[31997] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Security on a home DSL Line

daemon@ATHENA.MIT.EDU (Steven J. Sobol)
Thu Nov 2 20:49:57 2000

Date: Thu, 2 Nov 2000 20:44:48 -0500 (EST)
From: "Steven J. Sobol" <sjsobol@NorthShoreTechnologies.net>
To: Todd Caine <todd_caine@eli.net>
Cc: "J. Gilmore" <reece0011@yahoo.com>, nanog@merit.edu
In-Reply-To: <3A0201C2.645DC1A4@eli.net>
Message-ID: <Pine.LNX.4.21.0011022044220.17908-100000@amethyst.nstc.com>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Errors-To: owner-nanog-outgoing@merit.edu


On Thu, 2 Nov 2000, Todd Caine wrote:

> recommended and security related patches from the vendor of the OS,
> then I comment out almost every service in /etc/inetd.conf.  You don't
> want to be using services like fingerd and telnetd most likely.  I
> usually only run sshd, secure RPC, and httpd.  I would also recommend
> using tcp wrappers for the tcp services that you enable.

You should be able to get away just running sshd on the firewall box.

-- 
** To all who asked: The Chow now has a good home! Tnx for your interest **
Steve Sobol, BOFH, President    888.480.4NET 866.DSL.EXPRESS 216.619.2NET
North Shore Technologies Corporation   http://NorthShoreTechnologies.net
JustTheNet/JustTheNet EXPRESS DSL (ISP Services) http://JustThe.net
mailto:sjsobol@NorthShoreTechnologies.net   Proud resident of Cleveland, OH



home help back first fref pref prev next nref lref last post