Incoming from s. keeling:
> [snip]
> in (x)inetd.conf that you don't really need.  Replace complex,
> potential problem daemons with sufficient, secure alternatives (DNS:
> maradns caching server; SMTP: ssmtp; ...).

... identd: fauxident; telnet/ftp/remote sh: ssh

If you don't need to connect into that box from the outside, disable
sshd.  Make sure your kernel is up to date and patched against the
known remote exploits.  Lock down hosts.allow and hosts.deny. 


-- 
Any technology distinguishable from magic is insufficiently advanced.
(*)               http://www.spots.ab.ca/~keeling 
- -

_______________________________________________
clug-talk mailing list
[EMAIL PROTECTED]
http://clug.ca/mailman/listinfo/clug-talk_clug.ca

Reply via email to