Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 26 Jan 2000 9:51:38 -0800 (PST)
From:      Jim Pazarena <paz@ccstores.com>
To:        freebsd-questions@freebsd.org
Subject:   Re: inetd with wrappers built-in
Message-ID:   <10001260951.aa15979@ccstores.com>

next in thread | raw e-mail | index | archive | help
 >Date: Wed, 26 Jan 2000 07:14:47 -0600 (CST)
 >From: Gene Harris <zeus@tetronsoftware.com>
 >Cc: freebsd-questions@freebsd.org

 >You can recompile with the wrappers patch attached.

Yes, but why should I *have* to? The blacklist patch has been around
for a few years now; it ADDS functionality to wrappers; and it
should be a GIVEN that people use it.

It takes _nothing_ away from the original format of wrappers, and
adds ease of use.

 >However, in FreeBSD, most of the daemons you are interested
 >in are built with wrappers, a functionality not found in
 >the Linux implementations.  For instance, inetd in 3.3 and
 >later is wrappers ready and you do not even need to refer to
 >the tcpd daemon.

Most of the daemons? Yes, and *none* of them have the blacklist patch.
Which means I can't simply re-compile inetd "only", but must compile
*all* the daemons which I desire the blacklist patch to use.

Once again, why hasn't this patch been installed?

 >As for host.deny, this file is no longer used in 3.3 and

Incorrect. hosts.deny is not _required_, however it is certainly still
fully functional and used if present.

 >later.  If you have installed the tcp_wrappers port in 3.4,
 >you should remove the port and use the built in
 >functionality.

Once again incorrect. If you are installing your *own* daemon, one
of which isn't loaded via inetd, and you desire wrappers functionality,
you must compile wrappers to gain access to libwrap.a.

 >*Gene Harris      http://www.tetronsoftware.com*
 >*FreeBSD Novice                                *

 >On Tue, 25 Jan 2000, Jim Pazarena wrote:

 >>  To answer my own question:
 >>  
 >>  The wrappers which is built in to inetd on 3.4 does NOT have the blacklist
 >>  patch (which was supplied by Wietse Venema the creator of wrappers).
 >>  
 >>  This makes the utilization of wrappers within inetd less than ideal.
 >>  Can anyone confirm if this patch will be applied in any future version
 >>  of FreeBSD? 3.5 perhaps?
 >>  
 >>  -----------------------------------
 >>  
 >>  From: Jim Pazarena <paz@ccstores.com>
 >>  To: freebsd-questions@freebsd.org
 >>  Date: Mon, 24 Jan 2000 14:38:02 -0800 (PST)
 >>  
 >>   >Subject: Re: inetd with wrappers built-in
 >>   >Date: Mon, 24 Jan 2000 21:01:38 +0000
 >>   >From: George Cox <gjvc@extremis.demon.co.uk>
 >>  
 >>   >On 24/01 10:02, Jim Pazarena wrote:
 >>  
 >>   >> Can anyone confirm yay/nay if the wrappers which is built-in
 >>   >> to the inetd on 3.4 has the blacklist patch compiled into it?
 >>  
 >>   >You sound like you mean the RBL "Real-time blackhole list" spam filter.
 >>   >Any filtering inetd does is based on the IP address of the connecting host.
 >>   >It is up to an application level process to filter content.
 >>  
                                                                                
--
Jim Pazarena     mailto:paz@ccstores.com 
                 http://www.qcislands.net/paz
 



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi? <10001260951.aa15979>