当前位置:网站首页>16. File transfer protocol, vsftpd service
16. File transfer protocol, vsftpd service
2020-11-07 22:18:00 【Sword emperor Xiao Jian】
SELinux Security subsystem
- Three models :
- enforcing: Force security policy mode on , Illegal requests for services will be blocked .
- permissive: In case of unauthorized access to the service , Just give a warning and not force intercept .
- disabled: Don't warn or intercept ultra vires .
- getenforce- Get the current SELinux The mode of operation of the service
- setenforce0 / 1 - temporary modify SELinux Current operating mode (0 To disable ,1 To enable )
- semanage<options>__<file>- management SELinux The strategy of
- [-l] - Inquire about ;
- [-a] - add to ;
- [-m] - modify ;
- [-d] - Delete
- restorecon- Will set up SELinux The security context takes effect immediately
File transfer protocol (FTP)
- Package: vsftpd, ftp
- Working mode
- Active mode :FTP The server initiates the connection request to the client
- Passive mode :FTP The server waits for the client to initiate a connection request (FTP The default working mode of )
- systemctl enable_<serviceName>_ Application configuration
vsftpd Working mode
- Anonymous open mode ( unsafe )【 Anonymous users :anonymous】
- Local user mode
- Virtual user mode ( Security , But the configuration is complicated , Want to use PAM)
- -6 Use IPv6 agreement
Simple file transfer protocol (TFTP)
- Package: tftp_server, tftp
TFTP Service is to use xinetd Service program to manage .xinetd Services can be used to manage a variety of lightweight network services , And it has powerful log function . Simply speaking , In the installation TFTP After the package , Still need to be in xinetd Open it in the service program , Disable by default (disable) Parameter is modified as no
TFTP The command function of is not as good as FTP Powerful service , You can't even traverse directories , It's also less secure than FTP service . and , because TFTP When transferring files, we use UDP agreement , The port number occupied is 69, So the file transfer process is not like FTP The agreement is so reliable . however , because TFTP There is no need for client authentication , It also reduces unnecessary system and network bandwidth consumption , So the transmission is trivial (trivial) Small documents , More efficient .
版权声明
本文为[Sword emperor Xiao Jian]所创,转载请带上原文链接,感谢
边栏推荐
- Web Security (3) -- CSRF attack
- Go sending pin and email
- There's not much time left for Kwai Chung.
- What kind of technical ability should a programmer who has worked for 1-3 years? How to improve?
- Judging whether paths intersect or not by leetcode
- Adobe Lightroom /Lr 2021软件安装包(附安装教程)
- On the concurrency of update operation
- Get tree menu list
- Ladongo open source full platform penetration scanner framework
- supervisor进程管理安装使用
猜你喜欢
On the stock trading of leetcode
WPF personal summary on drawing
Got timeout reading communication packets解决方法
京淘项目day09
On the coverage technology and best practice of go code
Animation techniques and details you may not know
洞察——风格注意力网络(SANet)在任意风格迁移中的应用
Delphi10's rest.json And system.json Step on the pit
Hand tearing algorithm - handwritten singleton mode
Three steps, one pit, five steps and one thunder, how to lead the technical team under the rapid growth?
随机推荐
sed之查找替换
ngnix集群高并发
These core technology of object-oriented, after you master it, you can have a good interview
Web安全(三)---CSRF攻击
看一遍就理解,图解单链表反转
[solution] distributed timing task solution
Static + code block + polymorphism + exception
Cpp(一) 安装CMake
Web Security (4) -- XSS attack
Do not understand the underlying principle of database index? That's because you don't have a B tree in your heart
计组-总线通信控制之异步串行通信的数据传输
Face recognition: attack types and anti spoofing techniques
Web安全(二)---跨域资源共享
面部识别:攻击类型和反欺骗技术
Data transmission of asynchronous serial communication controlled by group bus communication
DOM节点操作
爆一个VS2015 Update1更新带来的编译BUG【已有解决方案】
工作1-3年的程序员,应该具备怎么样的技术能力?该如何提升?
Using subprocess residue in supervisor and python multiprocessing
Lay UI left tree Dtree right list table