http://www.turnkeylinux.org
下载Ubuntu Server的ISO文件
LAMP安装:(Linux,Apache,Mysql,Python/PHP)
· 网络选桥接
· 安装ssh
· 用Putty连接IP,安装lamp
https://www.metasploit.com/
http://m0n0.ch/wall/downloads.php
metasploit资源占用的非常的少
m0n0安装命令
m0n0wall console setup
Interfaces: assign network ports //接口:分配网络端口
Set up LAN IP address //建立局域网IP地址
Reset web GUI password //web GUI重置密码
Rest to factory defaults //其他工厂默认值
Reboot system //重新启动系统
Ping host //Ping主机
Install on Hard Drive //安装在硬盘上
Enter a number: 7
do you want to proceed? (y/n) y
取消硬盘m0n0wall_1.8.1.iso
重启
m0n0wall console setup
Interfaces: assign network ports //接口:分配网络端口
Set up LAN IP address //建立局域网IP地址
Reset web GUI password //web GUI重置密码
Rest to factory defaults //其他工厂默认值
Reboot system //重新启动系统
Ping host //Ping主机
Install on Hard Drive //安装在硬盘上
Enter a number: 1
do you want to set up VLANs nows? (y/n)
Enter the parent interface name for the new VLAN (or nothing if finished):em0
Enter the VLAN tag (1-4091): 10
Enter the parent interface name for the new VLAN (or nothing if finished):em1
Enter the VLAN tag (1-4091): 11
Enter the parent interface name for the new VLAN (or nothing if finished):em2
Enter the VLAN tag (1-4091): 12
回车
Enter the LAN interface name or ‘a’ for auto-detection: em1
Enter the WAN interface name or ‘a’ for auto-detection: em0
Enter the Optional 1 interface name or ‘a’ for auto-detection for nothing if finshed): em2
回车
The interface will be assigned as follows:
LAN -> em1
WAN -> em0
OPT1 -> em2
The firewall will reboot after saving the changes.
do you want to proceed? (y/n) y
The firewall is rebooting now.
重启
m0n0wall console setup
Interfaces: assign network ports //接口:分配网络端口
Set up LAN IP address //建立局域网IP地址
Reset web GUI password //web GUI重置密码
Rest to factory defaults //其他工厂默认值
Reboot system //重新启动系统
Ping host //Ping主机
Install on Hard Drive //安装在硬盘上
Enter a number: 2
Enter the new LAN IP address: 10.1.1.10
Subnet masks are entered as bit counts (as in CIDR notation) in m0n0wall.
e.g. 255.255.255.0= 24
255.255.0.0 = 16
255.0.0.0 = 8
Enter the new LAN subnet bit count: 24
DO you want to enable the DHCP server on LAN (y/n) y
Enter the start address of the clinet address range: 10.1.1.20
Enter the end address of the client address range: 10.1.1.100
m0n0wall console setup
Interfaces: assign network ports //接口:分配网络端口
Set up LAN IP address //建立局域网IP地址
Reset web GUI password //web GUI重置密码
Rest to factory defaults //其他工厂默认值
Reboot system //重新启动系统
Ping host //Ping主机
Install on Hard Drive //安装在硬盘上
Enter a number: 3
do you wnat to proceed? (y/n) y
Description OPT1
IP address 10.1.2.10/24
设置防火墙规则
pules------> “+”------>
Protocol: any
Source: LAN subnet
保存
WAN------>勾选"Block private networks"
{print $3}
| sort -u