UTF-404

Telnet ์ž์„ธํžˆ ์•Œ์•„๋ณด๊ธฐ ๋ณธ๋ฌธ

๋ฆฌ๋ˆ…์Šค

Telnet ์ž์„ธํžˆ ์•Œ์•„๋ณด๊ธฐ

UTF-404 2024. 3. 31. 21:13
728x90

๐Ÿ’ก Telnet

์•”ํ˜ธํ™”๋˜์ง€ ์•Š์€ ์›๊ฒฉ ์ ‘์† ์„œ๋น„์Šค๋ฅผ ์˜๋ฏธํ•œ๋‹ค. ๋”ฐ๋ผ์„œ, ์ค‘๊ฐ„์ž(= ํ•ด์ปค)์—๊ฒŒ ๋ฐ์ดํ„ฐ๊ฐ€ ์‰ฝ๊ฒŒ ๋…ธ์ถœ๋œ๋‹ค. Telnet์„ ๋งŒ์•ฝ์— ์‚ฌ์šฉํ•œ๋‹ค๋ฉด ๊ณต์šฉ ๋„คํŠธ์›Œํฌ์—์„œ ์‚ฌ์šฉํ•˜๋Š” ๊ฒƒ์€ ๊ต‰์žฅํžˆ ์œ„ํ—˜ํ•˜๋‹ค. ๊ทธ๋ ‡๊ธฐ์— ๋Œ€๋ถ€๋ถ„ ์‚ฌ์„ค ๋„คํŠธ์›Œํฌ ๋‚ด์—์„œ ์‚ฌ์šฉํ•œ๋‹ค.

 

๐Ÿ“ Telnet Port ๋ฒˆํ˜ธ

์ ‘์† ๋ฐฉ์‹์€ TCP๋ฅผ ์‚ฌ์šฉํ•˜๋ฉฐ ๊ธฐ๋ณธ ํฌํŠธ ๋ฒˆํ˜ธ๋Š” TCP/23๋ฒˆ์„ ์‚ฌ์šฉํ•œ๋‹ค.

 

๐Ÿ“ CentOS์—์„œ Telnet์€ Standalone์œผ๋กœ ๋Œ๋ฆด ์ˆ˜ ์—†๋‹ค.

์Šˆํผ ๋ฐ๋ชฌ์ธ Sinet์˜ ๊ด€๋ฆฌ๋ฅผ ๋ฐ›์•„์•ผ๋งŒ ์‚ฌ์šฉ ๊ฐ€๋Šฅํ•˜๋‹ค.

 

๐Ÿ“ VPN(Virtual Private Network)

์™ธ๋ถ€ ๋„คํŠธ์›Œํฌ์—์„œ ์‚ฌ์„ค ๋„คํŠธ์›Œํฌ๋กœ ์ ‘์†์„ ์ง€์›ํ•˜๋Š” ์„œ๋น„์Šค์ด๋ฉฐ, ์ด๋ฅผ ์‚ฌ์šฉํ•˜๋ฉด ํŠน์ • ๋ฐฉ์‹์˜ ์ธ์ฆ์„ ๊ฑฐ์ณ์„œ ์‚ฌ์„ค ๋„คํŠธ์›Œํฌ๋กœ ์ง„์ž…ํ•  ์ˆ˜ ์žˆ๋‹ค.

 

 


๐Ÿ’ก Xinet ๊ตฌ์ถ• ์ˆœ์„œ ์•Œ์•„๋ณด๊ธฐ!!

1. ํŒจํ‚ค์ง€ ์„ค์น˜ ํ™•์ธ

Rpm –qa | grep xinetd

 

2. ํŒจํ‚ค์ง€ ์„ค์น˜

rpm -ivh xinetd-2.3.14-39.el6_4.i686.rpm
• xinetd ๋ฐ๋ชฌ

rpm -ivh telnet-server-0.17-48.el6.i686.rpm
• telnet server

rpm -ivh telnet-0.17-48.el6.i686.rpm
• telnet client

 

3. ๋ฐ๋ชฌ ์‹คํ–‰

/etc/rc.d/init.d/xinetd restart

 

4. ๋ฐฉํ™”๋ฒฝ

selinux ํ•ด์ œ

system-config-firewall
• ๋ฐฉํ™”๋ฒฝ ํ•ด์ œ (telnet = 23/tcp)

 

5. ์ƒํƒœ ํ™•์ธ

netstat -lntup | grep xinet

 

6. ์„ค์ • ํŒŒ์ผ

vi /etc/xinetd.d/telnet

service telnet
{
flags                      = REUSE
socket_type         = stream
wait                       = no
user                      = root
server                   = /usr/sbin/in.telnetd
log_on_failure     += USERID
disable                  = yes
}

์—ฌ๊ธฐ์„œ disable ๋ถ€๋ถ„์„ no๋กœ ์ˆ˜์ • ํ›„ ์ €์žฅ

 

 

๐Ÿ“ xinet ์„ค์ • ํŒŒ์ผ

  • vi /etc/xinetd.conf
defaults
{
# The next two items are intended to be a quick access place to
# temporarily enable or disable services.
#
# enabled	=
# disabled	=
# Define general logging characteristics.
log_type		= SYSLOG daemon info 				<- syslogd๋ฅผ ์‚ฌ์šฉ
log_on_failure	= HOST 								<- ์‹คํŒจ์‹œ ip๋ฅผ ๋‚จ๊ธด๋‹ค
log_on_success	= PID HOST DURATION EXIT 			<- ์„ฑ๊ณต์‹œ ๊ธฐ๋กํ•  ๋‚ด์šฉ
----------------์ ‘์† ์„ค์ •---------------------
# Define access restriction defaults
#
# no_access=										<- ์ ‘์†๊ฑฐ๋ถ€
# only_from=										<- ์ ‘์†ํ—ˆ๊ฐ€
# max_load=											<- ์„œ๋ฒ„๋ถ€ํ•˜
cps			= 50 10 								<- ์ดˆ๋‹น ์ตœ๋Œ€ ์—ฐ๊ฒฐ๊ฐœ์ˆ˜ 50, ์ดˆ๊ณผ์‹œ 10์ดˆ ๋Œ€๊ธฐ
instances	= 50								 	<- ์ด ์—ฐ๊ฒฐ๊ฐœ์ˆ˜
per_source	= 10 									<- ๋™์ผํ•œ ip๋กœ ์ตœ๋Œ€ ์—ฐ๊ฒฐ๊ฐœ์ˆ˜
}

 

๐Ÿ“ ์„œ๋ฒ„ ํŒŒ์ผ 

  • /etc/xinetd.d/telnet
service telnet
{
flags			= REUSE 				<- ์„œ๋น„์Šค์— ๊ด€๋ จ๋œ ์†Œ์ผ“์„ ๊ทธ๋Œ€๋กœ ์‚ฌ์šฉ
socket_type		= stream 				<- stream(tcp),dgram(udp)
wait			= no 					<- no : ๋Œ€๊ธฐx, yes : ๋Œ€๊ธฐo
user			= root 					<- ํ•ด๋‹น ๋ฐ๋ชฌ์„ ์‹œ์ž‘ํ•  ์œ ์ €
server			= /usr/sbin/in.telnetd 	<- ์‹ค์ œ ์„œ๋ฒ„ ํ”„๋กœ๊ทธ๋žจ์˜ ์œ„์น˜
log_on_failure	+= USERID 				<- ๋กœ๊ทธ์ธ ์‹คํŒจ์‹œ ๊ณ„์ •๋ช…์„ ๋‚จ๊ธฐ๊ฒ ๋‹ค
access_times	= 0:00-23:59 			<- ํ—ˆ์šฉํ•  ์‹œ๊ฐ„๋Œ€
only_from		= ip/๋Œ€์—ญ				   <- ํ—ˆ์šฉํ•  IP/๋Œ€์—ญ
disable			= yes // no ๋กœ ํ•ด์•ผ ํ…”๋„ท ์—ฐ๊ฒฐ
}
728x90