port=3389 protocol=tcp to-addresses=192.168.11.10&lt;br /&gt;
add action=dst-nat chain=dstnat dst-address=24.16.119.193 dst-port=80 protocol=tcp to-addresses=192.168.11.10&lt;br /&gt;
add action=dst-nat chain=dstnat dst-address=24.16.119.193 dst-port=21 protocol=tcp to-addresses=192.168.11.10&lt;br /&gt;
add action=dst-nat chain=dstnat dst-address=24.16.119.193 dst-port=443 protocol=tcp to-addresses=192.168.11.10[/code]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[b]END :)[/b]</description>

	</item>

<item>

	<title> [ Linux ]</title>

	<link>forum/viewthread.php?forum_id=45&amp;amp;thread_id=641</link>

	<description>Ето и РЦ1 версията на Slackware 13.1 RC1&lt;br /&gt;
[url]http://mrejata.us/infusions/pro_download_panel/download.php?did=317[/url]</description>

	</item>

</channel>
	</rss>
