From owner-freebsd-questions Thu Aug 29 12:10:37 1996 Return-Path: owner-questions Received: (from root@localhost) by freefall.freebsd.org (8.7.5/8.7.3) id MAA27508 for questions-outgoing; Thu, 29 Aug 1996 12:10:37 -0700 (PDT) Received: from mailhub.aros.net (mailhub.aros.net [205.164.111.17]) by freefall.freebsd.org (8.7.5/8.7.3) with ESMTP id MAA27489 for ; Thu, 29 Aug 1996 12:10:33 -0700 (PDT) Received: from terra.aros.net (terra.aros.net [205.164.111.10]) by mailhub.aros.net (8.7.5/Unknown) with ESMTP id NAA26363; Thu, 29 Aug 1996 13:10:26 -0600 (MDT) Received: (from angio@localhost) by terra.aros.net (8.7.5/8.6.12) id NAA04132; Thu, 29 Aug 1996 13:10:24 -0600 From: Dave Andersen Message-Id: <199608291910.NAA04132@terra.aros.net> Subject: Re: lost /dev/log To: dwhite@resnet.uoregon.edu Date: Thu, 29 Aug 1996 13:10:24 -0600 (MDT) Cc: njensen@salsa.habaneros.com, questions@freebsd.org In-Reply-To: from "Doug White" at Aug 29, 96 10:49:22 am X-Mailer: ELM [version 2.4 PL25 PGP2] MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Sender: owner-questions@freebsd.org X-Loop: FreeBSD.org Precedence: bulk Lo and behold, Doug White once said: > syslog is way to inportant to disable. I don't see a way offhand to > remove the TCP port; I guess you could move it to something else and > change all the systems that log to your machine to use the new port. Configure IP firewalling in your kernel and mask off the port you use for syslog from all but the local system(s). Just make sure your router/termservers prevent IP spoofing as they should. :) -Dave Andersen -- angio@aros.net Complete virtual hosting and business-oriented system administration Internet services. (WWW, FTP, email) http://www.aros.net/ http://www.aros.net/about/virtual "There are only two industries that refer to their customers as 'users'."