{"id":403,"date":"2017-01-29T00:44:57","date_gmt":"2017-01-28T15:44:57","guid":{"rendered":"https:\/\/blog.chanha.me\/?p=403"},"modified":"2017-01-31T22:48:01","modified_gmt":"2017-01-31T13:48:01","slug":"evasive%eb%a5%bc-%ed%86%b5%ed%95%9c-ddos-%eb%b0%a9%ec%96%b4%ed%95%98%ea%b8%b0","status":"publish","type":"post","link":"https:\/\/blog.chanha.kr\/?p=403","title":{"rendered":"evasive\ub97c \ud1b5\ud55c DDOS \ubc29\uc5b4\ud558\uae30"},"content":{"rendered":"<p>DDOS\uacf5\uaca9\uc73c\ub85c \uc778\ud55c \uc11c\ubc84\ub2e4\uc6b4\uc744 \ub9c9\uae30 \uc704\ud574 \uc5f0\uc18d\uc801\uc778 \uc811\uc18d\uc774 \ubc1c\uc0dd\ud558\uba74<\/p>\n<p>\ud2b9\uc815\uc2dc\uac04\ub3d9\uc548 \uc811\uc18d\uc744 \ucc28\ub2e8\ud574\uc8fc\ub294 Mod\ub97c \uc0ac\uc6a9\ud574 \ubc29\uc5b4\ud558\ub294 \ubc29\ubc95\uc744 \uc54c\uc544\ubcf4\uc790<\/p>\n<blockquote><p>\uc5f0\uc18d\uc801\uc778 \uc811\uc18d\uc774 \ubc1c\uc0dd\ud558\uba74 403\ud398\uc774\uc9c0\ub97c \ud45c\uc2dc\ud55c\ub2e4.<\/p><\/blockquote>\n<p>\uc6b0\uc120\uc801\uc73c\ub85c MOD\uc0ac\uc6a9\uc744 \uc704\ud574<\/p>\n<pre class=\"code\">sudo apt-get install libapache2-mod-evasive<\/pre>\n<p>\uba85\ub839\uc5b4\ub97c \ud1b5\ud574 MOD\ub97c \uc124\uce58\ud574\uc900\ub2e4.<\/p>\n<pre class=\"code\">sudo mkdir \/var\/log\/evasive<\/pre>\n<p>\uadf8 \ud6c4 MOD\ub85c\uadf8\ub97c \uc800\uc7a5\ud560 \ub514\ub809\ud1a0\ub9ac\ub97c \uc0dd\uc131\ud55c\ub2e4.<\/p>\n<pre class=\"code\">sudo chown www-data:www-data \/var\/log\/evasive\/<\/pre>\n<p>MOD\ub85c\uadf8 \ub514\ub809\ud1a0\ub9ac\uc758 \uc18c\uc720\uc790\uc640 \uc18c\uc720\uadf8\ub8f9\uc744 \ubcc0\uacbd\ud574\uc900\ub2e4.<\/p>\n<pre class=\"code\">sudo vim \/etc\/apache2\/mods-available\/evasive.conf<\/pre>\n<p>\uadf8 \ud6c4 evasive \uc124\uc815\ud30c\uc77c\uc744 \uc5f4\uc5b4<\/p>\n<pre class=\"lang:default decode:true code  \">&lt;ifmodule mod_evasive20.c&gt;\r\n  DOSHashTableSize 3097\r\n  DOSPageCount  50\r\n  DOSSiteCount  50\r\n  DOSPageInterval 1\r\n  DOSSiteInterval  1\r\n  DOSBlockingPeriod  30\r\n  DOSLogDir   \/var\/log\/evasive\r\n  DOSEmailNotify  &lt;\uc774\uba54\uc77c\uc8fc\uc18c&gt;\r\n  DOSWhitelist   127.0.0.1\r\n&lt;\/ifmodule&gt;<\/pre>\n<p>\uc704\uc640 \uac19\uc774 \uc218\uc815\ud574\uc900\ub2e4.<\/p>\n<blockquote><p>DOSEmailNotyify \uc635\uc158\uc774 \uc81c\ubaa9\uacfc \ubc1c\uc1a1\uc790\uac00 \uc81c\ub300\ub85c \uc801\uc6a9\ub418\uc9c0\uc54a\uae30\ub54c\ubb38\uc5d0<\/p>\n<pre class=\"lang:apache decode:true \">DOSSystemCommand   \"echo 'Evasive HTTP Blacklisted %s more info here: www.projecthoneypot.org\/ip_%s' | mail -a 'From: Evasive' -s 'Blocked IP by Evasive' &lt;\uc774\uba54\uc77c\uc8fc\uc18c&gt;\"\r\n<\/pre>\n<p>\uc635\uc158\uc744 \ud1b5\ud574 \uc124\uc815\ud558\ub294 \uac83\uc744 \ucd94\ucc9c\ud569\ub2c8\ub2e4.<\/p>\n<p>\uac01 \uc124\uc815\uc5d0 \ub300\ud55c \uc815\ubcf4\ub294 <a href=\"http:\/\/blog.pages.kr\/83\" target=\"_blank\">\uc774 \uacf3<\/a>\uc744 \ucc38\uace0\ud558\uae30 \ubc14\ub780\ub2e4.<\/p><\/blockquote>\n<p>\uadf8 \ud6c4,<\/p>\n<pre class=\"code\">sudo a2enmod evasive\r\nsudo \/etc\/init.d\/apache2 restart<\/pre>\n<p>\uba85\ub839\uc5b4\ub85c MOD\ub97c \ud65c\uc131\ud654\uc2dc\ud0a4\uace0 \uc544\ud30c\uce58\ub97c \uc7ac\uc2dc\uc791\uc2dc\ucf1c\uc900\ub2e4.<br \/>\n<div class='ez_cc_license_block'><a rel=\"license\" href=\"http:\/\/creativecommons.org\/licenses\/by-nc-sa\/4.0\/\"><img decoding=\"async\" alt=\"Creative Commons License\" style=\"border-width:0\" src=\"http:\/\/i.creativecommons.org\/l\/by-nc-sa\/4.0\/88x31.png\"\/><\/a><br\/>This work is licensed under a <a rel=\"license\" href=\"http:\/\/creativecommons.org\/licenses\/by-nc-sa\/4.0\/\">Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International License<\/a>.<\/div><\/p>\n","protected":false},"excerpt":{"rendered":"<p>DDOS\uacf5\uaca9\uc73c\ub85c \uc778\ud55c \uc11c\ubc84\ub2e4\uc6b4\uc744 \ub9c9\uae30 \uc704\ud574 \uc5f0\uc18d\uc801\uc778 \uc811\uc18d\uc774 \ubc1c\uc0dd\ud558\uba74 \ud2b9\uc815\uc2dc\uac04\ub3d9\uc548 \uc811\uc18d\uc744 \ucc28\ub2e8\ud574\uc8fc\ub294 Mod\ub97c \uc0ac\uc6a9\ud574 \ubc29\uc5b4\ud558\ub294 \ubc29\ubc95\uc744 \uc54c\uc544\ubcf4\uc790 \uc5f0\uc18d\uc801\uc778 \uc811\uc18d\uc774 \ubc1c\uc0dd\ud558\uba74 403\ud398\uc774\uc9c0\ub97c \ud45c\uc2dc\ud55c\ub2e4. \uc6b0\uc120\uc801\uc73c\ub85c MOD\uc0ac\uc6a9\uc744 \uc704\ud574 sudo apt-get install libapache2-mod-evasive \uba85\ub839\uc5b4\ub97c \ud1b5\ud574 MOD\ub97c \uc124\uce58\ud574\uc900\ub2e4. sudo mkdir \/var\/log\/evasive \uadf8 \ud6c4 MOD\ub85c\uadf8\ub97c \uc800\uc7a5\ud560 \ub514\ub809\ud1a0\ub9ac\ub97c \uc0dd\uc131\ud55c\ub2e4. sudo chown www-data:www-data \/var\/log\/evasive\/ MOD\ub85c\uadf8 \ub514\ub809\ud1a0\ub9ac\uc758 \uc18c\uc720\uc790\uc640 \uc18c\uc720\uadf8\ub8f9\uc744 \ubcc0\uacbd\ud574\uc900\ub2e4. sudo vim \/etc\/apache2\/mods-available\/evasive.conf \uadf8 \ud6c4 evasive \uc124\uc815\ud30c\uc77c\uc744 \uc5f4\uc5b4 &lt;ifmodule mod_evasive20.c&gt; [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[],"class_list":["post-403","post","type-post","status-publish","format-standard","hentry","category-nas","clearfix"],"_links":{"self":[{"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=\/wp\/v2\/posts\/403","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=403"}],"version-history":[{"count":10,"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=\/wp\/v2\/posts\/403\/revisions"}],"predecessor-version":[{"id":440,"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=\/wp\/v2\/posts\/403\/revisions\/440"}],"wp:attachment":[{"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=403"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=403"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.chanha.kr\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=403"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}