第一步,上锁
echo -e "n===== 创世神核心强锁版 - 一键上锁 =====" &&
# 1. 账户与权限体系(防提权/后门用户)
chattr +i /etc/passwd /etc/shadow /etc/group /etc/gshadow /etc/sudoers /etc/sudoers.d/* &&
# 2. SSH与远程登录(防篡改配置/留后门)
chattr +i /etc/ssh/sshd_config /etc/ssh/ssh_config /etc/pam.d/sshd &&
# 3. 系统安全策略(防绕过/篡改安全规则)
chattr -R +i /etc/security &&
# 4. 日志防篡改/防清空(防黑客抹除痕迹)
chattr +a /var/log /var/log/* &&
# 5. 系统启动关键文件(防开机后门)
chattr +i /etc/rc.local /etc/profile /etc/bashrc /etc/bash.bashrc &&
echo -e "n✅ 核心强锁完成!不影响宝塔/网站,防护拉满"
第二步,解锁
echo -e "n===== 创世神核心强锁版 - 一键解锁 =====" &&
chattr -i /etc/passwd /etc/shadow /etc/group /etc/gshadow /etc/sudoers /etc/sudoers.d/* &&
chattr -i /etc/ssh/sshd_config /etc/ssh/ssh_config /etc/pam.d/sshd &&
chattr -R -i /etc/security &&
chattr -a /var/log /var/log/* &&
chattr -i /etc/rc.local /etc/profile /etc/bashrc /etc/bash.bashrc &&
echo -e "n✅ 解锁完成!可正常操作,用完记得重新上锁"
第三步,验证
echo -e "n===== 创世神锁定状态检查 =====" &&
echo "[账户/权限文件]:" && lsattr /etc/passwd /etc/shadow /etc/sudoers &&
echo -e "n[SSH配置]:" && lsattr /etc/ssh/sshd_config /etc/ssh/ssh_config &&
echo -e "n[系统启动配置]:" && lsattr /etc/profile /etc/bashrc &&
echo -e "n[定时任务配置]:" && lsattr /etc/crontab /var/spool/cron/root &&
echo -e "n[日志目录]:" && lsattr /var/log | head -5 &&
echo -e "n提示:----i----=已锁定,----a----=日志防删除保护"
第四步,再上锁更强双排

echo -e "n===== 创世神极限强化版 - 一键上锁 =====" &&
# 1. 账户与权限体系(防提权/后门用户)
chattr +i /etc/passwd /etc/shadow /etc/group /etc/gshadow /etc/sudoers /etc/sudoers.d/* &&
# 2. SSH与远程登录(防篡改配置/留后门)
chattr +i /etc/ssh/sshd_config /etc/ssh/ssh_config /etc/pam.d/sshd &&
# 3. 系统安全策略(防绕过/篡改安全规则)
chattr -R +i /etc/security &&
# 4. 日志防篡改/防清空(防黑客抹除痕迹)
chattr +a /var/log /var/log/* &&
# 5. 系统启动与环境配置(防开机后门/环境变量篡改)
chattr +i /etc/rc.local /etc/profile /etc/bashrc /etc/bash.bashrc /etc/environment &&
# 6. 网络与防火墙配置(防篡改端口/规则)
chattr +i /etc/sysconfig/iptables /etc/sysconfig/ip6tables /etc/firewalld &&
# 7. 定时任务配置(防定时后门/挖矿脚本)
chattr +i /etc/crontab /etc/cron.* /var/spool/cron/root &&
echo -e "n✅ 极限强化锁完成!防护拉满,宝塔/网站100%正常"
第五步,连续解锁
echo -e "n===== 创世神极限强化版 - 一键解锁 =====" &&
chattr -i /etc/passwd /etc/shadow /etc/group /etc/gshadow /etc/sudoers /etc/sudoers.d/* &&
chattr -i /etc/ssh/sshd_config /etc/ssh/ssh_config /etc/pam.d/sshd &&
chattr -R -i /etc/security &&
chattr -a /var/log /var/log/* &&
chattr -i /etc/rc.local /etc/profile /etc/bashrc /etc/bash.bashrc /etc/environment &&
chattr -i /etc/sysconfig/iptables /etc/sysconfig/ip6tables /etc/firewalld &&
chattr -i /etc/crontab /etc/cron.* /var/spool/cron/root &&
echo -e "n✅ 解锁完成!可正常操作,用完记得重新上锁"
© 版权声明
THE END
暂无评论内容