ÉîÈëLinuxÍøÂçºËÐĶÑÕ»
´´½¨Ê±¼ä£º2003-08-22
ÎÄÕÂÊôÐÔ£º·Òë
ÎÄÕÂÌá½»£ºraodan
(raod_at_30san.com)
==Phrack Inc.==
¾í±ê 0x0b, ÆÚ¿¯ºÅ 0x3d, Phile #0x0d of 0x0f
|=---------------------=[ ÉîÈëLinuxÍøÂçºËÐĶÑÕ» ]=-----------------------=|
|=-----------------------------------------------------------------------=|
|=------------------=[ bioforge <alkerr@yifan.net> ]=--------------------=|
|=------------------------=[ ·Òë : raodan ]=----------------------------=|
Ŀ¼
1 - ¼ò½é
1.1 - ±¾ÎÄÉæ¼°µÄÄÚÈÝ
1.2 - ±¾ÎIJ»Éæ¼°µÄÄÚÈÝ
2 - ¸÷ÖÖNetfilter hook¼°ÆäÓ÷¨
2.1 - LinuxÄں˶ÔÊý¾Ý°üµÄ´¦Àí
2.2 - Netfilter¶ÔIPv4µÄhook
3 - ×¢²áºÍ×¢ÏúNetfilter hook
4 - Netfilter »ù±¾µÄÊý¾Ý±¨¹ýÂ˼¼Êõ[1]
4.1 - ÉîÈëhookº¯Êý
4.2 - »ùÓÚ½Ó¿Ú½øÐйýÂË
4.3 - »ùÓÚµØÖ·½øÐйýÂË
4.4 - »ùÓÚTCP¶Ë¿Ú½øÐйýÂË
5 - Netfilter hookµÄÆäËü¿ÉÄÜÓ÷¨
5.1 - Òþ²ØºóÃŵÄÊØ»¤½ø³Ì
5.2 - »ùÓÚÄں˵ÄFTPÃÜÂëÐá̽Æ÷
5.2.1 - Ô´´úÂë : nfsniff.c
5.2.2 - Ô´´úÂë : getpass.c
6 - ÔÚLibpcapÖÐÒþ²ØÍøÂçͨÐÅ
6.1 - SOCK_PACKET¡¢SOCK_RAWÓëLibpcap
6.2 - ¸øÀÇÅûÉÏÑòƤ
7 - ½áÊøÓï
A - ÇáÁ¿¼¶·À»ðǽ
A.1 - ¸ÅÊö
A.2 - Ô´´úÂë : lwfw.c
A.3 - Í·Îļþ : lwfw.h
B - µÚ6½ÚÖеÄÔ´´úÂë
--[ 1 - ¼ò½é
±¾
ÎĽ«ÏòÄãչʾ£¬LinuxµÄÍøÂç¶ÑÕ»µÄһЩ¹ÖÒìÐÐΪ£¨²¢²»Ò»¶¨ÊÇÈõµã£©ÈçºÎ±»ÓÃÓÚа¶ñµÄ»òÕßÊÇÆäËüÐÎÐÎɫɫµÄÄ¿µÄ¡£ÔÚÕâÀォҪÌÖÂÛµÄÊǽ«±íÃæÉÏ¿´ÆðÀ´ºÏ·¨
µÄNetfilter hookÓÃÓÚºóÃŵÄͨÐÅ£¬ÒÔ¼°Ò»ÖÖÊ¹ÌØ¶¨µÄÍøÂçͨÐÅÔÚÔËÐÐÓÚ±¾»úµÄ»ùÓÚLibpcapµÄÐá̽Æ÷ÖÐÏûÉùÄä¼£µÄ¼¼Êõ¡£
Netfilter
ÊÇLinux
2.4Äں˵ÄÒ»¸ö×Óϵͳ£¬NetfilerʹµÃÖîÈçÊý¾Ý°ü¹ýÂË¡¢ÍøÂçµØÖ·×ª»»(NAT)ÒÔ¼°ÍøÂçÁ¬½Ó¸ú×ٵȼ¼ÇɳÉΪ¿ÉÄÜ£¬ÕâЩ¹¦Äܽöͨ¹ýʹÓÃÄÚºËÍøÂç´úÂë
ÌṩµÄ¸÷ʽ¸÷ÑùµÄhook¼È¿ÉÒÔÍê³É¡£ÕâЩhookλÓÚÄں˴úÂëÖУ¬ÒªÃ´ÊǾ²Ì¬Á´½ÓµÄ£¬ÒªÃ´Ê
Ïà¹ØÎĵµ£º
£¨L2CAPÐÒé¼ò½é£¬L2CAPÔÚBlueZÖеÄʵÏÖÒÔ¼°L2CAP±à³Ì½Ó¿Ú£©
Ò»£ºL2CAPÐÒé¼ò½é£º
Logical Link Control and Adaptation Protocol(L2CAP)
Âß¼Á¬½Ó¿ØÖƺÍÊÊÅäÐÒé (L2CAP) ΪÉϲãÐÒéÌá¹©ÃæÏòÁ¬½ÓºÍÎÞÁ¬½ÓµÄÊý¾Ý·þÎñ£¬²¢Ìṩ¶àÐÒ鹦ÄܺͷָîÖØ×é²Ù×÷¡£L2CAP ³äÐíÉϲãÐÒéºÍÓ¦ÓÃÈí¼þ´«ÊäºÍ½ÓÊÕ×î´ó³¤¶ÈΪ 64K µÄ L2CAP Ê ......
±³¾°£ºÔÚÊÖ»úwap³ÌÐò¹¤×÷ÔÚlinuxÏ£¬Ðèͨ¹ýwindows´úÀí·þÎñÆ÷ÉÏÍø£¨http/https£©£¬ISA´úÀí¡£Ê¹ÓôúÀíÐèÒªÓòÃû\Óû§ÃûºÍÃÜÂë¡£
1¡¢ÏÈÖ´ÐÐÃüÁîÉèÖû·¾³±äÁ¿export http_proxy=http://192.168.24.254:8080/ºÍexport http_proxy=http://sywgdev.net\proteinx@192.168.24.254:8080/¡£µ«Ö´ÐÐʧ°Ü¡£±¨407´í£¬ÈÏ֤ʧ°Ü¡£
2¡ ......
Linux´®¿Ú±à³Ì
¼ò½é£º
Linux ²Ù×÷ϵͳ´ÓÒ»¿ªÊ¼¾Í¶Ô´®ÐпÚÌṩÁ˺ܺõÄÖ§³Ö£¬±¾ÎÄ¾Í Linux ϵĴ®ÐпÚͨѶ±à³Ì½øÐмòµ¥µÄ½éÉÜ¡£
´®¿Ú¼ò½é
´®ÐпÚÊǼÆËã»úÒ»ÖÖ³£ÓõĽӿڣ¬¾ßÓÐÁ¬½ÓÏßÉÙ£¬Í¨Ñ¶¼òµ¥£¬µÃµ½¹ã·ºµÄʹÓᣳ£ÓõĴ®¿ÚÊÇ RS-232-C ½Ó¿Ú£¨ÓÖ³Æ EIA RS-232-C£©ËüÊÇÔÚ 1970 ÄêÓÉÃÀ¹úµç×Ó¹¤ÒµÐ»á£¨EIA£©Á ......
1£ºÏµÍ³°²×°£¬ÕâÀï¾Í²»ËµÁË£¬ÍøÉÏÓкܶ࣬ҲºÜ¼òµ¥¡£Ë³±ã˵Ï£¬ÎÒÓõÄÊÇredhat 9£»
2£ºÔÚͼÐνçÃæÏÂÏÂÔØapache °²×°°ü£¬ÎÒϵÄÊÇ httpd-2.2.9.tar.gz Ô´Âë°²×°°ü£¬µØÖ·ÊÇhttp://httpd.apache.org/download.cgi
3£º½«ÏÂÔØÎļþ±£´æµ½/home/redhat/src Ŀ¼Ï£¬ÆðÖØredhatÊÇÆÕͨÓû§ËùÔÚÎļþ¼Ð£¬Ò²¿ÉÒÔ×Ô¼º½¨Á¢ÆäËûµÄ ......
http://linux.chinaunix.net/bbs/archiver/?tid-1137337.html
¹Ø×¢ºÍÊÔÓÃLINUXºÜ³¤Ê±¼äÁË£¬µ«½ÏÉÙʵ¼ÊÓÃÆðÀ´£¬¸ÕºÃµ¥Î»ÐèÒ»¸ö·ÓÉÆ÷£¬ÓÐÏÐÖÃÀÏ»ú£¬ÌáÉýÏÂ×Ô¼ºÊµÕ½ÄÜÁ¦°É£¡ÍøÉÏÎÄÕºöà±ÊÎó£¬Òò´ËÓÐЩС²¨ÕÛ£¬Ï£Íû°ÑÕâ´Î¾Àú×ܽáÏ£¬ÎªÁËÍüÈ´µÄ¼ÍÄî¡£
°²×°ºÃUBUNTU SERVER 8.04ºó£¬ÉèÖÃË«Íø¿¨£ºeth0ΪÍâÍøÍø¿¨£¬eth1ΪÄÚÍ ......