Re: Hardening a Solaris system.

From: Ian Fitchet (idf_at_lunanbay.LESS-SPAM.com)
Date: 11/26/03


Date: Wed, 26 Nov 2003 16:59:16 +0000


> Richard.L.Hamilton@mindwarp.smart.net (Richard L. Hamilton) writes:

>>root should be allowed that power. But it would allow firewall rules
>>to be adjusted on the fly to accomodate selected rpc services, or allow
>>the registration of selected rpc services to be prohibited.

 I may have misunderstood and don't have access to the whole thread
 but isn't punching holes through firewalls what Universal Plug and
 Play is all about? Substitute RPC for IM.

 Neatly sidestepping any critique of MS' intentions, implementations,
 etc. it does seem to work quite well and due to the large customer
 base it is quite widely supported by routers (with NAT and/or
 firewall software).

Cheers,

        Ian