At 11:22 AM 4/14/00 -0500, Randy Snow wrote:
>Login as root, then issue this command.
>
>netstat -vpnl
>
>See what's open with that. That should show you what is listening on all
>your ports. :)
>
Looks like portsentry is running on most of these that are reported as
open. I'm going to need to go to the search engines to learn more about
pafserver and thttpd-phoenix and a couple others to see if I really need
them all running.
Active Internet connections (only servers)
Proto Recv-Q Send-Q Local Address Foreign Address State
PID/Program name
tcp 0 0 0.0.0.0:3128 0.0.0.0:* LISTEN
762/(squid)
tcp 0 0 0.0.0.0:54320 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:49724 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:40421 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:32774 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:32773 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:32772 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:32771 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:31337 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:20034 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:12346 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:12345 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:6667 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:5742 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:2000 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:1524 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:1080 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:635 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:540 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:143 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:119 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:79 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:15 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:11 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:1 0.0.0.0:* LISTEN
795/portsentry
tcp 0 0 0.0.0.0:80 0.0.0.0:* LISTEN
735/httpd
tcp 0 0 0.0.0.0:25 0.0.0.0:* LISTEN
702/sendmail: accep
tcp 0 0 0.0.0.0:2005 0.0.0.0:* LISTEN
659/pafserver
tcp 0 0 0.0.0.0:8181 0.0.0.0:* LISTEN
661/thttpd-phoenix
tcp 0 0 0.0.0.0:515 0.0.0.0:* LISTEN
642/lpd
tcp 0 0 0.0.0.0:111 0.0.0.0:* LISTEN
295/portmap
udp 0 0 0.0.0.0:54321 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:31337 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:32774 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:32773 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:32772 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:32771 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:32770 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:700 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:641 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:640 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:635 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:513 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:162 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:161 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:69 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:9 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:7 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:1 0.0.0.0:*
797/portsentry
udp 0 0 0.0.0.0:3401 0.0.0.0:*
762/(squid)
udp 0 0 0.0.0.0:3130 0.0.0.0:*
762/(squid)
udp 0 0 0.0.0.0:111 0.0.0.0:*
295/portmap
raw 0 0 0.0.0.0:1 0.0.0.0:* 7
-
raw 0 0 0.0.0.0:6 0.0.0.0:* 7
-
Active UNIX domain sockets (only servers)
Proto RefCnt Flags Type State I-Node PID/Program name
Path
unix 0 [ ACC ] STREAM LISTENING 822 783/xfs
/tmp/.font-unix/fs-1
unix 0 [ ACC ] STREAM LISTENING 753 719/gpm
/dev/gpmctl
unix 0 [ ACC ] STREAM LISTENING 676 642/lpd
/dev/printer
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]