Re: about nmap

From: Peter Rosa (prosa_at_pro.sk)
Date: 08/09/04

  • Next message: Kenzo: "firewalk"
    To: "FreeBSD Security" <freebsd-security@freebsd.org>
    Date: Mon, 9 Aug 2004 09:00:04 +0200
    
    

    > When I find something open and check
    > it again, it is closed. And... cannot
    > close "syslogd" for report issues.

    At least, can not you run syslogd with syslogd_flags="-ss" in /etc/rc.conf ?
    It disables listening on 514 at all, but still works locally.
    Do not use it, if your machine is used as syslogd "file server" for other
    machines !

    And what about some milter ? It could open some local connections on high
    ports. Do not you have some kind of antispam system on your machine ? Or
    DansGuardian or something like ?

    Have you tried to run "sockstat >> /some/file" every minute from cron and
    try to find which process opens the port ?

    Peter Rosa

    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"


  • Next message: Kenzo: "firewalk"

    Relevant Pages

    • OT: Trend Micro WFBS beta starting soon
      ... getting pattern updates for laptops off the LAN. ... Trend firewall, even set to High, has inbound NetBIOS ports open. ... File and Printer Sharing" and when someone chooses it, it opens inbound ...
      (microsoft.public.windows.server.sbs)
    • Re: Trend Micro WFBS beta starting soon
      ... before getting pattern updates for laptops off the LAN. ... Trend firewall, even set to High, has inbound NetBIOS ports open. ... File and Printer Sharing" and when someone chooses it, it opens inbound ...
      (microsoft.public.windows.server.sbs)
    • Re: Trend Micro WFBS beta starting soon
      ... before getting pattern updates for laptops off the LAN. ... Trend firewall, even set to High, has inbound NetBIOS ports open. ... File and Printer Sharing" and when someone chooses it, it opens inbound ...
      (microsoft.public.windows.server.sbs)
    • Re: Norton Personal Firewall 2003
      ... that the ports are open bot if i'm running the p2p ... it was possible to download 'infected' versions of KaZaA ... If you actually selected the 'Permit All' option for a P2P program, ...
      (comp.security.firewalls)
    • Re: Port forwarding/open ports?
      ... It would be nice not to have to open and close those ports over and over again in my router firewall when I need it and instead having them open all the time so it will just be to start Netmeeting when I need to collaborate and share applications. ... - These same questions above goes for the one port one can choose to have open in the router to give the best possible chances for good sound quality for Skype IP calls. ... All software opens the vulnerability window. ...
      (alt.computer.security)