LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 05-19-2013, 04:51 AM   #1
mizogomo
LQ Newbie
 
Registered: Apr 2013
Location: japan
Distribution: centos
Posts: 4

Rep: Reputation: Disabled
how can i block traceroute or tracert with iptables?


hi friends

sorry english me is bad

how can i block traceroute or tracert with iptables?

thanks plz help me
 
Old 05-19-2013, 12:30 PM   #2
Ygrex
Member
 
Registered: Nov 2004
Location: Russia (St.Petersburg)
Distribution: Debian
Posts: 666

Rep: Reputation: 68
what do you mean by blocking?
1. to restrict running these tools locally?
2. to avoid sending replies to other hosts if initiated by these tools?
3. prevent your clients to use these tools for investigating any other hosts?

also it can be helpful to know why do you need to do this
 
Old 05-19-2013, 02:03 PM   #3
mizogomo
LQ Newbie
 
Registered: Apr 2013
Location: japan
Distribution: centos
Posts: 4

Original Poster
Rep: Reputation: Disabled
hello

plz explain All items . i need all


thanks
 
Old 05-19-2013, 11:44 PM   #4
Ygrex
Member
 
Registered: Nov 2004
Location: Russia (St.Petersburg)
Distribution: Debian
Posts: 666

Rep: Reputation: 68
really? add this rule to iptables:
Code:
-p icmp -m icmp --icmp-type time-exceeded -j DROP
1. filter/INPUT
2. filter/OUTPUT
3. filter/FORWARD
 
Old 05-21-2013, 01:46 AM   #5
mizogomo
LQ Newbie
 
Registered: Apr 2013
Location: japan
Distribution: centos
Posts: 4

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by Ygrex View Post
really? add this rule to iptables:
Code:
-p icmp -m icmp --icmp-type time-exceeded -j DROP
1. filter/INPUT
2. filter/OUTPUT
3. filter/FORWARD
hi friend

plz say full rul

can not work this rul

thanks
 
Old 05-21-2013, 02:25 AM   #6
Ygrex
Member
 
Registered: Nov 2004
Location: Russia (St.Petersburg)
Distribution: Debian
Posts: 666

Rep: Reputation: 68
ok, say the full error message you get
 
Old 05-21-2013, 02:06 PM   #7
mizogomo
LQ Newbie
 
Registered: Apr 2013
Location: japan
Distribution: centos
Posts: 4

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by Ygrex View Post
ok, say the full error message you get
hi ygrex

thanks for help to me. you are good my friend

sorry english me is bad

the message has :

root@bt:~# -p icmp -m icmp --icmp-type time-exceeded -j DROP
-p: command not found
root@bt:~#



ygrex do you have email address? I think you can learn a lot linux and iptables.

thanks master
 
Old 05-21-2013, 08:13 PM   #8
chrism01
LQ Guru
 
Registered: Aug 2004
Location: Sydney
Distribution: Rocky 9.2
Posts: 18,359

Rep: Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751
Have a look at these
http://wiki.centos.org/HowTos/Network/IPTables
http://www.cyberciti.biz/faq/rhel-fe...tion-tutorial/
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
traceroute doesn't find all hops - tracert does hua Linux - Networking 10 01-15-2015 06:10 AM
BASH command tracert/traceroute not recognized phantom_cyph Linux - General 6 02-19-2007 10:34 AM
traceroute block and redirection.. howto? Ronin_tekorei Linux - Networking 4 12-21-2006 08:44 PM
tracert/traceroute dav_y2k Linux - Networking 1 12-06-2006 11:25 AM
Traceroute, tracert??? MattLaw Linux - General 9 05-02-2004 07:57 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:19 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration