Re: a good start to do hardening

From: nickd@nospam.demon.co.uk
Date: 12/29/01


From: nickd@nospam.demon.co.uk
Date: Sat, 29 Dec 2001 12:17:42 GMT

Bruce Cook <sysadmin@usertools.net> wrote:
> On Fri, 28 Dec 2001 12:35:54 GMT, nickd@nospam.demon.co.uk wrote:
>> Marcus <talos@algonet.se> wrote:
>> > Thomas wrote:

<snip>

>> > 1) echo "" > /etc/inetd.conf; killall -HUP inetd

<snip>

>> Oh yeah, and (1) is lovely too :)
>
> I actually agree with (1) - inetd (especialyy on RH systems) has a bunch of
> services that are simply never used, and a just waiting for some future exploit.

Fair enough. I tend not to run inetd, and

grep -v "^#" /etc/inetd.conf

is always a good idea, as is s:/^/#/g when editing it in vi.

<snip>

> I then enable only the services I want (almost never includes NIS and RPC
> stuff that's on by default)

I know very little about those services because for all the time I've been
in IT, they're just something you turn off because its too much of a
security risk :)

-- 
"Anyone with the naivety to run IIS is, IMHO, automatically suspect when it
 comes to doing anything technical, such as setting a clock."



Relevant Pages

  • Re: Cuba Helps Fight Hunger in 9 Caribbean Nations
    ... isn't Castro gicing millions of dollars worth of light bulbs to Jamaicans ... We are STILL waiting for your prove that gift to the Jamaican people ... see the thread "Top Official: US Wants Cuba ...
    (soc.culture.cuba)
  • Re: Quiet here.
    ... My next door neighbour ate up a lot of my free ... >> I re-watched Noir recently and for some very obscure reason am now ... > Sounds like another one waiting for GitS:SAC's next bit. ...
    (uk.media.animation.anime)
  • Re: The End of "historical" recordings ?
    ... Still waiting for anyone - have you tried, Bob - to point out a single ... Keep on ignoring what people are talking about ...
    (rec.music.classical.recordings)
  • Re: Crimson Trace Grips
    ... NapalmHeart wrote: (snip)# I sent CT an email and I'm ... waiting to hear what they say. ... as I was intending on using them for ...
    (rec.guns)
  • Re: Quantum Mechanics according to Mark Mccutcheon
    ... > rough idea of physics of qi first. ... reading sci.physics and eagerly waiting for you to spill ... you should definitely read up on "paranoia". ...
    (sci.physics)