說(shuō)明:大家平時(shí)對(duì)Linux服務(wù)器安全主要是對(duì)系統(tǒng)用戶的檢查,登陸服務(wù)器IP檢查,以及防火墻狀態(tài)檢查!
1.需要把正確系統(tǒng)用戶名存儲(chǔ)在/root/liu_shell/local_user.txt文件中,然后進(jìn)行比較!
2.對(duì)登陸IP判斷是不是以192.168.1和192.168.2開(kāi)頭的IP為正常IP!
3.判斷iptables狀態(tài)!
復(fù)制代碼 代碼如下:
#!/usr/bin/python
#coding=utf-8
import sys,os,re,socket
host=str(socket.gethostname().strip())
fuhao=os.linesep
def user_panduan():
file01=file('/etc/passwd')
mmm=[]
for xx in file01:
mmm.append(re.split(':',xx)[0])
file01.close()
file02=file('/root/liu_shell/new_user.txt','w')
for yy in mmm:
file02.write('%s%s' %(yy,fuhao))
file02.close()
f_local=file('/root/liu_shell/local_user.txt')
f_new=file('/root/liu_shell/new_user.txt')
local_user=[]
new_user=[]
for line1 in f_local:
line1=line1.strip()
local_user.append(line1)
for line2 in f_new:
line2=line2.strip()
new_user.append(line2)
f_local.close()
f_new.close()
if local_user==new_user:
print 'host:%s user ok' %host
else:
cmd="echo 'host:%s user error' |mail -s user_error 331095659@qq.com " %host
os.system(cmd)
def ip_panduan():
os.system("last|awk '{print $3}'|grep -v [a-z]|grep -v ^$|sort |uniq >/root/liu_shell/local_ip.txt")
f_ip=file('/root/liu_shell/local_ip.txt')
local_ip=[]
for line in f_ip:
line=line.strip()
local_ip.append(line)
for aa in local_ip:
kk=re.match('192.168.1|192.168.2',aa)
if kk:
print 'host:%s ip ok' %host
else:
cmd="echo 'host:%s ip error' |mail -s ip_error 331095659@qq.com " %host
os.system(cmd)
def iptables_panduan():
iptables_status=int(os.popen("/sbin/iptables -nL|grep -v ^$|wc -l").readline().strip())
if iptables_status==6:
cmd="echo 'host:%s iptables not running!' |mail -s iptables 331095659@qq.com " %host
os.system(cmd)
else:
print 'host:%s iptable running ok' %host
user_panduan()
ip_panduan()
iptables_panduan()
您可能感興趣的文章:- Shell腳本監(jiān)控服務(wù)器在線狀態(tài)和郵件報(bào)警的方法
- linux服務(wù)器安全加固shell腳本代碼
- 用shell+sendmail實(shí)現(xiàn)服務(wù)器監(jiān)控報(bào)警小腳本
- shell腳本從SVN推送到多臺(tái)服務(wù)器的代碼
- 使用xp_cmdshell注銷(xiāo)Windows登錄用戶(終端服務(wù)器超出最大連接數(shù))