Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 12 Sep 1997 17:27:43 +0200
From:      Andreas Klemm <andreas@klemm.gtn.com>
To:        Torsten Blum <torstenb@onizuka.tb.9715.org>
Cc:        mark@grondar.za, ports@freebsd.org, hackers@freebsd.org
Subject:   Re: Major bogon in tcp_wrappers port.
Message-ID:  <19970912172743.64756@klemm.gtn.com>
In-Reply-To: <m0x9RYo-0006haC@onizuka.tb.9715.org>; from Torsten Blum on Fri, Sep 12, 1997 at 10:58:42AM %2B0200
References:  <19970911075604.13003@klemm.gtn.com> <m0x9RYo-0006haC@onizuka.tb.9715.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Sep 12, 1997 at 10:58:42AM +0200, Torsten Blum wrote:
> 
> Everybody has different needs for security. There are more than enough
> users who'll never need tcpwrapper because
>  - they only have a small set of "services" running on these boxes
>    (for example www server, dns, sendmail etc)
>  - we have users who really don't care about security (sad but true).
>    They never care to configure hosts.{allow,deny} or even check their
>    logfiles
>  - Machines without connections "external" connection
> and many many more

ok, agreed.

> Andreas, have you _ever_ configured tcpd ? tcpd is not a standalone daemon.
> To activate it, you have to modify inetd.conf. 

Yes I'm using it in the company for our secured FreeBSD internet
gateway ...

> Don't get me wrong, I'm all for a "more" secure system, but you don't get
> this out of the box. You _always_ have to configure something.

Ok, agreed. Peace man ;-)

-- 
Andreas Klemm | klemm.gtn.com - powered by
                    Symmetric MultiProcessor FreeBSD
                       http://www.freebsd.org/~fsmp/SMP/SMP.html
                          http://www.freebsd.org/~fsmp/SMP/benches.html



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19970912172743.64756>