On Mon, Dec 07, 1998 at 01:10:01AM -0800, Javilk wrote:
> Suggestions on other lists are to check your /etc/inetd.comf file,
> turn off just about everything unless you are sure you need it. You don't
> need shell, login, telnet, etc. in most cases if you do not have other
> people log in to your machine. If you are not serving FTP, turn that off
> too. Imapd has some security bug in it, so it should either be turned
> off, or replaced if you really, really need it.
I second this recommendation. You should explicitly turn off every
service that you don't need, which in part involves commenting things
out in /etc/inetd.conf and sending a SIGHUP to inetd, and in part
involves looking at what daemons are running standalone and deciding
whether to let them continue doing so or not.
Additionally, it's not a bad idea to enable tcp-wrappers or use the
TIS firewall toolkit to control access to the services that you
allow to continue to run. You can also use both to keep track of
who's probing you, which sometimes makes for interesting reading.
---Rsk
Rich Kulawiec
[EMAIL PROTECTED]
____________________________________________________________________
--------------------------------------------------------------------
Join The Web Consultants Association : Register on our web site Now
Web Consultants Web Site : http://just4u.com/webconsultants
If you lose the instructions All subscription/unsubscribing can be done
directly from our website for all our lists.
---------------------------------------------------------------------