Check out http://www.enteract.com/~lspitz/linux.html
There's some other interesting stuff at
http://www.enteract.com/~lspitz/pubs.html
by the same author.

namaste,
Mark

BTW - Just to reiterate what has already been said, !Inetd != secure.
Inetd just watches certain processes to make sure they are running, like
telnet, ftp...whatever. That doesn't mean that some process cannot listen
on a port without having been started or watched by inetd.


On Thu, 14 Oct 1999, Robert Kennedy wrote:

> Date: Thu, 14 Oct 1999 07:14:25 -0500 (CDT)
> From: Robert Kennedy <[EMAIL PROTECTED]>
> To: R. J. Woodward <[EMAIL PROTECTED]>
> Cc: "[EMAIL PROTECTED]" <[EMAIL PROTECTED]>
> Subject: Re: !Inetd == secure? (was Re: Cable Modem and dhcpcd...too easy)
> 
> 
> Running 'netstat -tap' will tell you what ports are listening.
> 
> Also check out comp.os.linux.security.  Recently they had a whole slew of
> postings with links to good web resources on locking down Linux.
> "Armoring Linux" by L Spitz?  Was pretty good.  I can't recall the URL,
> though it should be easy enough to find.
> 
> Cheers,
> Robert K.
> 
> 
> 
> On Wed, 13 Oct 1999, R. J. Woodward wrote:
> 
> > At 07:22 AM 10/13/99 -0500, Michael H. Collins wrote:
> > >         In answer to the first question, It is very insecure.  You need 
> > > to set
> > >up firewalling right away..  The script kiddies run rampant on rr.
> > 
> > OK.  I do not feel bad asking this question.
> > 
> > I am not running inetd.  Therefore, nothing is listening to my (RR) 
> > connection.  I have IPChains set up to do routing for my Win98 box behind 
> > my Mandrake 6.5 (or 6.1 whatever) box.
> > 
> > What can a script kiddie do under these conditions?
> > 
> > When I start configuring this box more aggressively, I will put Abacus on 
> > it, and tighten it down, but I don't think there is anything to worry about 
> > now.
> > 
> > Ready?  Fight!
> > R. J.  10-13-99  9:35p.
> > 
> > 
> > ****************************************************************
> > Banging your head against a wall uses 150 calories an hour.
> > ---------------------------------------------------------------------------
> > Send administrative requests to [EMAIL PROTECTED]
> > 
> 
> ---------------------------------------------------------------------------
> Send administrative requests to [EMAIL PROTECTED]
> 

---------------------------------------------------------------------------
Send administrative requests to [EMAIL PROTECTED]

Reply via email to