Howdy Jean-Lewis!

I would personally recommend using ssh (scp or sftp) if at all possible for 
moving your Web pages instead of FTP, as the FTP session is not encrypted.

Just make sure you are using an up-to-date SMTP agent. I don't think Sendmail 
has had a remote root exploit since 1997, but has had some recent local root 
exploits.

I don't know if identd (113) is actually needed, although I think remote MTAs 
attempt to query your ident server to find the UNIX user sending mail. It is 
probably also necessary for IRC. I don't think having it open is very risky.

My two cents :)

Brandon

On Tuesday 20 November 2001 10:06 am, you wrote:
> I'm trying to limit the ports open on a Linux box.
>
> If I reduce the list to :
> - SMTP/25
> - ssh/22
> - proftp/21
> - http/80
> - https/443
> - authentication/113
>
> Do you think that will work ok? that box is a web server only, with
> proftp/ssh session for updating pages.
>
> Thanks to all.
>
> Have a nice day.
>
> Jean-Louis

Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com

Reply via email to