Post by Tomislav VrebacPost by ivo.Imam jedno racunalo i koristim router u bridge nacinu rada tj spajam se
"dial up".
Hocu probati linux kao liveDVD.
Kada pokrenem Ubuntu ili Mint i spojim se na internet (DSL u Ubuntu) sa
svojom user/pass, mogu pristupiti samo http stranicama, ne i https.
Hajde pokreni terminal ("ono crno što izgleda kao DOS") pa ukucaj
1. sudo su -
2. ip a
3. ip r
4. ping -c 5 8.8.8.8
5. traceroute -n 8.8.8.8
6. tracepath -n 8.8.8.8
7. iptables -L
Pozdrav!
Sada mi je palo na pamet.
U zadnje vrijeme testiram dosta liveDVD linux distribucija.
Mozda je nesto T-com blokirao, mozda misle da se preko mene spaja vise
ljudi.
Iako spajam samo jedno racunalo kablom u bridge nacinu (dial-up), ne
router nacinu.
Moze li se na routeru vidjeti lista "tko je sve isao na net"?
Mozda svaki liveDVD tj svaka linux distribucija se zapisuje u routeru?
Isto ne radi kad pokrenem linux liveDVD preko VirtualBox-a, network u
brigde. Spojim se sa user/pass od tcom, ali nema prometa.
Router je Thompson.
Evo ispis:
sudo su -
# ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN
group default qlen 1
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: enp0s3: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast
state UP group default qlen 1000
link/ether ___________ brd ff:ff:ff:ff:ff:ff
inet6 __________________/64 scope link
valid_lft forever preferred_lft forever
3: ppp0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc
pfifo_fast state UNKNOWN group default qlen 3
link/ppp
inet __________ peer ____________/32 scope global ppp0
valid_lft forever preferred_lft forever
# ip r
default via 172.29.252.70 dev ppp0 proto static metric 100
172.29.252.70 dev ppp0 proto kernel scope link src ____________ metric 100
# ping -c 5 8.8.8.8
PING 8.8.8.8 (8.8.8.8) 56(84) bytes of data.
^C
--- 8.8.8.8 ping statistics ---
5 packets transmitted, 0 received, 100% packet loss, time 4079ms
# traceroute -n 8.8.8.8
traceroute to 8.8.8.8 (8.8.8.8), 30 hops max, 60 byte packets
1 * * *
2 * * *
3 * * *
4 * * *
5 * * *
6 * * *
7 8.8.8.8 36.532 ms 34.358 ms 42.548 ms
# tracepath -n 8.8.8.8
1?: [LOCALHOST] pmtu 1500
1: no reply
2: no reply
3: no reply
4: no reply
5: no reply
6: no reply
7: no reply
8: no reply
^C
# iptables -L
Chain INPUT (policy DROP)
target prot opt source destination
ACCEPT all -- anywhere anywhere
ACCEPT all -- anywhere anywhere ctstate
ESTABLISHED
ACCEPT icmp -- anywhere anywhere ctstate
RELATED
input_ext all -- anywhere anywhere
LOG all -- anywhere anywhere limit: avg
3/min burst 5 LOG level warning tcp-options ip-options prefix
"SFW2-IN-ILL-TARGET "
DROP all -- anywhere anywhere
Chain FORWARD (policy DROP)
target prot opt source destination
LOG all -- anywhere anywhere limit: avg
3/min burst 5 LOG level warning tcp-options ip-options prefix
"SFW2-FWD-ILL-ROUTING "
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
ACCEPT all -- anywhere anywhere
Chain forward_ext (0 references)
target prot opt source destination
Chain input_ext (1 references)
target prot opt source destination
DROP all -- anywhere anywhere PKTTYPE =
broadcast
ACCEPT icmp -- anywhere anywhere icmp
source-quench
ACCEPT icmp -- anywhere anywhere icmp
echo-request
DROP all -- anywhere anywhere PKTTYPE =
multicast
DROP all -- anywhere anywhere PKTTYPE =
broadcast
LOG tcp -- anywhere anywhere limit: avg
3/min burst 5 tcp flags:FIN,SYN,RST,ACK/SYN LOG level warning
tcp-options ip-options prefix "SFW2-INext-DROP-DEFLT "
LOG icmp -- anywhere anywhere limit: avg
3/min burst 5 LOG level warning tcp-options ip-options prefix
"SFW2-INext-DROP-DEFLT "
LOG udp -- anywhere anywhere limit: avg
3/min burst 5 ctstate NEW LOG level warning tcp-options ip-options
prefix "SFW2-INext-DROP-DEFLT "
DROP all -- anywhere anywhere
Chain reject_func (0 references)
target prot opt source destination
REJECT tcp -- anywhere anywhere
reject-with tcp-reset
REJECT udp -- anywhere anywhere
reject-with icmp-port-unreachable
REJECT all -- anywhere anywhere
reject-with icmp-proto-unreachable