# 特定の IPアドレスからの INPUTを拒否する # iptables -A INPUT -i ppp0 -s 202.108.1.10 -j DROP <= この行を追加 # TCP PORT 80,8080の通過を許可 # iptables -A INPUT -i ppp0 -p tcp --dport 80 -j ACCEPT iptables -A INPUT -i ppp0 -p tcp --dport 8080 -j ACCEPT iptables -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT |
202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/DivX52/index.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" 202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/settei/rrdtool-smallgraph.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" 202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/settei/smartctl.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" 202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/settei/diskcopy-ide2scsi.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" 202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/settei/diskcopy-ide2ide.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" 202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/settei/ntpdate.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" 202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/settei/re-pppoe.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" 202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/settei/iptables.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" 202.xxx.1.10 - - [01/Oct/2004:16:46:13 +0900] "GET /brake/pc/settei/apt.html HTTP/1.1" 404 301 488 "-" "User-Agent: Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0)" |
<Directory "/home/localhost"> AllowOverride Limit SetEnvIf Host miya0 access_ok SetEnvIf Host localhost access_ok SetEnvIf User-Agent Access !access_ok SetEnvIf User-Agent FrontPage !access_ok SetEnvIf Remote_Addr 202.xxx.1.10 !access_ok <= 今回追加 Order Deny,Allow Deny from all Allow from env=access_ok Allow from 192.168.0.0/255.255.255.0 127.0.0.1 </Directory> |
pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:03 +0900] "OPTIONS / HTTP/1.1" 200 - "-" "Microsoft Data Access Internet Publishing Provider Protocol Discovery" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:03 +0900] "OPTIONS /oil HTTP/1.1" 200 - "-" "Microsoft Data Access Internet Publishing Provider Protocol Discovery" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:04 +0900] "GET /_vti_inf.html HTTP/1.1" 404 363 "-" "Mozilla/2.0 (compatible; MS FrontPage 5.0)" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:04 +0900] "OPTIONS / HTTP/1.1" 200 - "-" "Microsoft Data Access Internet Publishing Provider Protocol Discovery" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:04 +0900] "OPTIONS /oil HTTP/1.1" 200 - "-" "Microsoft Data Access Internet Publishing Provider Protocol Discovery" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:05 +0900] "GET /_vti_inf.html HTTP/1.1" 404 363 "-" "Mozilla/2.0 (compatible; MS FrontPage 5.0)" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:05 +0900] "OPTIONS / HTTP/1.1" 200 - "-" "Microsoft Data Access Internet Publishing Provider Protocol Discovery" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:05 +0900] "OPTIONS /oil/oil.html HTTP/1.1" 200 - "-" "Microsoft Data Access Internet Publishing Provider Protocol Discovery" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:05 +0900] "GET /_vti_inf.html HTTP/1.1" 404 363 "-" "Mozilla/2.0 (compatible; MS FrontPage 5.0)" pxxxx-ipad03kamokounan.kagoshima.ocn.ne.jp - - [15/Jul/2004:17:38:06 +0900] "GET /oil/oil.html HTTP/1.1" 304 - "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; .NET CLR 1.1.4322)"
<Directory "/hogehoge"> AllowOverride Limit SetEnvIf Host miya0 access_ok --(1) SetEnvIf Host localhost access_ok --(2) SetEnvIf User-Agent Access !access_ok --(3) SetEnvIf User-Agent FrontPage !access_ok --(4) Order Deny,Allow --(5) Deny from all --(6) Allow from env=access_ok --(7) Allow from 192.168.0.0/255.255.255.0 127.0.0.1 --(8) </Directory> |
AllowOverride Limit (noneからの変更が必要なのかな?) <Directory "c:\wwwroot"> SetEnvIf Host \infoweb\ domain_name_ng SetEnvIf Host \iij4u\ domain_name_ng Order Allow,Deny Allow from all Deny from env=domain_name_ng </Directory> |
<Directory "c:\wwwroot"> SetEnvIf Host miya0 domain_name_ok SetEnvIf Host localhost domain_name_ok Order Deny,Allow Deny from all Allow from env=domain_name_ok Allow from 192.168.0.0/255.255.255.0 127.0.0.1 </Directory> |