Re: [CentOS] Securing RPC

2016-07-04 Thread Keith Keller
On 2016-07-01, Leon Vergottini wrote: > > Unfortunately, I cannot disable NFS which lies at the root of this > problem. In addition, I am struggling to find a proper tutorial of moving > NFS from udp over to tcp. I think the best thing to do is to set up VPN links

Re: [CentOS] Securing RPC

2016-07-01 Thread Brian Mathis
You need to setup a firewall (either a separate hardware box or iptables on this server) that allows only those IPs you need to connect to those ports. You should never expose a service like this to the entire Internet. ~ Brian Mathis @orev On Fri, Jul 1, 2016 at 8:38 AM, Leon Vergottini

Re: [CentOS] Securing RPC

2016-07-01 Thread Eero Volotinen
Are you really exposing portmapper (RPC) and NFS to public network? Eero 2016-07-01 9:38 GMT+03:00 Leon Vergottini : > Dear Community > > I hope you are all doing well. > > Recently I have been receiving several complaints from our service > provider. Please see the

[CentOS] Securing RPC

2016-07-01 Thread Leon Vergottini
Dear Community I hope you are all doing well. Recently I have been receiving several complaints from our service provider. Please see the complaint below: A public-facing device on your network, running on IP address XXX.XXX.XXX.XXX, operates a RPC port mapping service responding on UDP port