{"id":8968,"date":"2025-01-18T10:41:37","date_gmt":"2025-01-18T01:41:37","guid":{"rendered":"https:\/\/jg7sfr.mydns.jp\/?p=8968"},"modified":"2025-01-18T12:20:31","modified_gmt":"2025-01-18T03:20:31","slug":"ipfw%e3%81%a8blacklist","status":"publish","type":"post","link":"https:\/\/jg7sfr.mydns.jp\/?p=8968","title":{"rendered":"ipfw\u3068blacklist"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">ipfw\u3068blacklist\u3092\u306f\u3058\u3081\u307e\u3057\u305f\u3002<br>\u5148\u65e5\u306ecron\u30e1\u30fc\u30eb\u306e\u6295\u7a3f\u3068\u3044\u3044\u3001wordpress\u3078\u306eamazonaws\u306e\u30ed\u30b0\u30a4\u30f3\u306e\u8a66\u307f\u3068\u3044\u3044\u3001\u5b89\u5fc3\u3067\u304d\u306a\u3044\u306e\u3067\u3002\u30eb\u30fc\u30bf\u30fc\u306722\u756a\u3068\u9589\u3058\u3066\u3082\u3044\u3044\u306e\u3067\u3059\u304c\u3001\u5916\u304b\u3089\u30e1\u30f3\u30c6\u3067\u304d\u306a\u304f\u306a\u308b\u306e\u3067\u958b\u653e\u3057\u3066\u3044\u308b\u306e\u3067\u3059\u304c\u3001\u4e0d\u5b89\u3067\u3059\u3057\u3001\u8a2d\u5b9a\u3059\u308b\u306e\u304c\u5f53\u7136\u3067\u3057\u3087\u3046\u304b\u3089\u3001\u4eca\u9803\u306b\u306a\u3063\u3066\u8a2d\u5b9a\u3057\u3066\u307f\u307e\u3057\u305f\u3002<br><br>\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0<br>\u30eb\u30fc\u30eb\u756a\u53f7 \u30d1\u30b1\u30c3\u30c8\u6570 \u30d0\u30a4\u30c8\u6570 \u30eb\u30fc\u30eb<br># ipfw show<br>00001 0 0 check-state :default<br>00100 380 98528 allow ip from any to any via lo0<br>00200 0 0 deny ip from any to 127.0.0.0\/8<br>00300 0 0 deny ip from 127.0.0.0\/8 to any<br>00400 0 0 deny ip from any to ::1<br>00500 0 0 deny ip from ::1 to any<br>00600 0 0 allow ipv6-icmp from :: to ff02::\/16<br>00700 14 944 allow ipv6-icmp from fe80::\/10 to fe80::\/10<br>00800 228 23136 allow ipv6-icmp from fe80::\/10 to ff02::\/16<br>00900 0 0 allow ipv6-icmp from any to any icmp6types 1<br>01000 60 4312 allow ipv6-icmp from any to any icmp6types 2,135,136<br>02022 50 3000 deny tcp from table(port22) to any 22<br>03000 1840 304267 allow tcp from any to any 22 in via em0 setup keep-state :default<br>65535 5222 3429920 allow ip from any to any<br><br>\u30e2\u30cb\u30bf\u30ea\u30f3\u30b0(\u30a2\u30af\u30bb\u30b9\u62d2\u5426\u3057\u305fIP)<br># ipfw table port22 list<br>87.120.114.139\/32 0<br>92.255.85.189\/32 0<br>138.124.110.200\/32 0<br><br>\u30d6\u30ed\u30c3\u30af\u30eb\u30fc\u30eb\u304c\u8ffd\u52a0\u3055\u308c\u305f\u3053\u3068\u3092\u78ba\u8a8d<br># blacklistctl dump -a <br>address\/ma:port id nfail last access<br>81.16.170.117\/32:22 1\/3 2025\/01\/18 09:33:57<br>122.187.227.24\/32:22 1\/3 2025\/01\/18 09:52:50<br>217.211.16.20\/32:22 1\/3 2025\/01\/18 10:09:31<br>49.124.149.207\/32:22 1\/3 2025\/01\/18 09:50:07<br>178.174.3.182\/32:22 1\/3 2025\/01\/18 10:13:24<br>125.20.207.154\/32:22 1\/3 2025\/01\/18 10:29:04<br>175.180.129.87\/32:22 1\/3 2025\/01\/18 10:06:40<br>176.172.239.193\/32:22 1\/3 2025\/01\/18 09:36:16<br>87.120.114.139\/32:22 OK 3\/3 2025\/01\/18 09:40:59<br>154.113.167.210\/32:22 1\/3 2025\/01\/18 10:00:35<br>138.124.110.200\/32:22 OK 3\/3 2025\/01\/18 10:01:07<br>92.255.85.188\/32:22 1\/3 2025\/01\/18 10:20:35<br>139.19.117.129\/32:22 2\/3 2025\/01\/18 10:26:38<br>12.200.139.134\/32:22 1\/3 2025\/01\/18 09:45:31<br>81.234.121.57\/32:22 1\/3 2025\/01\/18 09:57:30<br>92.255.85.189\/32:22 OK 3\/3 2025\/01\/18 09:58:27<br>211.178.165.251\/32:22 1\/3 2025\/01\/18 10:16:07<br>95.174.68.12\/32:22 1\/3 2025\/01\/18 10:25:23<br>58.107.253.108\/32:22 1\/3 2025\/01\/18 09:40:56<br>73.174.242.5\/32:22 1\/3 2025\/01\/18 09:44:11<br>122.143.115.18\/32:22 1\/3 2025\/01\/18 10:17:54<br>59.94.35.242\/32:22 1\/3 2025\/01\/18 10:22:34<br>109.96.28.150\/32:22 1\/3 2025\/01\/18 10:31:47<\/p>\n","protected":false},"excerpt":{"rendered":"<p>ipfw\u3068blacklist\u3092\u306f\u3058\u3081\u307e\u3057\u305f\u3002\u5148\u65e5\u306ecron\u30e1\u30fc\u30eb\u306e\u6295\u7a3f\u3068\u3044\u3044\u3001wordpress\u3078\u306eamazonaws\u306e\u30ed\u30b0\u30a4\u30f3\u306e\u8a66\u307f\u3068\u3044\u3044\u3001\u5b89\u5fc3\u3067\u304d\u306a\u3044\u306e\u3067\u3002\u30eb\u30fc\u30bf\u30fc\u306722\u756a\u3068\u9589\u3058\u3066\u3082\u3044\u3044\u306e\u3067\u3059\u304c\u3001\u5916\u304b\u3089\u30e1\u30f3\u30c6\u3067\u304d\u306a\u304f&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"image","meta":{"footnotes":""},"categories":[4],"tags":[816,819,815,818,821,817,820],"class_list":["post-8968","post","type-post","status-publish","format-image","hentry","category-bsd","tag-blacklist","tag-blacklistctl","tag-ipfw","tag-list","tag-port22","tag-show","tag-table","post_format-post-format-image"],"_links":{"self":[{"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=\/wp\/v2\/posts\/8968","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=8968"}],"version-history":[{"count":2,"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=\/wp\/v2\/posts\/8968\/revisions"}],"predecessor-version":[{"id":8970,"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=\/wp\/v2\/posts\/8968\/revisions\/8970"}],"wp:attachment":[{"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=8968"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=8968"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jg7sfr.mydns.jp\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=8968"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}