Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 4 Dec 2000 08:31:50 -0600
From:      "Darryl Hoar" <darryl@osborne-ind.com>
To:        <freebsd-questions@freebsd.org>
Subject:   Double check please.
Message-ID:  <002401c05dfe$f0ec7ac0$0701a8c0@ruraltel.net>

next in thread | raw e-mail | index | archive | help
Greetings,
I am running:
FreeBSD proxy 4.0-RELEASE FreeBSD 4.0-RELEASE #0:
Mon Mar 20 22:50:22 GMT 2000
root@monster.cdrom.com:/usr/src/sys/compile/GENERIC
i386

I recently noticed 'someone' knocking on my door with anonymous
ftp.  Then I noticed others.  A total of four attempts recorded
in /var/log/messages.  Since none of those services are used on
this computer (at least by my users) I freaked a bit.
This machine provides internet access for my network.  It has
a 56K dialup link and is running userland ppp with the -auto and
-nat flags.  TIMEOUT is 300.  I thought I was pretty safe, but
evidently not.

here's what I have done:
1.  disabled inetd from starting.
2.  disabled portmapper from starting.
sockstats only shows syslogd listening.

is this sufficient ?  Also, has anyone come up with a way to prevent
Outlook from keeping the link up?  The users are forever forgetting
to shut it down on their machines and thus the link is kept alive
even when everyone's gone home.  Would it be smart to have cron
shutdown/restart the ppp process so its only available during 
business hours ?

I'm still plowing through firewall rules, so I'm not ready to
implement a firewall yet.

thanks,
Darryl



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?002401c05dfe$f0ec7ac0$0701a8c0>