Anda di halaman 1dari 5

JOB SHEET PRACTICE

LEARNING ACTIVITIES:2
Software :

NAMA PESERTA : DEDI SUTARYA


KELAS :D
DIKLAT : KEAMANAN JARINGAN
TUGAS : JOBSHEET SESI 2
1. iptables—persistent
2. netfilter-persistent
3. proftpd

Sekenario iptables testing

PC Guest1: Router Gateway


OS guest : debian 10
Install packet :ssh Switch vmnet : 0
RAM : 512 MB Bridge: Wireless
NIC 0 Adapter Driver DHCP Server
Static: 192.168.1.11 192.168.1.1
link
Ping From Debian server To vmnet0
router after iptables
configuration
NIC 1
Static:192.168.100.254

Switch vmnet : 1
Hostonly
Disable DHCP

192.168.100.1 192.168.100.2 192.168.100.3

DHCP :192.168.1.5

Wireless
PCGues2: server PCGues3: client PCGues4: testing network
OS Guest : windows XP OS Guest : Kalilinux Adapter
OS Guest : Debian 10
Install packet : SSH,FTP,HTTP Open port 80,Rdesktop Software : NMAP
RAM : 512 MB RAM : 256 MB RAM : 512 MB

PC HOST
OS HOST : Microsoft Windows
JOB SHEET PRACTICE
LEARNING ACTIVITIES:2
No testing steps explanation Cature scrren
(minimize pic)
1. Iptables basic iptables -A INPUT -s Untuk melakukan
1 192.168.1.5/24 -j DROP filter paket yang
capture ingin masuk ke
screen your dalam jaringan
results melalui alamat ip
192.168.1.5 – 254
komputer HOST,
seketika remote
ssh langsung
terputus dan test
ping request
timeout

Note :
Setelah saya
merubah IP
address saya
dengan range
antara
192.168.1.2 – 4
Saya kembali
terkoneksi ke
Router
iptables –nvL
cek ping from PC host
192.168.1.5
iptables –F
cek ping from client
2. Iptables basic iptables -A INPUT -i ens33 -j Untuk melakukan
2 DROP filter paket yang
capture ingin masuk ke
screen your dalam jaringan
results melalui interface
ens33

Setelah
melakukan
perintah iptables -
F PC bisa kembali
terkoneksi ke
RouterDebian
iptables –nvL
cek ping from PC host
192.168.1.5
JOB SHEET PRACTICE
LEARNING ACTIVITIES:2
iptables –F
cek ping from client
3. Iptables basic iptables -A OUTPUT -s Melakukan filter
3 192.168.100.1/24 -j DROP paket yang keluar
capture dari firewall ke
screen your range IP
results 192.168.100.1 -
254

iptables –nvL
cek ping from router to Sebaliknya
external computer client
(ping to google/pc host) dapat
mengirimkan
paket tcp ke
RouterDebian

iptables –F
cek ping from
router(192.168.100.254) to
192.168.100.1
(ping to google/pc host)

4. Iptables basic iptables -A OUTPUT -o ens37 - Melakukan filter


4 j DROP paket yang keluar
capture dari firewall
screen your interface ens34
results
Note :
Pada system yang
saya gunakan
interface memiliki
nama ens34
iptables –nvL
cek ping from router to
192.168.100.1
(ping to google/pc host)
iptables –F
JOB SHEET PRACTICE
LEARNING ACTIVITIES:2
cek ping from router to
192.168.100.1

5. Iptables basic iptables –A INPUT –p tcp -- Untuk melakukan


5 dport 21 –j DROP filter paket yang
capture ingin masuk ke
screen your dalam jaringan
results melalui melalui
port 21 untuk FTP

cek client browser


ftp://192.168.1.11

iptables –F
iptables –A INPUT –p tcp --
dport 22–j DROP

Cek ssh , uses puty from client Uji coba akses


puty setelah filter
port 22, status
puty network
error
iptables –F
Cek ssh , uses puty from client Ujcoba setelah
rule filter port ftp
dan ssh dihapus
JOB SHEET PRACTICE
LEARNING ACTIVITIES:2
6. Iptables basic iptables –A INPUT – i ens33 –
6 p icmp –j DROP
capture
screen your
results

Cek ping from client Hasil Ping Reques


Time Out
iptables –F
iptables –A INPUT – i ens33 –
p icmp -j REJECT

Cek ping from client Hasil test ping


Destination
Unreach

iptables-save
nano /etc/iptables/rules.v4

Upload this file to LMS after completed with name

Anda mungkin juga menyukai