apache server要如何限制某些特定的存取內容



贊助商連結


emilee
2005-06-25, 08:15 PM
apache的log檔都是一些連外的網址
連進來的ip也都會變,都是"GET http://xxxx.xxx.xxx
我的網頁並沒有這邊些東西,我如何禁止這些存取連線的要求
其中一段如下..!
請幫我看一下,要如何解決啊..?


=====================
218.56.175.30 - - [24/Jun/2005:07:59:51 +0800] "GET http://ad.doubleclick.net/adi/teamb...47925999065515? HTTP/1.1" 200 358

200.210.146.176 - - [24/Jun/2005:07:57:57 +0800] "GET http://gb.fotolog.net/?t=royK4n5GUE...dWHupaIf8aQYy8= HTTP/1.0" 502 797

61.222.167.170 - - [24/Jun/2005:08:00:01 +0800] "GET /non-cgi/images/leovbb3/newreply.gif HTTP/1.1" 304 -

66.191.212.116 - - [24/Jun/2005:07:59:47 +0800] "GET http://e8.member.ukl.yahoo.com/conf...passwd=marlboro HTTP/1.0" 999 3647

61.222.167.170 - - [24/Jun/2005:08:00:02 +0800] "GET /non-cgi/images/leovbb3/newpoll.gif HTTP/1.1" 304 -

72.36.176.242 - - [24/Jun/2005:07:59:55 +0800] "CONNECT 64.12.200.89:443 HTTP/1.0" 200 -

209.123.8.77 - - [24/Jun/2005:07:59:56 +0800] "POST http://tgp.x3scripts.com/tgp/submit.x3ml HTTP/1.1" 206 743

83.170.199.119 - - [24/Jun/2005:07:59:58 +0800] "HEAD http://66.230.134.171/member/index.html HTTP/1.0" 401 -

81.215.195.34 - - [24/Jun/2005:07:59:41 +0800] "GET http://www.dodger.co.uk/members/main.html HTTP/1.0" 502 232

213.39.204.238 - - [24/Jun/2005:07:59:58 +0800] "GET http://www.anabell4you.com/members/...hp?section_id=7 HTTP/1.0" 401 473

66.197.196.133 - - [24/Jun/2005:07:59:53 +0800] "CONNECT login.icq.com:443 HTTP/1.0" 200 -

64.239.74.80 - - [24/Jun/2005:08:00:01 +0800] "GET http://www.wildteens-only.com/cgi-b..._3.0.2/code.cgi HTTP/1.1" 206 1964

61.222.167.170 - - [24/Jun/2005:08:00:03 +0800] "GET /non-cgi/images/prethread.gif HTTP/1.1" 304 -

220.146.128.108 - - [24/Jun/2005:08:00:01 +0800] "GET http://apocalypsis.free.fr/diplomat...re%20allechante HTTP/1.1" 200 879

61.222.167.170 - - [24/Jun/2005:08:00:03 +0800] "GET /non-cgi/images/flatview.gif HTTP/1.1" 304 -

61.129.47.111 - - [24/Jun/2005:07:59:58 +0800] "GET http://ad.trafficmp.com/tmpad/banne...p.asp?poID=elv7 HTTP/1.0" 200 5336

24.59.251.37 - - [24/Jun/2005:07:59:43 +0800] "GET http://l10.login.scd.yahoo.com/conf...12&passwd=hello HTTP/1.0" 502 232

83.170.199.119 - - [24/Jun/2005:07:59:58 +0800] "HEAD http://66.230.134.171/member/index.html HTTP/1.0" 401 -

81.241.100.126 - - [24/Jun/2005:07:59:58 +0800] "GET http://216.109.126.252/config/login...x&passwd=hunter HTTP/1.0" 999 4362

68.235.247.219 - - [24/Jun/2005:08:00:03 +0800] "GET http://w3.edit.tpe.yahoo.com/config...9&passwd=milton HTTP/1.0" 502 864

222.226.74.166 - - [24/Jun/2005:07:59:59 +0800] "GET http://invis.free.anonymizer.com/ht...YHVCI+8OI+60OXD HTTP/1.1" 200 43

82.165.43.140 - - [24/Jun/2005:07:59:51 +0800] "CONNECT login.icq.com:443 HTTP/1.0" 200 -

66.36.243.179 - - [24/Jun/2005:07:59:59 +0800] "GET http://www.ourcpsite.com/wwwboard/messages/1997.html HTTP/1.1" 404 650

24.210.34.195 - - [24/Jun/2005:08:00:02 +0800] "GET http://www.hot-lolitas.net/members/de/ HTTP/1.0" 401 469

61.222.167.170 - - [24/Jun/2005:08:00:04 +0800] "GET /non-cgi/images/nextthread.gif HTTP/1.1" 304 -

61.114.32.0 - - [24/Jun/2005:07:59:56 +0800] "GET http://www.t-b-g.com/ HTTP/1.0" 200 17238

83.236.2.136 - - [24/Jun/2005:07:59:54 +0800] "CONNECT login.icq.com:443 HTTP/1.0" 200 -

204.13.169.13 - - [24/Jun/2005:07:59:55 +0800] "POST http://www.carcarecity.com/cgi-bin/wwwboard.pl HTTP/1.1" 404 213

61.222.167.170 - - [24/Jun/2005:08:00:04 +0800] "GET /non-cgi/images/none.gif HTTP/1.1" 304 -

221.195.24.213 - - [24/Jun/2005:07:59:59 +0800] "GET http://gjc00.vip.533.net:80/ip.cgi HTTP/1.1" 200 2109

67.8.249.49 - - [24/Jun/2005:07:59:58 +0800] "GET http://login.yahoo.com/ HTTP/1.0" 200 20090

83.236.2.136 - - [24/Jun/2005:07:59:59 +0800] "CONNECT login.icq.com:443 HTTP/1.0" 200 -

69.81.102.112 - - [24/Jun/2005:08:00:02 +0800] "GET http://www21.big.or.jp/~mana_/prxjdg.cgi HTTP/1.0" 200 1761

210.178.182.108 - - [24/Jun/2005:07:59:58 +0800] "CONNECT login.icq.com:443 HTTP/1.0" 200 -

220.132.37.97 - - [24/Jun/2005:07:59:36 +0800] "GET http://203.187.1.180/ugyuinhiro/ppm...10-20041201.rar HTTP/1.1" 206 20480

66.197.196.133 - - [24/Jun/2005:08:00:00 +0800] "CONNECT login.icq.com:443 HTTP/1.0" 200 -

81.208.74.183 - - [24/Jun/2005:08:00:03 +0800] "HEAD http://www.sissymaidmovies.com/MEMBER/DAISY/daisy.htm? HTTP/1.0" 401 -

207.234.208.161 - - [24/Jun/2005:07:59:22 +0800] "GET http://www.tgpseeker.com/szone/submit.html HTTP/1.1" 206 61479

210.98.224.190 - - [24/Jun/2005:08:00:02 +0800] "GET http://69.41.164.232/scripts/main_c.asp HTTP/1.1" 500 4070

贊助商連結


TAIWAN
2005-06-26, 12:45 AM
看了 LOG 只能說 :|||:

請說明一下 APACHE 去掛什麼O.S. 才會有辦法正確研判~


如果單純從 LOG 可以看出這台 APACHE 是掛在WINDOWS 下~

而且看來站長可是 性 情中人~沒事就拿 SERVER 那台電腦上網~真是優~ :|||:

有具話叫做 暴力是解決問題的最快途徑 ~ 看來重灌是最佳選擇~

國際有個標準組織 叫 I.S.O. 就是常見的所謂 I.S.O. 14001
台灣有個中央標準局 叫 C.N.S.

結果有些人把 英國國家標準 B.S.拿來台灣耍寶~

特別是那個叫 B.S. 7799 的資訊安全標準~

看來站長是違反了 B.S.7799 標準~拿 SERVER 來上網站~

英國東西如果比較好用~那為何不進口英國牛肉~

emilee
2005-06-26, 03:07 AM
沒有啊..!!!
我沒有用server那台電腦上網,那台主機平常連鍵盤跟滑鼠都是不接的..!
就算是server本身中毒的話,他要連出去的記錄..怎麼會在apache的log檔..???
我可以在apache中把CONNECT和POST的都檔掉,剩GET的存取模式嗎..?

TAIWAN
2005-06-26, 09:01 AM
請說明一下 APACHE SERVER 去掛在什麼 O.S. 上~相關設備與網路結構~還有 SERVER 服務內容~例如是靜態或是動態網站~像這種用文字要發問的問題~越仔細說出~越容易有辦法正確研判~

現在看來只能知道站長是用 APACHE 當 SERVER 外加一堆 LOG 和自認是中毒與鍵盤跟滑鼠都是不接,然後沒用那台電腦上網~ :|||: 外加想問可不可以將CONNECT和POST的都擋掉~ :eek:

很優~鍵盤跟滑鼠都不接這種觀念 :|||:


如果不知怎麼問~不然這種方式是最簡單的~ :D
http://www.pczone.com.tw/showthread.php?t=141984


看來是又違反本會會長的規定了 ~ 這標要酸了~