On Wed, 13 Oct 1999, R. J. Woodward wrote:

> OK.  I do not feel bad asking this question.
> 
> I am not running inetd.  Therefore, nothing is listening to my (RR) 
> connection.  I have IPChains set up to do routing for my Win98 box behind 
> my Mandrake 6.5 (or 6.1 whatever) box.
> 
> What can a script kiddie do under these conditions?

Are you sure nothing is listening? I would check lpd, xdmcp (if you run
xdm/kdm/gdm),syslog and X.  There is certainly no point in configuring a
firewall to block out ports where nothing is running but you might want to
check for any other services running.  For example, if you run xdm, the
/etc/X11/xdm/Xaccess often allows xdmcp access from anywhere by default so
anyone could get the login box. 
 
> When I start configuring this box more aggressively, I will put Abacus on 
> it, and tighten it down, but I don't think there is anything to worry about 
> now.
You are probably right that you have little to worry about. Since you are
running IP masquerading already though it would be trivial to simply add a
few extra rules to block some things.    

-- 
-Peter Frouman | [EMAIL PROTECTED]
the excuse server says:
Having to manually track the satellite. 

---------------------------------------------------------------------------
Send administrative requests to [EMAIL PROTECTED]

Reply via email to