Check out http://www.enteract.com/~lspitz/linux.html
There's some other interesting stuff at
http://www.enteract.com/~lspitz/pubs.html
by the same author.
namaste,
Mark
BTW - Just to reiterate what has already been said, !Inetd != secure.
Inetd just watches certain processes to make sure they are running, like
telnet, ftp...whatever. That doesn't mean that some process cannot listen
on a port without having been started or watched by inetd.
On Thu, 14 Oct 1999, Robert Kennedy wrote:
> Date: Thu, 14 Oct 1999 07:14:25 -0500 (CDT)
> From: Robert Kennedy <[EMAIL PROTECTED]>
> To: R. J. Woodward <[EMAIL PROTECTED]>
> Cc: "[EMAIL PROTECTED]" <[EMAIL PROTECTED]>
> Subject: Re: !Inetd == secure? (was Re: Cable Modem and dhcpcd...too easy)
>
>
> Running 'netstat -tap' will tell you what ports are listening.
>
> Also check out comp.os.linux.security. Recently they had a whole slew of
> postings with links to good web resources on locking down Linux.
> "Armoring Linux" by L Spitz? Was pretty good. I can't recall the URL,
> though it should be easy enough to find.
>
> Cheers,
> Robert K.
>
>
>
> On Wed, 13 Oct 1999, R. J. Woodward wrote:
>
> > At 07:22 AM 10/13/99 -0500, Michael H. Collins wrote:
> > > In answer to the first question, It is very insecure. You need
> > > to set
> > >up firewalling right away.. The script kiddies run rampant on rr.
> >
> > OK. I do not feel bad asking this question.
> >
> > I am not running inetd. Therefore, nothing is listening to my (RR)
> > connection. I have IPChains set up to do routing for my Win98 box behind
> > my Mandrake 6.5 (or 6.1 whatever) box.
> >
> > What can a script kiddie do under these conditions?
> >
> > When I start configuring this box more aggressively, I will put Abacus on
> > it, and tighten it down, but I don't think there is anything to worry about
> > now.
> >
> > Ready? Fight!
> > R. J. 10-13-99 9:35p.
> >
> >
> > ****************************************************************
> > Banging your head against a wall uses 150 calories an hour.
> > ---------------------------------------------------------------------------
> > Send administrative requests to [EMAIL PROTECTED]
> >
>
> ---------------------------------------------------------------------------
> Send administrative requests to [EMAIL PROTECTED]
>
---------------------------------------------------------------------------
Send administrative requests to [EMAIL PROTECTED]