Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 8 Apr 2002 17:31:04 +0200
From:      "Ian Barnes" <ian@cerebellum.za.net>
To:        "Mr Munkeh" <munk3h02@yahoo.co.uk>
Cc:        "FreeBSD Questions" <questions@FreeBSD.ORG>
Subject:   RE: FreeBSD Security
Message-ID:  <FHEJKDPFENCDIBKGNOLJOEIBCFAA.ian@cerebellum.za.net>
In-Reply-To: <20020408144125.8556.qmail@web14406.mail.yahoo.com>

next in thread | previous in thread | raw e-mail | index | archive | help
This is a multi-part message in MIME format.

------=_NextPart_000_0026_01C1DF23.28E796C0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit

Hi,

you can close some of the above ports in your /etc/inetd.conf ... and the
others wll be disabled in /etc/rc.conf (sshd for ex), go through the file
/etc/defaults/rc.conf and then take out what you want.

Ian

------------------------
BOFH - Mom's Pharmacies
Emal: ian@cerebellum.za.net
------------------------


  -----Original Message-----
  From: owner-freebsd-questions@FreeBSD.ORG
[mailto:owner-freebsd-questions@FreeBSD.ORG]On Behalf Of Mr Munkeh
  Sent: 08 April 2002 04:41
  To: freebsd-questions@FreeBSD.ORG
  Subject: FreeBSD Security


  hi im looking for some security help on FreeBSD, im using it as a
workstation pc and not as a server so i dont want to be hosting any services
to the outside world, im using FreeBSD 4.5-STABLE and have the following
open ports:

  Port       State       Service
  22/tcp     open        ssh
  25/tcp     open        smtp
  514/udp    open        syslog
  587/tcp    open        submission
  2504/tcp   open        unknown

  how do i close all none needed ports so other people cant access them and
does anyone recommend a good firewall program thats in the ports system? i
have used portsentry but had some errors, something about stealth, i had a
look on google but didnt find any documentation that could help. If anyone
knows how to get portsentry working or recommends another firewall please
email me, thanks.

  -Munk3h





----------------------------------------------------------------------------
--
  Do You Yahoo!?
  Get personalised at My Yahoo!.

------=_NextPart_000_0026_01C1DF23.28E796C0
Content-Type: text/html;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; =
charset=3Diso-8859-1">
<META content=3D"MSHTML 6.00.2713.1100" name=3DGENERATOR></HEAD>
<BODY>
<DIV><SPAN class=3D210222815-08042002><FONT face=3DArial color=3D#0000ff =

size=3D2>Hi,</FONT></SPAN></DIV>
<DIV><SPAN class=3D210222815-08042002><FONT face=3DArial color=3D#0000ff =

size=3D2></FONT></SPAN>&nbsp;</DIV>
<DIV><SPAN class=3D210222815-08042002><FONT face=3DArial color=3D#0000ff =
size=3D2>you=20
can close&nbsp;some of the&nbsp;above ports in your /etc/inetd.conf ... =
and the=20
others wll be disabled in /etc/rc.conf (sshd for ex), go through the =
file=20
/etc/defaults/rc.conf and then take out what you =
want.</FONT></SPAN></DIV>
<DIV><SPAN class=3D210222815-08042002><FONT face=3DArial color=3D#0000ff =

size=3D2></FONT></SPAN>&nbsp;</DIV>
<DIV><SPAN class=3D210222815-08042002><FONT face=3DArial color=3D#0000ff =

size=3D2>Ian</FONT></SPAN></DIV>
<DIV>&nbsp;</DIV>
<P><FONT size=3D2>------------------------<BR>BOFH - Mom's =
Pharmacies<BR>Emal:=20
ian@cerebellum.za.net<BR>------------------------<BR></FONT></P>
<BLOCKQUOTE>
  <DIV class=3DOutlookMessageHeader dir=3Dltr align=3Dleft><FONT =
face=3DTahoma=20
  size=3D2>-----Original Message-----<BR><B>From:</B>=20
  owner-freebsd-questions@FreeBSD.ORG=20
  [mailto:owner-freebsd-questions@FreeBSD.ORG]<B>On Behalf Of </B>Mr=20
  Munkeh<BR><B>Sent:</B> 08 April 2002 04:41<BR><B>To:</B>=20
  freebsd-questions@FreeBSD.ORG<BR><B>Subject:</B> FreeBSD=20
  Security<BR><BR></FONT></DIV>
  <P>hi im looking for some security help on FreeBSD, im using it as a=20
  workstation pc and not as a server so i dont want to be hosting any =
services=20
  to the outside world, im using FreeBSD 4.5-STABLE and have the =
following open=20
  ports:</P>
  <P>Port&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  State&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  Service<BR>22/tcp&nbsp;&nbsp;&nbsp;&nbsp;=20
  open&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  =
ssh&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  <BR>25/tcp&nbsp;&nbsp;&nbsp;&nbsp;=20
  open&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  =
smtp&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nb=
sp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  <BR>514/udp&nbsp;&nbsp;&nbsp; =
open&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  =
syslog&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  <BR>587/tcp&nbsp;&nbsp;&nbsp; =
open&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  =
submission&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nb=
sp;&nbsp;&nbsp;=20
  <BR>2504/tcp&nbsp;&nbsp; =
open&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=20
  unknown</P>
  <P>how do i close all none needed ports so other people cant access =
them and=20
  does anyone recommend a good firewall program thats in the ports =
system? i=20
  have used portsentry but had some errors, something about stealth, i =
had a=20
  look on google but didnt find any documentation that could help. If =
anyone=20
  knows how to get portsentry working or recommends another firewall =
please=20
  email me, thanks.</P>
  <P>-Munk3h</P>
  <P><BR>
  <HR SIZE=3D1>
  <B>Do You Yahoo!?</B><BR>Get personalised at <A=20
  href=3D"http://uk.rd.yahoo.com/mail_uk/my?http://uk.my.yahoo.com"=20
  target=3D_blank>My Yahoo!</A>.</BLOCKQUOTE></BODY></HTML>

------=_NextPart_000_0026_01C1DF23.28E796C0--


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?FHEJKDPFENCDIBKGNOLJOEIBCFAA.ian>