From owner-freebsd-current@FreeBSD.ORG Thu Oct 7 01:40:26 2004 Return-Path: Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 35E2A16A4D1 for ; Thu, 7 Oct 2004 01:40:26 +0000 (GMT) Received: from arginine.spc.org (arginine.spc.org [195.206.69.236]) by mx1.FreeBSD.org (Postfix) with ESMTP id 58CB943D45 for ; Thu, 7 Oct 2004 01:40:15 +0000 (GMT) (envelope-from bms@spc.org) Received: from localhost (localhost [127.0.0.1]) by arginine.spc.org (Postfix) with ESMTP id 4B1F8651FA; Thu, 7 Oct 2004 02:40:13 +0100 (BST) Received: from arginine.spc.org ([127.0.0.1]) by localhost (arginine.spc.org [127.0.0.1]) (amavisd-new, port 10024) with LMTP id 06920-03-6; Thu, 7 Oct 2004 02:40:13 +0100 (BST) Received: from empiric.dek.spc.org (dhcp120.icir.org [192.150.187.120]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by arginine.spc.org (Postfix) with ESMTP id 6FA16651F7; Thu, 7 Oct 2004 02:40:12 +0100 (BST) Received: by empiric.dek.spc.org (Postfix, from userid 1001) id 8A45763DB; Wed, 6 Oct 2004 18:40:08 -0700 (PDT) Date: Wed, 6 Oct 2004 18:40:08 -0700 From: Bruce M Simpson To: Dan Nelson Message-ID: <20041007014008.GA664@empiric.icir.org> Mail-Followup-To: Dan Nelson , Sean McNeil , freebsd-current@freebsd.org References: <1097095438.1208.7.camel@server> <20041006205954.GB3848@dan.emsphone.com> <1097102594.1805.4.camel@server> <20041007013001.GH3848@dan.emsphone.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20041007013001.GH3848@dan.emsphone.com> cc: freebsd-current@freebsd.org Subject: Re: amd sitting on ldaps port X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 07 Oct 2004 01:40:26 -0000 On Wed, Oct 06, 2004 at 08:30:01PM -0500, Dan Nelson uttered: > > OK, but aren't there rules about rpc allowing assigned ports like that? > > Not as far as I know. I suppose bindresvport() could be changed to > walk /etc/services and only use one of the 450 reserved ports not > listed. I'm more in favour of allowing RPC daemons to be bound to specific ports in order to ease packet filtering. I've done this for mountd(8) for just this reason. BMS