<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Daily logs &#187; Security</title>
	<atom:link href="http://blog.pnyet.web.id/tag/security/feed" rel="self" type="application/rss+xml" />
	<link>http://blog.pnyet.web.id</link>
	<description>A Nobody trying to become a Somebody</description>
	<lastBuildDate>Wed, 25 Jan 2012 15:26:10 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Joomla &#8211; double content is it a bug?</title>
		<link>http://blog.pnyet.web.id/2011/07/17/joomla-double-content-bug.html</link>
		<comments>http://blog.pnyet.web.id/2011/07/17/joomla-double-content-bug.html#comments</comments>
		<pubDate>Sun, 17 Jul 2011 11:02:39 +0000</pubDate>
		<dc:creator>David</dc:creator>
				<category><![CDATA[Gado-gado]]></category>
		<category><![CDATA[Bug]]></category>
		<category><![CDATA[Joomla]]></category>
		<category><![CDATA[MySQL]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Solved]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[website]]></category>

		<guid isPermaLink="false">http://blog.pnyet.web.id/?p=637</guid>
		<description><![CDATA[Since few days ago, I got a report from my friend that his websites isn&#8217;t normal. After I checked the website, I&#8217;m found double / multiple contents in home page. Wow, is it a Joomla Bug? Yep, finally I got an answer to this problem, it&#8217;s a bug in Joomla MySQL query and have been [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fblog.pnyet.web.id%2F2011%2F07%2F17%2Fjoomla-double-content-bug.html"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fblog.pnyet.web.id%2F2011%2F07%2F17%2Fjoomla-double-content-bug.html&amp;source=pnyet&amp;style=normal&amp;service=bit.ly&amp;hashtags=Bug,Joomla,MySQL,Security,Solved,Tips,website&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p><a href="http://blog.pnyet.web.id/wp-content/uploads/2011/07/bug.png"><img class="alignleft size-full wp-image-638" title="bug" src="http://blog.pnyet.web.id/wp-content/uploads/2011/07/bug.png" alt="" width="231" height="256" /></a>Since few days ago, I got a report from my friend that his websites isn&#8217;t normal. After I checked the website, I&#8217;m found double / multiple contents in home page. Wow, is it a Joomla Bug?<span id="more-637"></span></p>
<p>Yep, finally I got an answer to this problem, it&#8217;s a bug in Joomla MySQL query and have been submitted to bugtracker. Just two way to solve this problem, let&#8217;s do that:</p>
<p>1. Go to your web directory, usually for shared hosting the location will be in public_html.<br />
2. Find directory components/com_content/models/articles.php and change some parameters like this:</p>
<p>$query-&gt;join(&#8216;LEFT&#8217;,'#__contact_details AS contact on contact.user_id = a.created_by&#8217;);</p>
<p>to</p>
<p>$query-&gt;join(&#8216;LEFT&#8217;,'#__contact_details AS contact on contact.id = a.created_by&#8217;);</p>
<p>Now your Joomla website should be normal again, have a great day!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pnyet.web.id/2011/07/17/joomla-double-content-bug.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Getting brute force attacks in email server</title>
		<link>http://blog.pnyet.web.id/2010/05/25/brute-force-attacks-email-server.html</link>
		<comments>http://blog.pnyet.web.id/2010/05/25/brute-force-attacks-email-server.html#comments</comments>
		<pubDate>Tue, 25 May 2010 03:14:21 +0000</pubDate>
		<dc:creator>David</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[bruteforce]]></category>
		<category><![CDATA[iptables]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[Zimbra]]></category>

		<guid isPermaLink="false">http://blog.pnyet.web.id/?p=312</guid>
		<description><![CDATA[Pagi yang indah tampaknya ternodai oleh kejadian yang agaknya mengganggu kinerja email server. Pagi tenang saya terusik lantaran ada user yang berteriak &#8220;Pak&#8230;, kenapa email server lambat sekali&#8221;, setelah saya pastikan untuk login ke server terasa sangat lambat. Setelah check koneksi dan resource system yang masih wajar saya kemudian melihat file audit.log dimana file audit.log [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fblog.pnyet.web.id%2F2010%2F05%2F25%2Fbrute-force-attacks-email-server.html"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fblog.pnyet.web.id%2F2010%2F05%2F25%2Fbrute-force-attacks-email-server.html&amp;source=pnyet&amp;style=normal&amp;service=bit.ly&amp;hashtags=bruteforce,iptables,Security,Tips,Zimbra&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p style="text-align: left;"><a href="http://blog.pnyet.web.id/wp-content/uploads/2010/05/hacker.gif"><img class="alignleft size-full wp-image-316" title="hacker" src="http://blog.pnyet.web.id/wp-content/uploads/2010/05/hacker.gif" alt="" width="298" height="314" /></a>Pagi yang indah tampaknya ternodai oleh kejadian yang agaknya mengganggu kinerja email server. Pagi tenang saya terusik lantaran ada user yang berteriak &#8220;Pak&#8230;, kenapa email server lambat sekali&#8221;, setelah saya pastikan untuk login ke server terasa sangat lambat. Setelah check koneksi dan resource system yang masih wajar saya kemudian melihat file audit.log dimana file audit.log ini merupakan file yang mencatat aktivitas login oleh user. Dan terang saja server menjadi lambat karena ada request login yang cukup banyak, hasil dari audit.log:</p>
<blockquote><p>2010-05-24 09:26:28,374 WARN  [Pop3Server-1187] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for admin, invalid password;<br />
2010-05-24 09:26:36,595 WARN  [Pop3Server-1196] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for postmaster, invalid password;<br />
2010-05-24 09:26:38,997 WARN  [Pop3Server-1198] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for postmaster, invalid password;<br />
2010-05-24 09:26:42,487 WARN  [Pop3Server-1201] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for postmaster, invalid password;<br />
2010-05-24 09:27:33,481 INFO  [Pop3Server-1253] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; error=account lockout due to too many failed logins;<br />
2010-05-24 09:27:33,525 WARN  [Pop3Server-1253] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for admin, invalid password;<br />
2010-05-24 09:27:34,712 WARN  [Pop3Server-1254] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for postmaster, account lockout;<br />
2010-05-24 09:28:18,536 WARN  [Pop3Server-1296] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for admin, account lockout;<br />
2010-05-24 09:28:27,794 WARN  [Pop3Server-1305] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for postmaster, account lockout;<br />
2010-05-24 09:29:00,790 WARN  [Pop3Server-1338] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for admin, account lockout;<br />
2010-05-24 09:29:12,795 WARN  [Pop3Server-1349] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for admin, account lockout;<br />
2010-05-24 09:30:55,621 WARN  [Pop3Server-1451] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for admin, account lockout;<br />
2010-05-24 09:31:51,629 WARN  [Pop3Server-1502] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for postmaster, account lockout;<br />
2010-05-24 09:32:23,616 WARN  [Pop3Server-1532] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for postmaster, account lockout;<br />
2010-05-24 09:32:48,561 INFO  [Pop3Server-1556] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; error=account lockout due to too many failed logins;<br />
2010-05-24 09:32:48,615 WARN  [Pop3Server-1556] [ip=71.249.235.39;] security &#8211; cmd=Auth; account=postmaster@noname.com; protocol=pop3; error=authentication failed for admin, invalid password;</p></blockquote>
<p>Sebenarnya saya telah membatasi maksimum login fail dan ketika melebihi batas username akan di block untuk sementara, namun nampaknya meski di blok si attacker terus menjalankan aksinya (dasar bot). Masalah ini sudah saya posting di milis CentOS.org dan beberapa member ada yang menggunakan failban, sshdfilter, ataupun iptables. Yang palign sederhana dari ketiga cara diatas ada filter menggunakan iptables. Kurang lebihnya seperti ini:</p>
<blockquote><p>iptables -A INPUT -p tcp &#8211;dport 110 -m state &#8211;state NEW -m recent &#8211;set &#8211;name POP<br />
iptables -A INPUT -p tcp &#8211;dport 110 -m state &#8211;state NEW -m recent &#8211;update &#8211;seconds 60 &#8211;hitcount 3 &#8211;rttl &#8211;name POP -j LOG &#8211;log-prefix &#8216;POP3 attack: &#8216;<br />
iptables -A INPUT -p tcp &#8211;dport 110 -m state &#8211;state NEW -m recent &#8211;update &#8211;seconds 60 &#8211;hitcount 3 &#8211;rttl &#8211;name POP -j DROP</p></blockquote>
<p>Hingga saat ini, saya masih menggunakan iptables sebagai aplikasi filtering baik firewall untuk intranet maupun <a href="http://blog.pnyet.web.id/2012/01/23/banyak-situs-yang-terancam-sopa-dan-pipa.html">internet</a>, dan saya pikir iptables cukup reliabel. how to securing email server? how to preventing email server from brute force? Hal yang paling tepat adalah rajin melihat log :)</p>
<p>Referensi:<br />
Milis CentOS.org</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pnyet.web.id/2010/05/25/brute-force-attacks-email-server.html/feed</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Email phising untuk account Windows Live ID</title>
		<link>http://blog.pnyet.web.id/2010/02/24/email-phising-untuk-account-windows-live-id.html</link>
		<comments>http://blog.pnyet.web.id/2010/02/24/email-phising-untuk-account-windows-live-id.html#comments</comments>
		<pubDate>Wed, 24 Feb 2010 09:06:28 +0000</pubDate>
		<dc:creator>David</dc:creator>
				<category><![CDATA[Techno]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[phising]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[SPAM]]></category>

		<guid isPermaLink="false">http://blog.pnyet.web.id/?p=211</guid>
		<description><![CDATA[Bagi sebagian orang, phising seperti ini tidaklah penting untuk diperhatikan,  namun perlu diketahui bahwa phising adalah tindakan yang bisa sangat merugikan apabila data email yang tersimpan adalah email-email penting seperti account bank, account perusahaan, koleksi password, photo bareng selingkuhan dan lain-lain. Apakah sudah terbayang akibat yang dapat terjadi bila informasi pribadi Anda dicuri orang? Phising [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fblog.pnyet.web.id%2F2010%2F02%2F24%2Femail-phising-untuk-account-windows-live-id.html"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fblog.pnyet.web.id%2F2010%2F02%2F24%2Femail-phising-untuk-account-windows-live-id.html&amp;source=pnyet&amp;style=normal&amp;service=bit.ly&amp;hashtags=email,phising,Security,SPAM&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p style="text-align: justify;"><a title="Phising" href="http://blog.pnyet.web.id/2010/02/24/email-phising-untuk-account-windows-live-id.html"><img class="alignleft size-medium wp-image-212" title="phising" src="http://blog.pnyet.web.id/wp-content/uploads/2010/02/phising-281x300.jpg" alt="" width="259" height="249" /></a>Bagi sebagian orang, phising seperti ini tidaklah penting untuk diperhatikan,  namun perlu diketahui bahwa phising adalah tindakan yang bisa sangat merugikan apabila data email yang tersimpan adalah email-email penting seperti account bank, account perusahaan, koleksi password, photo bareng selingkuhan dan lain-lain. Apakah sudah terbayang akibat yang dapat terjadi bila informasi pribadi Anda dicuri orang?</p>
<p style="text-align: justify;">Phising sebenarnya termasuk dalam kategori tindak kejahatan cyber tingkat ringan, namun bahaya yang ditimbulkan bisa sangat fatal sesuai dengan seberapa penting data yang berhasil dicuri oleh pelaku. Email phising, seringkali dibuat semirip dan <em>se-luwes</em> mungkin agar korban dapat terperdaya. Sebagian besar, phising digunakan untuk mencuri account bank, account credit card, account email. Pada umumnya email phising akan dikenali sebagai spam oleh penerima karena beberapa email server akan memberikan flag SPAM atau JUNK bila email dikirimkan ke ratusan user secara bersamaan.</p>
<p style="text-align: justify;"><span id="more-211"></span>Berikut isi email tersebut:</p>
<blockquote><p>Dear Account User,</p>
<p>This Email is from Hotmail/Live Customer Care and we are sending it to every Email User Accounts Owner for safety. We are having congestions due to the anonymous registration of Hotmail/Live accounts so we are shutting down some Hotmail/Live accounts and your account was among those to be deleted.</p>
<p>We also noticed a violation use of your account and if you think you have not violated the Terms and Condition of Hotmail/Live, please verify below with information requested</p>
<p>You will have to confirm your E-mail by filling out your Login Information below after clicking the reply button, or your account will be suspended within 48 hours for security reasons.</p>
<p>* Username: &#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;<br />
* Password: &#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;<br />
* Date of Birth: &#8230;&#8230;&#8230;&#8230;&#8230;&#8230;.<br />
* Country Or Territory: &#8230;&#8230;&#8230;&#8230;</p>
<p>After following the instructions in the sheet, your account will not be interrupted and will continue as normal. Thanks for your attention to this request. We apologize for any inconveniences.</p>
<p>Warning: Account owner that refuses to update his/her account after two weeks of receiving this warning will lose his or her account permanently.</p>
<p>Sincerely,</p>
<p>The Windows Live Hotmail/Live Team.</p></blockquote>
<p style="text-align: justify;">Beberapa hal yang agak janggal dari email diatas adalah respon mail server saya yang memberikan flag sebagai SPAM, setelah ditelusuri ternyata sender juga bukan berasal dari microsoft, selain itu email ini juga berisi ancaman. Adapun microsoft tidak pernah meminta username dan password dalam bentuk letter seperti email diatas, maintenance username dan password selalu dilakukan di halaman windows live itu sendiri.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pnyet.web.id/2010/02/24/email-phising-untuk-account-windows-live-id.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Optimasi Kernel Linux dengan Systcl.conf</title>
		<link>http://blog.pnyet.web.id/2010/02/11/optimasi-kernel-linux-dengan-systcl-conf.html</link>
		<comments>http://blog.pnyet.web.id/2010/02/11/optimasi-kernel-linux-dengan-systcl-conf.html#comments</comments>
		<pubDate>Thu, 11 Feb 2010 04:46:54 +0000</pubDate>
		<dc:creator>David</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[centos]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Kernel]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Spoofing]]></category>

		<guid isPermaLink="false">http://blog.pnyet.web.id/?p=87</guid>
		<description><![CDATA[Sudah lama saya menuliskan optimasi kernel Linux dengan konfigurasi systcl.conf, tapi berhubung arsip di main blog saya http://pnyet.web.id tidak terekam search engine dengan baik maka saya menuliskan ulang disini. Konfigurasi sysctl.conf ini bertujuan untuk performance tunning, dan security tunning di sistem operasi Linux. Secara spesifik, konfigurasi ini saya gunakan di CentOS namun konfigurasi bukan tidak [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fblog.pnyet.web.id%2F2010%2F02%2F11%2Foptimasi-kernel-linux-dengan-systcl-conf.html"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fblog.pnyet.web.id%2F2010%2F02%2F11%2Foptimasi-kernel-linux-dengan-systcl-conf.html&amp;source=pnyet&amp;style=normal&amp;service=bit.ly&amp;hashtags=centos,DOS,Kernel,Linux,Security,Spoofing&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p style="text-align: justify;"><img style="float: left;" title="CentOS" src="http://blog.pnyet.web.id/wp-content/uploads/2010/02/c35.png" alt="CentOS" width="316" height="237" />Sudah lama saya menuliskan optimasi kernel <a href="http://blog.pnyet.web.id/2011/08/18/setting-time-on-linux.html">Linux</a> dengan konfigurasi systcl.conf, tapi berhubung arsip di main blog saya http://pnyet.web.id tidak terekam search engine dengan baik maka saya menuliskan ulang disini. Konfigurasi sysctl.conf ini bertujuan untuk performance tunning, dan security tunning di sistem operasi <a href="http://blog.pnyet.web.id/2011/08/18/setting-time-on-linux.html">Linux</a>. Secara spesifik, konfigurasi ini saya gunakan di CentOS namun konfigurasi bukan tidak mungkin untuk digunakan di GNU/<a href="http://blog.pnyet.web.id/2011/08/18/setting-time-on-linux.html">Linux</a> varian lainnya.<span id="more-87"></span>Dalam kaitannya dengan keamanan maka konfigurasi dibawah ini dapat menghindarkan server dari serangan DOS maupun Spoofing. Sebagai catatan, dalam konfigurasi ini saya menggunakan eth0 sebagai primary networking interface.</p>
<blockquote>
<div># Controls IP packet forwarding<br />
 net.ipv4.ip_forward = 0</p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p># Do not accept source routing<br />
 net.ipv4.conf.all.accept_source_route = 0<br />
 net.ipv4.conf.lo.accept_source_route = 0<br />
 net.ipv4.conf.eth0.accept_source_route = 0<br />
 net.ipv4.conf.default.accept_source_route = 0</p>
<p># Enable IP spoofing protection, turn on source route verification<br />
 net.ipv4.conf.all.rp_filter = 1<br />
 net.ipv4.conf.lo.rp_filter = 1<br />
 net.ipv4.conf.eth0.rp_filter = 1<br />
 net.ipv4.conf.default.rp_filter = 1</p>
<p># Disable ICMP Redirect Acceptance<br />
 net.ipv4.conf.all.accept_redirects = 0<br />
 net.ipv4.conf.lo.accept_redirects = 0<br />
 net.ipv4.conf.eth0.accept_redirects = 0<br />
 net.ipv4.conf.default.accept_redirects = 0</p>
<p># Enable Log Spoofed Packets, Source Routed Packets, Redirect Packets<br />
 net.ipv4.conf.all.log_martians = 0<br />
 net.ipv4.conf.lo.log_martians = 0<br />
 net.ipv4.conf.eth0.log_martians = 0</p>
</div>
<div># Decrease the time default value for tcp_fin_timeout connection<br />
 net.ipv4.tcp_fin_timeout = 15</p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p># Decrease the time default value for tcp_keepalive_time connection<br />
 net.ipv4.tcp_keepalive_time = 1800</p>
<p># Turn off the tcp_window_scaling<br />
 net.ipv4.tcp_window_scaling = 0</p>
<p># Turn off the tcp_sack<br />
 net.ipv4.tcp_sack = 0</p>
<p># Turn off the tcp_timestamps<br />
 net.ipv4.tcp_timestamps = 0</p>
<p># Controls whether core dumps will append the PID to the core filename<br />
 # Useful for debugging multi-threaded applications<br />
 kernel.core_uses_pid = 1</p>
<p># Controls the use of TCP syncookies<br />
 net.ipv4.tcp_syncookies = 1</p>
<p># Controls the maximum size of a message, in bytes<br />
 kernel.msgmnb = 65536</p>
<p># Controls the default maxmimum size of a mesage queue<br />
 kernel.msgmax = 65536</p>
<p># Controls the maximum shared segment size, in bytes<br />
 kernel.shmmax = 4294967295</p>
<p># Controls the maximum number of shared memory segments, in pages<br />
 kernel.shmall = 268435456</p>
</div>
<div>#Ignore Ping<br />
 net.ipv4.icmp_echo_ignore_all = 0</p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p>#Ignore Broadcast ICMP Request<br />
 net.ipv4.icmp_echo_ignore_broadcasts = 1</p>
<p># Enable bad error message Protection<br />
 net.ipv4.icmp_ignore_bogus_error_responses = 1</p>
<p># Log Spoofed Packets, Source Routed Packets, Redirect Packets<br />
 net.ipv4.conf.all.log_martians = 1</p>
<p># Increases the size of the socket queue (effectively, q0).<br />
 net.ipv4.tcp_max_syn_backlog = 1024</p>
<p># Increase the tcp-time-wait buckets pool size<br />
 net.ipv4.tcp_max_tw_buckets = 1440000</p>
<p># Allowed local port range<br />
 net.ipv4.ip_local_port_range = 16384 65536</p>
</div>
</blockquote>
<div>Adapun saran atau kritikan atau referensi yang lebih baik untuk konfigurasi sysctl.conf silahkan memberikan komentar.</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.pnyet.web.id/2010/02/11/optimasi-kernel-linux-dengan-systcl-conf.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

