Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 10 Nov 1998 18:53:26 +0000 (GMT)
From:      Phillip Salzman <psalzman@gamefish.pcola.gulf.net>
To:        brianmcg <bmcgroarty@high-voltage.com>
Cc:        "questions@freebsd.org" <questions@FreeBSD.ORG>
Subject:   Re: FreeBSD 2.2.7-RELEASE - validating security
Message-ID:  <Pine.BSF.4.05.9811101851350.14483-100000@gamefish.pcola.gulf.net>
In-Reply-To: <19981110055405612-47f124e@high-voltage.com>

next in thread | previous in thread | raw e-mail | index | archive | help
> 
> The last aspect I'd like to test is security. I've got my test box up and
> running as newtoy.com on the net presently, and next week I hope to make a
> public posting offering $100 out of pocket to the first person who can get in
> and retrieve either mail or news from my machine and tell me how they did it. If
> the configuration stands up in that kind of a hostile environment, I would feel
> confident that it would be secure against curious co-workers on our isolated
> network.
> 

	You might want to write up a legal document about this.  I doubt
many people will try, if they can get into serious trouble.

	Also, install tcp_wrappers.. and disable any unnecessary ports to
people you don't know (ie ipfw, hosts.allow).

--
Phillip Salzman
"one upon a drift of wine and blood.."


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.05.9811101851350.14483-100000>