On Thu, 16 Apr 1998, Ed Jaeger wrote:

> In llooking throgh the logs this morning on our firewall/masquerade box I
> found the following:

ident lookups.  Most likely someone behind your firewall was using IRC, or
connecting to a web server that does ident lookups.

Ident is harmless, but I heard unsubstantiated rumors that ident has a
remote root exploit in it.  One thing that I DID confirm was that ident is
not run through tcpd in many default configurations, so you should change
the ident line in /etc/inetd.conf to use tcpd like the rest of the
services, just to be safe.  (Then the worst that could happen would be a
remote access hole, which is pretty harmless most cases).


-- 
  PLEASE read the Red Hat FAQ, Tips, Errata and the MAILING LIST ARCHIVES!
http://www.redhat.com/RedHat-FAQ /RedHat-Errata /RedHat-Tips /mailing-lists
         To unsubscribe: mail [EMAIL PROTECTED] with 
                       "unsubscribe" as the Subject.

Reply via email to