[31997] in North American Network Operators' Group
Re: Security on a home DSL Line
daemon@ATHENA.MIT.EDU (Steven J. Sobol)
Thu Nov 2 20:49:57 2000
Date: Thu, 2 Nov 2000 20:44:48 -0500 (EST)
From: "Steven J. Sobol" <sjsobol@NorthShoreTechnologies.net>
To: Todd Caine <todd_caine@eli.net>
Cc: "J. Gilmore" <reece0011@yahoo.com>, nanog@merit.edu
In-Reply-To: <3A0201C2.645DC1A4@eli.net>
Message-ID: <Pine.LNX.4.21.0011022044220.17908-100000@amethyst.nstc.com>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Errors-To: owner-nanog-outgoing@merit.edu
On Thu, 2 Nov 2000, Todd Caine wrote:
> recommended and security related patches from the vendor of the OS,
> then I comment out almost every service in /etc/inetd.conf. You don't
> want to be using services like fingerd and telnetd most likely. I
> usually only run sshd, secure RPC, and httpd. I would also recommend
> using tcp wrappers for the tcp services that you enable.
You should be able to get away just running sshd on the firewall box.
--
** To all who asked: The Chow now has a good home! Tnx for your interest **
Steve Sobol, BOFH, President 888.480.4NET 866.DSL.EXPRESS 216.619.2NET
North Shore Technologies Corporation http://NorthShoreTechnologies.net
JustTheNet/JustTheNet EXPRESS DSL (ISP Services) http://JustThe.net
mailto:sjsobol@NorthShoreTechnologies.net Proud resident of Cleveland, OH