{"id":76392,"date":"2024-09-11T13:05:03","date_gmt":"2024-09-11T09:35:03","guid":{"rendered":"https:\/\/nabfollower.com\/blog\/modsecurity-safeline-waf-for-multi-layer-defense-2-3im5\/"},"modified":"2024-09-11T13:05:03","modified_gmt":"2024-09-11T09:35:03","slug":"modsecurity-safeline-waf-for-multi-layer-defense-2-3im5","status":"publish","type":"post","link":"https:\/\/nabfollower.com\/blog\/modsecurity-safeline-waf-for-multi-layer-defense-2-3im5\/","title":{"rendered":"ModSecurity + SafeLine WAF \u0628\u0631\u0627\u06cc \u062f\u0641\u0627\u0639 \u0686\u0646\u062f \u0644\u0627\u06cc\u0647 (2)"},"content":{"rendered":"<p>Summarize this content to 400 words in Persian Lang \u0645\u0642\u0627\u0644\u0647 \u06a9\u0645\u06cc \u0637\u0648\u0644\u0627\u0646\u06cc \u0627\u0633\u062a\u060c \u0628\u0646\u0627\u0628\u0631\u0627\u06cc\u0646 \u0645\u0646 \u0622\u0646 \u0631\u0627 \u062f\u0631 \u062f\u0648 \u0642\u0633\u0645\u062a \u0627\u0631\u0633\u0627\u0644 \u06a9\u0631\u062f\u0645\u060c \u0646\u06cc\u0645\u0647 \u062f\u06cc\u06af\u0631 \u0627\u06cc\u0646\u062c\u0627\u0633\u062a:ModSecurity + SafeLine WAF \u0628\u0631\u0627\u06cc \u062f\u0641\u0627\u0639 \u0686\u0646\u062f \u0644\u0627\u06cc\u0647 (1)<\/p>\n<p>  \u0628\u062e\u0634 4: \u0633\u062e\u062a \u0634\u062f\u0646 \u0633\u06cc\u0633\u062a\u0645<\/p>\n<p>1.\u067e\u0648\u0631\u062a\u200c\u0647\u0627 \u0631\u0627 \u062f\u0631 iptables \u0645\u062c\u0627\u0632 \u06a9\u0646\u06cc\u062f<\/p>\n<p>\u0645\u0646 \u0627\u0632 iptables \u0628\u0647\u200c\u0639\u0646\u0648\u0627\u0646 \u0641\u0627\u06cc\u0631\u0648\u0627\u0644 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0631\u062f\u0645 \u0648 \u0628\u0627\u06cc\u062f \u067e\u0648\u0631\u062a\u200c\u0647\u0627\u06cc 8080 \u0648 9443 \u0631\u0627 \u0645\u062c\u0627\u0632 \u06a9\u0646\u0645. \u0645\u0631\u0627\u062d\u0644 \u062f\u0631 \u0627\u06cc\u0646\u062c\u0627 \u0622\u0645\u062f\u0647 \u0627\u0633\u062a:<\/p>\n<p>\u0628\u0631\u0631\u0633\u06cc \u0648\u0636\u0639\u06cc\u062a iptables: iptables -L -n<\/p>\n<p>\u06cc\u06a9 \u0642\u0627\u0646\u0648\u0646 \u0628\u0631\u0627\u06cc \u0628\u0627\u0632 \u06a9\u0631\u062f\u0646 \u06cc\u06a9 \u067e\u0648\u0631\u062a \u0627\u0636\u0627\u0641\u0647 \u06a9\u0646\u06cc\u062f (\u0645\u062b\u0644\u0627\u064b \u0628\u0631\u0627\u06cc \u067e\u0648\u0631\u062a 80): iptables -I INPUT -p tcp &#8211;dport 80 -j ACCEPT<\/p>\n<p>\u062a\u0646\u0638\u06cc\u0645\u0627\u062a \u0631\u0627 \u0630\u062e\u06cc\u0631\u0647 \u06a9\u0646\u06cc\u062f: service iptables save \u06cc\u0627 iptables-save &gt; \/etc\/iptables.rules<\/p>\n<p>\u0631\u0627\u0647 \u0627\u0646\u062f\u0627\u0632\u06cc \u0645\u062c\u062f\u062f iptables: service iptables restart<\/p>\n<p>\u0628\u0631\u0631\u0633\u06cc \u0648\u0636\u0639\u06cc\u062a: service iptables status<\/p>\n<p>2.IP \u0647\u0627 \u0631\u0627 \u0628\u0627 iptables \u0645\u0633\u062f\u0648\u062f \u06a9\u0646\u06cc\u062f<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0645\u0633\u062f\u0648\u062f \u06a9\u0631\u062f\u0646 IP \u0647\u0627\u06cc \u062e\u0627\u0635\u060c \u0627\u0632 \u062f\u0633\u062a\u0648\u0631\u0627\u062a \u0632\u06cc\u0631 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0646\u06cc\u062f:<\/p>\n<p>iptables -A INPUT -s IP_address -j DROP<br \/>\nservice iptables save<br \/>\nsystemctl restart iptables<br \/>\niptables -nvxL &#8211;line<\/p>\n<p>\u0628\u0647 \u0639\u0646\u0648\u0627\u0646 \u0645\u062b\u0627\u0644\u060c \u067e\u0633 \u0627\u0632 \u0627\u0639\u0645\u0627\u0644 \u0627\u06cc\u0646 \u0642\u0648\u0627\u0646\u06cc\u0646\u060c \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0627\u0632 IP 45.148.10.174 \u0645\u0633\u062f\u0648\u062f \u0634\u062f\u0647 \u0627\u0633\u062a.<\/p>\n<p>  \u0642\u0633\u0645\u062a 5: \u0627\u062c\u0631\u0627\u06cc \u062f\u0641\u0627\u0639 \u062f\u0631 \u0639\u0645\u0642<\/p>\n<p>\u062f\u0631 \u0627\u06cc\u0646\u062c\u0627\u060c \u0645\u0646 ModSecurity \u0631\u0627 \u0628\u0627 SafeLine WAF \u062a\u0631\u06a9\u06cc\u0628 \u0645\u06cc\u200c\u06a9\u0646\u0645 \u0648 \u0627\u0632 iptables \u0628\u0631\u0627\u06cc \u06a9\u0646\u062a\u0631\u0644 \u062f\u0633\u062a\u0631\u0633\u06cc \u0628\u0647 \u067e\u0648\u0631\u062a \u062e\u0627\u0631\u062c\u06cc \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0645\u06cc\u200c\u06a9\u0646\u0645 \u0648 \u0627\u0645\u0646\u06cc\u062a \u0642\u0648\u06cc\u200c\u062a\u0631\u06cc \u0631\u0627 \u0628\u0647 \u062f\u0633\u062a \u0645\u06cc\u200c\u0622\u0648\u0631\u0645. \u0645\u0646 \u0627\u0632 WAF \u0647\u0627\u06cc \u062f\u0648\u06af\u0627\u0646\u0647 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0645\u06cc \u06a9\u0646\u0645 \u0632\u06cc\u0631\u0627 \u0646\u0631\u062e \u0647\u0627\u06cc \u062a\u0634\u062e\u06cc\u0635 SafeLine \u0627\u0632 \u0627\u0628\u0632\u0627\u0631 \u062a\u0633\u062a \u062e\u0648\u062f\u06a9\u0627\u0631 WAF \u0646\u0634\u0627\u0646 \u0645\u06cc \u062f\u0647\u062f \u06a9\u0647 ModSecurity \u0646\u0631\u062e \u062a\u0634\u062e\u06cc\u0635 \u0628\u0627\u0644\u0627\u06cc\u06cc \u062f\u0627\u0631\u062f \u0627\u0645\u0627 \u0645\u0648\u0627\u0631\u062f \u0645\u062b\u0628\u062a \u06a9\u0627\u0630\u0628 \u0628\u0633\u06cc\u0627\u0631 \u0632\u06cc\u0627\u062f\u06cc \u062f\u0627\u0631\u062f. ModSecurity \u0641\u0627\u0642\u062f \u0631\u0627\u0628\u0637 \u06af\u0631\u0627\u0641\u06cc\u06a9\u06cc \u0627\u0633\u062a \u06a9\u0647 \u0622\u0646 \u0631\u0627 \u0628\u0631\u0627\u06cc \u062a\u0639\u0645\u06cc\u0631 \u0648 \u0646\u06af\u0647\u062f\u0627\u0631\u06cc \u0648 \u0645\u0645\u06cc\u0632\u06cc \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0686\u0627\u0644\u0634 \u0628\u0631\u0627\u0646\u06af\u06cc\u0632 \u0645\u06cc \u06a9\u0646\u062f. SafeLine \u0628\u0627 \u0646\u0631\u062e \u0645\u062b\u0628\u062a \u06a9\u0627\u0630\u0628 \u067e\u0627\u06cc\u06cc\u0646 \u0648 \u0631\u0627\u0628\u0637 \u06a9\u0627\u0631\u0628\u0631\u06cc \u06af\u0631\u0627\u0641\u06cc\u06a9\u06cc \u062e\u0648\u062f\u060c \u062f\u06cc\u062f \u0622\u0633\u0627\u0646 \u062a\u0631\u06cc \u0631\u0627 \u062f\u0631 \u062d\u0645\u0644\u0627\u062a \u0641\u0631\u0627\u0647\u0645 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>1.\u0622\u062f\u0631\u0633 \u0633\u0631\u0648\u0631 \u0628\u0627\u0644\u0627\u062f\u0633\u062a\u06cc SafeLine \u0631\u0627 \u067e\u06cc\u06a9\u0631\u0628\u0646\u062f\u06cc \u06a9\u0646\u06cc\u062f<\/p>\n<p>\u0633\u0631\u0648\u0631 \u0628\u0627\u0644\u0627\u062f\u0633\u062a \u0631\u0627 \u0631\u0648\u06cc 127.0.0.1 (localhost)\u060c \u0648 \u062a\u0645\u0627\u0645 \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0628\u0647 \u062c\u0632 \u0627\u0632 \u0631\u0627 \u0645\u0633\u062f\u0648\u062f \u06a9\u0646\u06cc\u062f 127.0.0.1.<\/p>\n<p>2.\u0642\u0648\u0627\u0646\u06cc\u0646 \u06af\u0631\u0648\u0647 \u0627\u0645\u0646\u06cc\u062a\u06cc Cloud \u0631\u0627 \u062a\u0646\u0638\u06cc\u0645 \u06a9\u0646\u06cc\u062f<\/p>\n<p>\u0641\u0627\u06cc\u0631\u0648\u0627\u0644 \u0627\u0628\u0631\u06cc \u0631\u0627 \u0637\u0648\u0631\u06cc \u067e\u06cc\u06a9\u0631\u0628\u0646\u062f\u06cc \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u0641\u0642\u0637 \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0627\u0632 \u0622\u0646 \u0645\u062c\u0627\u0632 \u0628\u0627\u0634\u062f 127.0.0.1 \u062f\u0631 \u067e\u0648\u0631\u062a 8080<\/p>\n<p>3.\u0642\u0648\u0627\u0646\u06cc\u0646 iptables \u0631\u0627 \u0627\u0639\u0645\u0627\u0644 \u06a9\u0646\u06cc\u062f<\/p>\n<p>\u0647\u0645\u0627\u0646\u0637\u0648\u0631 \u06a9\u0647 \u0642\u0628\u0644\u0627\u064b \u067e\u0648\u0631\u062a 8080 \u0631\u0627 \u0628\u0631\u0627\u06cc \u0647\u0645\u0647 IP \u0647\u0627 \u0628\u0627\u0632 \u06a9\u0631\u062f\u0647 \u0628\u0648\u062f\u0645\u060c \u0642\u0648\u0627\u0646\u06cc\u0646 \u0632\u06cc\u0631 \u0631\u0627 \u0628\u0631\u0627\u06cc \u0645\u062d\u062f\u0648\u062f \u06a9\u0631\u062f\u0646 \u062f\u0633\u062a\u0631\u0633\u06cc \u0627\u0639\u0645\u0627\u0644 \u06a9\u0631\u062f\u0645:<\/p>\n<p>iptables -A INPUT -i lo -p tcp &#8211;dport 8080 -s 127.0.0.1 -j ACCEPT<br \/>\niptables -A INPUT -i lo -p tcp &#8211;dport 8080 -j DROP<br \/>\niptables -D INPUT 2<\/p>\n<p>\u062a\u0648\u0636\u06cc\u062d \u062f\u0633\u062a\u0648\u0631\u0627\u062a:<\/p>\n<p>-A INPUT: \u06cc\u06a9 \u0642\u0627\u0646\u0648\u0646 \u0628\u0647 \u0632\u0646\u062c\u06cc\u0631\u0647 INPUT (\u0628\u0631\u0627\u06cc \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0648\u0631\u0648\u062f\u06cc) \u0627\u0636\u0627\u0641\u0647 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>-i lo: \u0628\u0627 \u0631\u0627\u0628\u0637 Loopback \u0645\u062d\u0644\u06cc (lo) \u0645\u0637\u0627\u0628\u0642\u062a \u062f\u0627\u0631\u062f.<\/p>\n<p>-p tcp: \u067e\u0631\u0648\u062a\u06a9\u0644 \u0631\u0627 \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 TCP \u0645\u0634\u062e\u0635 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>&#8211;dport 8080: \u067e\u0648\u0631\u062a 8080 \u0631\u0627 \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 \u0645\u0642\u0635\u062f \u0645\u0634\u062e\u0635 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>-s 127.0.0.1: \u0641\u0642\u0637 \u0628\u0647 \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0627\u0632 127.0.0.1 \u0627\u062c\u0627\u0632\u0647 \u0645\u06cc \u062f\u0647\u062f.<\/p>\n<p>-j ACCEPT: \u0627\u062a\u0635\u0627\u0644 \u0631\u0627 \u0645\u06cc \u067e\u0630\u06cc\u0631\u062f.<\/p>\n<p>\u0642\u0627\u0646\u0648\u0646 \u062f\u0648\u0645 \u062a\u0631\u0627\u0641\u06cc\u06a9\u06cc \u0631\u0627 \u06a9\u0647 \u0628\u0627 127.0.0.1 \u0645\u0637\u0627\u0628\u0642\u062a \u0646\u062f\u0627\u0631\u062f \u062d\u0630\u0641 \u0645\u06cc \u06a9\u0646\u062f. \u0641\u0631\u0645\u0627\u0646 \u0633\u0648\u0645 \u0642\u0627\u0646\u0648\u0646 \u0642\u0628\u0644\u06cc \u067e\u0648\u0631\u062a 8080 \u0631\u0627 \u062d\u0630\u0641 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>  \u0628\u062e\u0634 6: \u0645\u0633\u0627\u0626\u0644 \u0648 \u0631\u0627\u0647 \u062d\u0644 \u0647\u0627<\/p>\n<p>1.nginx: [alert] kill(30127, 1) \u0646\u0627\u0645\u0648\u0641\u0642 (3: \u0686\u0646\u06cc\u0646 \u0641\u0631\u0622\u06cc\u0646\u062f\u06cc \u0648\u062c\u0648\u062f \u0646\u062f\u0627\u0631\u062f)<\/p>\n<p>\u0631\u0627\u0647 \u062d\u0644:<\/p>\n<p>\/usr\/local\/nginx\/sbin\/nginx -c \/usr\/local\/nginx\/conf\/nginx.conf<\/p>\n<p>\u0645\u0633\u06cc\u0631 \/usr\/local\/nginx\/sbin\/nginx \u0628\u0647 \u0641\u0627\u06cc\u0644 \u0627\u062c\u0631\u0627\u06cc\u06cc Nginx \u0627\u0634\u0627\u0631\u0647 \u0645\u06cc \u06a9\u0646\u062f \u0648 -c \/usr\/local\/nginx\/conf\/nginx.conf \u0641\u0627\u06cc\u0644 \u067e\u06cc\u06a9\u0631\u0628\u0646\u062f\u06cc \u0631\u0627 \u0645\u0634\u062e\u0635 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>2.nginx: [error] open() &#8220;\/usr\/local\/nginx\/logs\/nginx.pid&#8221; \u0646\u0627\u0645\u0648\u0641\u0642 \u0628\u0648\u062f (2: \u0686\u0646\u06cc\u0646 \u0641\u0627\u06cc\u0644 \u06cc\u0627 \u062f\u0627\u06cc\u0631\u06a9\u062a\u0648\u0631\u06cc \u0648\u062c\u0648\u062f \u0646\u062f\u0627\u0631\u062f)<\/p>\n<p>\u0628\u0631\u0627\u06cc \u062a\u0648\u0644\u06cc\u062f\u060c \u062f\u0633\u062a\u0648\u0631 \u0642\u0628\u0644\u06cc \u0631\u0627 \u062f\u0648\u0628\u0627\u0631\u0647 \u0627\u062c\u0631\u0627 \u06a9\u0646\u06cc\u062f nginx.pid. \u0627\u06af\u0631 \u0647\u0646\u06af\u0627\u0645 \u0627\u062c\u0631\u0627 \u062f\u0648\u0628\u0627\u0631\u0647 \u0628\u0627 \u0627\u06cc\u0646 \u062e\u0637\u0627 \u0645\u0648\u0627\u062c\u0647 \u0634\u062f\u06cc\u062f nginx -s reload\u060c \u0628\u0631\u0631\u0633\u06cc \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u0622\u06cc\u0627 PID \u0645\u0648\u062c\u0648\u062f \u062f\u0631 \u0641\u0627\u06cc\u0644 \u0628\u0627 \u0634\u0646\u0627\u0633\u0647 \u0641\u0631\u0622\u06cc\u0646\u062f \u067e\u0648\u0631\u062a \u0645\u0637\u0627\u0628\u0642\u062a \u062f\u0627\u0631\u062f \u06cc\u0627 \u062e\u06cc\u0631:<\/p>\n<p>netstat -ntlp<\/p>\n<p>\u0628\u0647 \u0631\u0648\u0632 \u0631\u0633\u0627\u0646\u06cc PID \u062f\u0631 nginx.pid \u0641\u0627\u06cc\u0644 \u0648 Nginx \u0631\u0627 \u0645\u062c\u062f\u062f\u0627 \u0631\u0627\u0647 \u0627\u0646\u062f\u0627\u0632\u06cc \u06a9\u0646\u06cc\u062f.<\/p>\n<p>3.\u0645\u0634\u06a9\u0644\u0627\u062a \u0631\u0627\u06cc\u062c SafeLine<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0639\u06cc\u0628 \u06cc\u0627\u0628\u06cc \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0628\u0647 \u0627\u0633\u0646\u0627\u062f \u0631\u0633\u0645\u06cc \u0645\u0631\u0627\u062c\u0639\u0647 \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u062f\u0631 \u0622\u062f\u0631\u0633 \u0632\u06cc\u0631 \u0645\u0648\u062c\u0648\u062f \u0627\u0633\u062a:\u0633\u0648\u0627\u0644\u0627\u062a \u0645\u062a\u062f\u0627\u0648\u0644<\/p>\n<p>  \u0646\u062a\u06cc\u062c\u0647 \u06af\u06cc\u0631\u06cc<\/p>\n<p>\u0645\u0632\u0627\u06cc\u0627\u06cc \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 SafeLine \u0648 ModSecurity \u0631\u0627 \u0628\u0647 \u0635\u0648\u0631\u062a \u067e\u0634\u062a \u0633\u0631 \u0647\u0645 \u0628\u0631\u0627\u06cc \u0631\u0627\u0647 \u0627\u0646\u062f\u0627\u0632\u06cc \u0627\u0645\u0646\u06cc\u062a \u0648\u0628 \u0642\u0648\u06cc \u062e\u0644\u0627\u0635\u0647 \u06a9\u0646\u06cc\u062f. \u0630\u06a9\u0631 \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u0686\u06af\u0648\u0646\u0647 \u0627\u06cc\u0646 \u062d\u0641\u0627\u0638\u062a \u062f\u0648 \u0644\u0627\u06cc\u0647 \u0628\u0647 \u0645\u0642\u0627\u0628\u0644\u0647 \u0628\u0627 \u062a\u0647\u062f\u06cc\u062f\u0627\u062a \u067e\u06cc\u0686\u06cc\u062f\u0647 \u06a9\u0645\u06a9 \u0645\u06cc \u06a9\u0646\u062f\u060c \u0628\u0627 \u0631\u0627\u0628\u0637 \u06a9\u0627\u0631\u0628\u0631 \u067e\u0633\u0646\u062f SafeLine \u06a9\u0647 \u0638\u0631\u0641\u06cc\u062a \u062a\u0634\u062e\u06cc\u0635 \u0628\u0627\u0644\u0627\u06cc ModSecurity \u0631\u0627 \u062a\u06a9\u0645\u06cc\u0644 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>\u0645\u0642\u0627\u0644\u0647 \u06a9\u0645\u06cc \u0637\u0648\u0644\u0627\u0646\u06cc \u0627\u0633\u062a\u060c \u0628\u0646\u0627\u0628\u0631\u0627\u06cc\u0646 \u0645\u0646 \u0622\u0646 \u0631\u0627 \u062f\u0631 \u062f\u0648 \u0642\u0633\u0645\u062a \u0627\u0631\u0633\u0627\u0644 \u06a9\u0631\u062f\u0645\u060c \u0646\u06cc\u0645\u0647 \u062f\u06cc\u06af\u0631 \u0627\u06cc\u0646\u062c\u0627\u0633\u062a:<strong>ModSecurity + SafeLine WAF \u0628\u0631\u0627\u06cc \u062f\u0641\u0627\u0639 \u0686\u0646\u062f \u0644\u0627\u06cc\u0647 (1)<\/strong><\/p>\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_84 counter-hierarchy ez-toc-counter-rtl ez-toc-grey ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">\u0641\u0647\u0631\u0633\u062a \u0645\u0637\u0627\u0644\u0628<\/p>\n<span class=\"ez-toc-title-toggle\"><a href=\"#\" class=\"ez-toc-pull-right ez-toc-btn ez-toc-btn-xs ez-toc-btn-default ez-toc-toggle\" aria-label=\"Toggle Table of Content\"><span class=\"ez-toc-js-icon-con\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #999;color:#999\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #999;color:#999\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/span><\/a><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/nabfollower.com\/blog\/modsecurity-safeline-waf-for-multi-layer-defense-2-3im5\/#%D8%A8%D8%AE%D8%B4_4_%D8%B3%D8%AE%D8%AA_%D8%B4%D8%AF%D9%86_%D8%B3%DB%8C%D8%B3%D8%AA%D9%85\" >\u0628\u062e\u0634 4: \u0633\u062e\u062a \u0634\u062f\u0646 \u0633\u06cc\u0633\u062a\u0645<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/nabfollower.com\/blog\/modsecurity-safeline-waf-for-multi-layer-defense-2-3im5\/#%D9%82%D8%B3%D9%85%D8%AA_5_%D8%A7%D8%AC%D8%B1%D8%A7%DB%8C_%D8%AF%D9%81%D8%A7%D8%B9_%D8%AF%D8%B1_%D8%B9%D9%85%D9%82\" >\u0642\u0633\u0645\u062a 5: \u0627\u062c\u0631\u0627\u06cc \u062f\u0641\u0627\u0639 \u062f\u0631 \u0639\u0645\u0642<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/nabfollower.com\/blog\/modsecurity-safeline-waf-for-multi-layer-defense-2-3im5\/#%D8%A8%D8%AE%D8%B4_6_%D9%85%D8%B3%D8%A7%D8%A6%D9%84_%D9%88_%D8%B1%D8%A7%D9%87_%D8%AD%D9%84_%D9%87%D8%A7\" >\u0628\u062e\u0634 6: \u0645\u0633\u0627\u0626\u0644 \u0648 \u0631\u0627\u0647 \u062d\u0644 \u0647\u0627<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/nabfollower.com\/blog\/modsecurity-safeline-waf-for-multi-layer-defense-2-3im5\/#%D9%86%D8%AA%DB%8C%D8%AC%D9%87_%DA%AF%DB%8C%D8%B1%DB%8C\" >\u0646\u062a\u06cc\u062c\u0647 \u06af\u06cc\u0631\u06cc<\/a><\/li><\/ul><\/nav><\/div>\n<h3><span class=\"ez-toc-section\" id=\"%D8%A8%D8%AE%D8%B4_4_%D8%B3%D8%AE%D8%AA_%D8%B4%D8%AF%D9%86_%D8%B3%DB%8C%D8%B3%D8%AA%D9%85\"><\/span>\n<p>  \u0628\u062e\u0634 4: \u0633\u062e\u062a \u0634\u062f\u0646 \u0633\u06cc\u0633\u062a\u0645<br \/>\n<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>1.<strong>\u067e\u0648\u0631\u062a\u200c\u0647\u0627 \u0631\u0627 \u062f\u0631 iptables \u0645\u062c\u0627\u0632 \u06a9\u0646\u06cc\u062f<\/strong><\/p>\n<p>\u0645\u0646 \u0627\u0632 iptables \u0628\u0647\u200c\u0639\u0646\u0648\u0627\u0646 \u0641\u0627\u06cc\u0631\u0648\u0627\u0644 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0631\u062f\u0645 \u0648 \u0628\u0627\u06cc\u062f \u067e\u0648\u0631\u062a\u200c\u0647\u0627\u06cc 8080 \u0648 9443 \u0631\u0627 \u0645\u062c\u0627\u0632 \u06a9\u0646\u0645. \u0645\u0631\u0627\u062d\u0644 \u062f\u0631 \u0627\u06cc\u0646\u062c\u0627 \u0622\u0645\u062f\u0647 \u0627\u0633\u062a:<\/p>\n<ul>\n<li>\u0628\u0631\u0631\u0633\u06cc \u0648\u0636\u0639\u06cc\u062a iptables: <code>iptables -L -n<\/code>\n<\/li>\n<li>\u06cc\u06a9 \u0642\u0627\u0646\u0648\u0646 \u0628\u0631\u0627\u06cc \u0628\u0627\u0632 \u06a9\u0631\u062f\u0646 \u06cc\u06a9 \u067e\u0648\u0631\u062a \u0627\u0636\u0627\u0641\u0647 \u06a9\u0646\u06cc\u062f (\u0645\u062b\u0644\u0627\u064b \u0628\u0631\u0627\u06cc \u067e\u0648\u0631\u062a 80): <code>iptables -I INPUT -p tcp --dport 80 -j ACCEPT<\/code>\n<\/li>\n<li>\u062a\u0646\u0638\u06cc\u0645\u0627\u062a \u0631\u0627 \u0630\u062e\u06cc\u0631\u0647 \u06a9\u0646\u06cc\u062f: <code>service iptables save<\/code> \u06cc\u0627 <code>iptables-save &gt; \/etc\/iptables.rules<\/code>\n<\/li>\n<li>\u0631\u0627\u0647 \u0627\u0646\u062f\u0627\u0632\u06cc \u0645\u062c\u062f\u062f iptables: <code>service iptables restart<\/code>\n<\/li>\n<li>\u0628\u0631\u0631\u0633\u06cc \u0648\u0636\u0639\u06cc\u062a: <code>service iptables status<\/code>\n<\/li>\n<\/ul>\n<p>2.<strong>IP \u0647\u0627 \u0631\u0627 \u0628\u0627 iptables \u0645\u0633\u062f\u0648\u062f \u06a9\u0646\u06cc\u062f<\/strong><\/p>\n<p>\u0628\u0631\u0627\u06cc \u0645\u0633\u062f\u0648\u062f \u06a9\u0631\u062f\u0646 IP \u0647\u0627\u06cc \u062e\u0627\u0635\u060c \u0627\u0632 \u062f\u0633\u062a\u0648\u0631\u0627\u062a \u0632\u06cc\u0631 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0646\u06cc\u062f:\n<\/p>\n<div class=\"highlight js-code-highlight\">\n<pre class=\"highlight shell\"><code>iptables <span class=\"nt\">-A<\/span> INPUT <span class=\"nt\">-s<\/span> IP_address <span class=\"nt\">-j<\/span> DROP\nservice iptables save\nsystemctl restart iptables\niptables <span class=\"nt\">-nvxL<\/span> <span class=\"nt\">--line<\/span>\n<\/code><\/pre>\n<\/div>\n<p><\/p>\n<p>\u0628\u0647 \u0639\u0646\u0648\u0627\u0646 \u0645\u062b\u0627\u0644\u060c \u067e\u0633 \u0627\u0632 \u0627\u0639\u0645\u0627\u0644 \u0627\u06cc\u0646 \u0642\u0648\u0627\u0646\u06cc\u0646\u060c \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0627\u0632 IP <code>45.148.10.174<\/code> \u0645\u0633\u062f\u0648\u062f \u0634\u062f\u0647 \u0627\u0633\u062a.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"%D9%82%D8%B3%D9%85%D8%AA_5_%D8%A7%D8%AC%D8%B1%D8%A7%DB%8C_%D8%AF%D9%81%D8%A7%D8%B9_%D8%AF%D8%B1_%D8%B9%D9%85%D9%82\"><\/span>\n<p>  \u0642\u0633\u0645\u062a 5: \u0627\u062c\u0631\u0627\u06cc \u062f\u0641\u0627\u0639 \u062f\u0631 \u0639\u0645\u0642<br \/>\n<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u062f\u0631 \u0627\u06cc\u0646\u062c\u0627\u060c \u0645\u0646 ModSecurity \u0631\u0627 \u0628\u0627 SafeLine WAF \u062a\u0631\u06a9\u06cc\u0628 \u0645\u06cc\u200c\u06a9\u0646\u0645 \u0648 \u0627\u0632 iptables \u0628\u0631\u0627\u06cc \u06a9\u0646\u062a\u0631\u0644 \u062f\u0633\u062a\u0631\u0633\u06cc \u0628\u0647 \u067e\u0648\u0631\u062a \u062e\u0627\u0631\u062c\u06cc \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0645\u06cc\u200c\u06a9\u0646\u0645 \u0648 \u0627\u0645\u0646\u06cc\u062a \u0642\u0648\u06cc\u200c\u062a\u0631\u06cc \u0631\u0627 \u0628\u0647 \u062f\u0633\u062a \u0645\u06cc\u200c\u0622\u0648\u0631\u0645. \u0645\u0646 \u0627\u0632 WAF \u0647\u0627\u06cc \u062f\u0648\u06af\u0627\u0646\u0647 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0645\u06cc \u06a9\u0646\u0645 \u0632\u06cc\u0631\u0627 \u0646\u0631\u062e \u0647\u0627\u06cc \u062a\u0634\u062e\u06cc\u0635 SafeLine \u0627\u0632 \u0627\u0628\u0632\u0627\u0631 \u062a\u0633\u062a \u062e\u0648\u062f\u06a9\u0627\u0631 WAF \u0646\u0634\u0627\u0646 \u0645\u06cc \u062f\u0647\u062f \u06a9\u0647 ModSecurity \u0646\u0631\u062e \u062a\u0634\u062e\u06cc\u0635 \u0628\u0627\u0644\u0627\u06cc\u06cc \u062f\u0627\u0631\u062f \u0627\u0645\u0627 \u0645\u0648\u0627\u0631\u062f \u0645\u062b\u0628\u062a \u06a9\u0627\u0630\u0628 \u0628\u0633\u06cc\u0627\u0631 \u0632\u06cc\u0627\u062f\u06cc \u062f\u0627\u0631\u062f. ModSecurity \u0641\u0627\u0642\u062f \u0631\u0627\u0628\u0637 \u06af\u0631\u0627\u0641\u06cc\u06a9\u06cc \u0627\u0633\u062a \u06a9\u0647 \u0622\u0646 \u0631\u0627 \u0628\u0631\u0627\u06cc \u062a\u0639\u0645\u06cc\u0631 \u0648 \u0646\u06af\u0647\u062f\u0627\u0631\u06cc \u0648 \u0645\u0645\u06cc\u0632\u06cc \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0686\u0627\u0644\u0634 \u0628\u0631\u0627\u0646\u06af\u06cc\u0632 \u0645\u06cc \u06a9\u0646\u062f. SafeLine \u0628\u0627 \u0646\u0631\u062e \u0645\u062b\u0628\u062a \u06a9\u0627\u0630\u0628 \u067e\u0627\u06cc\u06cc\u0646 \u0648 \u0631\u0627\u0628\u0637 \u06a9\u0627\u0631\u0628\u0631\u06cc \u06af\u0631\u0627\u0641\u06cc\u06a9\u06cc \u062e\u0648\u062f\u060c \u062f\u06cc\u062f \u0622\u0633\u0627\u0646 \u062a\u0631\u06cc \u0631\u0627 \u062f\u0631 \u062d\u0645\u0644\u0627\u062a \u0641\u0631\u0627\u0647\u0645 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>1.<strong>\u0622\u062f\u0631\u0633 \u0633\u0631\u0648\u0631 \u0628\u0627\u0644\u0627\u062f\u0633\u062a\u06cc SafeLine \u0631\u0627 \u067e\u06cc\u06a9\u0631\u0628\u0646\u062f\u06cc \u06a9\u0646\u06cc\u062f<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/media.dev.to\/cdn-cgi\/image\/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto\/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2F2evvbdo3le3zvwj57jgy.png\" alt=\"\u062a\u0648\u0636\u06cc\u062d\u0627\u062a \u062a\u0635\u0648\u06cc\u0631\" width=\"567\" height=\"657\" title=\"\"><\/p>\n<p>\u0633\u0631\u0648\u0631 \u0628\u0627\u0644\u0627\u062f\u0633\u062a \u0631\u0627 \u0631\u0648\u06cc <code>127.0.0.1<\/code> (localhost)\u060c \u0648 \u062a\u0645\u0627\u0645 \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0628\u0647 \u062c\u0632 \u0627\u0632 \u0631\u0627 \u0645\u0633\u062f\u0648\u062f \u06a9\u0646\u06cc\u062f <code>127.0.0.1<\/code>.<\/p>\n<p>2.<strong>\u0642\u0648\u0627\u0646\u06cc\u0646 \u06af\u0631\u0648\u0647 \u0627\u0645\u0646\u06cc\u062a\u06cc Cloud \u0631\u0627 \u062a\u0646\u0638\u06cc\u0645 \u06a9\u0646\u06cc\u062f<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/media.dev.to\/cdn-cgi\/image\/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto\/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2Fqi9s2x24s1qttc0sjrp7.png\" alt=\"\u062a\u0648\u0636\u06cc\u062d\u0627\u062a \u062a\u0635\u0648\u06cc\u0631\" width=\"800\" height=\"391\" title=\"\"><\/p>\n<p>\u0641\u0627\u06cc\u0631\u0648\u0627\u0644 \u0627\u0628\u0631\u06cc \u0631\u0627 \u0637\u0648\u0631\u06cc \u067e\u06cc\u06a9\u0631\u0628\u0646\u062f\u06cc \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u0641\u0642\u0637 \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0627\u0632 \u0622\u0646 \u0645\u062c\u0627\u0632 \u0628\u0627\u0634\u062f <code>127.0.0.1<\/code> \u062f\u0631 \u067e\u0648\u0631\u062a 8080<\/p>\n<p>3.<strong>\u0642\u0648\u0627\u0646\u06cc\u0646 iptables \u0631\u0627 \u0627\u0639\u0645\u0627\u0644 \u06a9\u0646\u06cc\u062f<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/media.dev.to\/cdn-cgi\/image\/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto\/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2F8qfhihsrvnhyui5d0rxh.png\" alt=\"\u062a\u0648\u0636\u06cc\u062d\u0627\u062a \u062a\u0635\u0648\u06cc\u0631\" width=\"800\" height=\"279\" title=\"\"><\/p>\n<p>\u0647\u0645\u0627\u0646\u0637\u0648\u0631 \u06a9\u0647 \u0642\u0628\u0644\u0627\u064b \u067e\u0648\u0631\u062a 8080 \u0631\u0627 \u0628\u0631\u0627\u06cc \u0647\u0645\u0647 IP \u0647\u0627 \u0628\u0627\u0632 \u06a9\u0631\u062f\u0647 \u0628\u0648\u062f\u0645\u060c \u0642\u0648\u0627\u0646\u06cc\u0646 \u0632\u06cc\u0631 \u0631\u0627 \u0628\u0631\u0627\u06cc \u0645\u062d\u062f\u0648\u062f \u06a9\u0631\u062f\u0646 \u062f\u0633\u062a\u0631\u0633\u06cc \u0627\u0639\u0645\u0627\u0644 \u06a9\u0631\u062f\u0645:\n<\/p>\n<div class=\"highlight js-code-highlight\">\n<pre class=\"highlight shell\"><code>iptables <span class=\"nt\">-A<\/span> INPUT <span class=\"nt\">-i<\/span> lo <span class=\"nt\">-p<\/span> tcp <span class=\"nt\">--dport<\/span> 8080 <span class=\"nt\">-s<\/span> 127.0.0.1 <span class=\"nt\">-j<\/span> ACCEPT\niptables <span class=\"nt\">-A<\/span> INPUT <span class=\"nt\">-i<\/span> lo <span class=\"nt\">-p<\/span> tcp <span class=\"nt\">--dport<\/span> 8080 <span class=\"nt\">-j<\/span> DROP\niptables <span class=\"nt\">-D<\/span> INPUT 2\n<\/code><\/pre>\n<\/div>\n<p>\u062a\u0648\u0636\u06cc\u062d \u062f\u0633\u062a\u0648\u0631\u0627\u062a:<\/p>\n<ul>\n<li>\n<code>-A INPUT<\/code>: \u06cc\u06a9 \u0642\u0627\u0646\u0648\u0646 \u0628\u0647 \u0632\u0646\u062c\u06cc\u0631\u0647 INPUT (\u0628\u0631\u0627\u06cc \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0648\u0631\u0648\u062f\u06cc) \u0627\u0636\u0627\u0641\u0647 \u0645\u06cc \u06a9\u0646\u062f.<\/li>\n<li>\n<code>-i lo<\/code>: \u0628\u0627 \u0631\u0627\u0628\u0637 Loopback \u0645\u062d\u0644\u06cc (lo) \u0645\u0637\u0627\u0628\u0642\u062a \u062f\u0627\u0631\u062f.<\/li>\n<li>\n<code>-p tcp<\/code>: \u067e\u0631\u0648\u062a\u06a9\u0644 \u0631\u0627 \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 TCP \u0645\u0634\u062e\u0635 \u0645\u06cc \u06a9\u0646\u062f.<\/li>\n<li>\n<code>--dport 8080<\/code>: \u067e\u0648\u0631\u062a 8080 \u0631\u0627 \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 \u0645\u0642\u0635\u062f \u0645\u0634\u062e\u0635 \u0645\u06cc \u06a9\u0646\u062f.<\/li>\n<li>\n<code>-s 127.0.0.1<\/code>: \u0641\u0642\u0637 \u0628\u0647 \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0627\u0632 127.0.0.1 \u0627\u062c\u0627\u0632\u0647 \u0645\u06cc \u062f\u0647\u062f.<\/li>\n<li>\n<code>-j ACCEPT<\/code>: \u0627\u062a\u0635\u0627\u0644 \u0631\u0627 \u0645\u06cc \u067e\u0630\u06cc\u0631\u062f.<\/li>\n<\/ul>\n<p>\u0642\u0627\u0646\u0648\u0646 \u062f\u0648\u0645 \u062a\u0631\u0627\u0641\u06cc\u06a9\u06cc \u0631\u0627 \u06a9\u0647 \u0628\u0627 127.0.0.1 \u0645\u0637\u0627\u0628\u0642\u062a \u0646\u062f\u0627\u0631\u062f \u062d\u0630\u0641 \u0645\u06cc \u06a9\u0646\u062f. \u0641\u0631\u0645\u0627\u0646 \u0633\u0648\u0645 \u0642\u0627\u0646\u0648\u0646 \u0642\u0628\u0644\u06cc \u067e\u0648\u0631\u062a 8080 \u0631\u0627 \u062d\u0630\u0641 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"%D8%A8%D8%AE%D8%B4_6_%D9%85%D8%B3%D8%A7%D8%A6%D9%84_%D9%88_%D8%B1%D8%A7%D9%87_%D8%AD%D9%84_%D9%87%D8%A7\"><\/span>\n<p>  \u0628\u062e\u0634 6: \u0645\u0633\u0627\u0626\u0644 \u0648 \u0631\u0627\u0647 \u062d\u0644 \u0647\u0627<br \/>\n<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>1.<strong>nginx: [alert] kill(30127, 1) \u0646\u0627\u0645\u0648\u0641\u0642 (3: \u0686\u0646\u06cc\u0646 \u0641\u0631\u0622\u06cc\u0646\u062f\u06cc \u0648\u062c\u0648\u062f \u0646\u062f\u0627\u0631\u062f)<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/media.dev.to\/cdn-cgi\/image\/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto\/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2Fobubzjdqvp6st3jtq50b.png\" alt=\"\u062a\u0648\u0636\u06cc\u062d\u0627\u062a \u062a\u0635\u0648\u06cc\u0631\" width=\"800\" height=\"415\" title=\"\"><\/p>\n<p>\u0631\u0627\u0647 \u062d\u0644:\n<\/p>\n<div class=\"highlight js-code-highlight\">\n<pre class=\"highlight shell\"><code>\/usr\/local\/nginx\/sbin\/nginx <span class=\"nt\">-c<\/span> \/usr\/local\/nginx\/conf\/nginx.conf\n<\/code><\/pre>\n<\/div>\n<p>\u0645\u0633\u06cc\u0631 <code>\/usr\/local\/nginx\/sbin\/nginx<\/code> \u0628\u0647 \u0641\u0627\u06cc\u0644 \u0627\u062c\u0631\u0627\u06cc\u06cc Nginx \u0627\u0634\u0627\u0631\u0647 \u0645\u06cc \u06a9\u0646\u062f \u0648 <code>-c \/usr\/local\/nginx\/conf\/nginx.conf<\/code> \u0641\u0627\u06cc\u0644 \u067e\u06cc\u06a9\u0631\u0628\u0646\u062f\u06cc \u0631\u0627 \u0645\u0634\u062e\u0635 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<p>2.<strong>nginx: [error] open() &#8220;\/usr\/local\/nginx\/logs\/nginx.pid&#8221; \u0646\u0627\u0645\u0648\u0641\u0642 \u0628\u0648\u062f (2: \u0686\u0646\u06cc\u0646 \u0641\u0627\u06cc\u0644 \u06cc\u0627 \u062f\u0627\u06cc\u0631\u06a9\u062a\u0648\u0631\u06cc \u0648\u062c\u0648\u062f \u0646\u062f\u0627\u0631\u062f)<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/media.dev.to\/cdn-cgi\/image\/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto\/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2F3khovg6ryeh845tkos8s.png\" alt=\"\u062a\u0648\u0636\u06cc\u062d\u0627\u062a \u062a\u0635\u0648\u06cc\u0631\" width=\"800\" height=\"424\" title=\"\"><\/p>\n<p>\u0628\u0631\u0627\u06cc \u062a\u0648\u0644\u06cc\u062f\u060c \u062f\u0633\u062a\u0648\u0631 \u0642\u0628\u0644\u06cc \u0631\u0627 \u062f\u0648\u0628\u0627\u0631\u0647 \u0627\u062c\u0631\u0627 \u06a9\u0646\u06cc\u062f <code>nginx.pid<\/code>. \u0627\u06af\u0631 \u0647\u0646\u06af\u0627\u0645 \u0627\u062c\u0631\u0627 \u062f\u0648\u0628\u0627\u0631\u0647 \u0628\u0627 \u0627\u06cc\u0646 \u062e\u0637\u0627 \u0645\u0648\u0627\u062c\u0647 \u0634\u062f\u06cc\u062f <code>nginx -s reload<\/code>\u060c \u0628\u0631\u0631\u0633\u06cc \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u0622\u06cc\u0627 PID \u0645\u0648\u062c\u0648\u062f \u062f\u0631 \u0641\u0627\u06cc\u0644 \u0628\u0627 \u0634\u0646\u0627\u0633\u0647 \u0641\u0631\u0622\u06cc\u0646\u062f \u067e\u0648\u0631\u062a \u0645\u0637\u0627\u0628\u0642\u062a \u062f\u0627\u0631\u062f \u06cc\u0627 \u062e\u06cc\u0631:\n<\/p>\n<div class=\"highlight js-code-highlight\">\n<pre class=\"highlight shell\"><code>netstat <span class=\"nt\">-ntlp<\/span>\n<\/code><\/pre>\n<\/div>\n<p>\u0628\u0647 \u0631\u0648\u0632 \u0631\u0633\u0627\u0646\u06cc PID \u062f\u0631 <code>nginx.pid<\/code> \u0641\u0627\u06cc\u0644 \u0648 Nginx \u0631\u0627 \u0645\u062c\u062f\u062f\u0627 \u0631\u0627\u0647 \u0627\u0646\u062f\u0627\u0632\u06cc \u06a9\u0646\u06cc\u062f.<\/p>\n<p>3.<strong>\u0645\u0634\u06a9\u0644\u0627\u062a \u0631\u0627\u06cc\u062c SafeLine<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/media.dev.to\/cdn-cgi\/image\/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto\/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2Fcxe0sgq6azg885u8guka.png\" alt=\"\u062a\u0648\u0636\u06cc\u062d\u0627\u062a \u062a\u0635\u0648\u06cc\u0631\" width=\"800\" height=\"391\" title=\"\"><\/p>\n<p>\u0628\u0631\u0627\u06cc \u0639\u06cc\u0628 \u06cc\u0627\u0628\u06cc \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0628\u0647 \u0627\u0633\u0646\u0627\u062f \u0631\u0633\u0645\u06cc \u0645\u0631\u0627\u062c\u0639\u0647 \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u062f\u0631 \u0622\u062f\u0631\u0633 \u0632\u06cc\u0631 \u0645\u0648\u062c\u0648\u062f \u0627\u0633\u062a:<strong>\u0633\u0648\u0627\u0644\u0627\u062a \u0645\u062a\u062f\u0627\u0648\u0644<\/strong><\/p>\n<h2><span class=\"ez-toc-section\" id=\"%D9%86%D8%AA%DB%8C%D8%AC%D9%87_%DA%AF%DB%8C%D8%B1%DB%8C\"><\/span>\n<p>  \u0646\u062a\u06cc\u062c\u0647 \u06af\u06cc\u0631\u06cc<br \/>\n<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>\u0645\u0632\u0627\u06cc\u0627\u06cc \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 SafeLine \u0648 ModSecurity \u0631\u0627 \u0628\u0647 \u0635\u0648\u0631\u062a \u067e\u0634\u062a \u0633\u0631 \u0647\u0645 \u0628\u0631\u0627\u06cc \u0631\u0627\u0647 \u0627\u0646\u062f\u0627\u0632\u06cc \u0627\u0645\u0646\u06cc\u062a \u0648\u0628 \u0642\u0648\u06cc \u062e\u0644\u0627\u0635\u0647 \u06a9\u0646\u06cc\u062f. \u0630\u06a9\u0631 \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u0686\u06af\u0648\u0646\u0647 \u0627\u06cc\u0646 \u062d\u0641\u0627\u0638\u062a \u062f\u0648 \u0644\u0627\u06cc\u0647 \u0628\u0647 \u0645\u0642\u0627\u0628\u0644\u0647 \u0628\u0627 \u062a\u0647\u062f\u06cc\u062f\u0627\u062a \u067e\u06cc\u0686\u06cc\u062f\u0647 \u06a9\u0645\u06a9 \u0645\u06cc \u06a9\u0646\u062f\u060c \u0628\u0627 \u0631\u0627\u0628\u0637 \u06a9\u0627\u0631\u0628\u0631 \u067e\u0633\u0646\u062f SafeLine \u06a9\u0647 \u0638\u0631\u0641\u06cc\u062a \u062a\u0634\u062e\u06cc\u0635 \u0628\u0627\u0644\u0627\u06cc ModSecurity \u0631\u0627 \u062a\u06a9\u0645\u06cc\u0644 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Summarize this content to 400 words in Persian Lang \u0645\u0642\u0627\u0644\u0647 \u06a9\u0645\u06cc \u0637\u0648\u0644\u0627\u0646\u06cc \u0627\u0633\u062a\u060c \u0628\u0646\u0627\u0628\u0631\u0627\u06cc\u0646 \u0645\u0646 \u0622\u0646 \u0631\u0627 \u062f\u0631 \u062f\u0648 \u0642\u0633\u0645\u062a \u0627\u0631\u0633\u0627\u0644 \u06a9\u0631\u062f\u0645\u060c \u0646\u06cc\u0645\u0647 \u062f\u06cc\u06af\u0631 \u0627\u06cc\u0646\u062c\u0627\u0633\u062a:ModSecurity + SafeLine WAF \u0628\u0631\u0627\u06cc \u062f\u0641\u0627\u0639 \u0686\u0646\u062f \u0644\u0627\u06cc\u0647 (1) \u0628\u062e\u0634 4: \u0633\u062e\u062a \u0634\u062f\u0646 \u0633\u06cc\u0633\u062a\u0645 1.\u067e\u0648\u0631\u062a\u200c\u0647\u0627 \u0631\u0627 \u062f\u0631 iptables \u0645\u062c\u0627\u0632 \u06a9\u0646\u06cc\u062f \u0645\u0646 \u0627\u0632 iptables \u0628\u0647\u200c\u0639\u0646\u0648\u0627\u0646 \u0641\u0627\u06cc\u0631\u0648\u0627\u0644 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0631\u062f\u0645 \u0648 \u0628\u0627\u06cc\u062f \u067e\u0648\u0631\u062a\u200c\u0647\u0627\u06cc 8080 &hellip;<\/p>\n","protected":false},"author":2,"featured_media":76393,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"","fifu_image_alt":"","footnotes":""},"categories":[339],"tags":[],"class_list":["post-76392","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-dev"],"_links":{"self":[{"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/posts\/76392","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/comments?post=76392"}],"version-history":[{"count":0,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/posts\/76392\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/media\/76393"}],"wp:attachment":[{"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/media?parent=76392"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/categories?post=76392"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/tags?post=76392"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}