Package: gdm
Version: 2.16.1-1
Severity: normal

According to the GDM Reference Manual the service gdm should control
access to the XDMCP service.
Since gdm depends on libwrap0, I assume it is compiled with TCP wrappers
support.

The configuration on the host running gdm is as follows:

/etc/hosts.allow
  ALL: 127.0.0.1

/etc/hosts.deny
  ALL: ALL

/etc/gdm/gdm.conf
  [xdcmp]
  Enabled=true
  HonorIndirect=false

On the client host the command used is:

$ Xnest :1 -query <gdmhost>

and it succeeds: the greeter is shown and logins are possible. I believe
it should not succeed since everything is denied by TCP wrappers.

Regards

-- System Information:
Debian Release: 4.0
  APT prefers testing
  APT policy: (990, 'testing'), (900, 'stable'), (500,
'proposed-updates'), (10, 'unstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/dash
Kernel: Linux 2.6.18-1-686
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)

Versions of packages gdm depends on:
ii  adduser              3.99                Add and remove users and groups
ii  aewm [x-window-manag 1.3.10-1            a minimalist window manager
for X1
ii  amaterus [x-window-m 0.34.1-7.1          GTK+ based window manager
ii  aterm [x-terminal-em 1.0.0-4             Afterstep XVT - a VT102
emulator f
ii  blackbox [x-window-m 0.70.1-1.1          Window manager for X
ii  debconf [debconf-2.0 1.5.8               Debian configuration
management sy
ii  enlightenment [x-win 1:0.16.7.2-5        The Enlightenment Window
Manager
ii  eterm [x-terminal-em 0.9.4.0debian1-2    Enlightened Terminal Emulator
ii  fluxbox [x-window-ma 0.9.14-1.2          Highly configurable and low
resour
ii  fvwm [x-window-manag 1:2.5.18-1          F(?) Virtual Window
Manager, versi
ii  gdm-themes           0.5                 Themes for the GNOME
Display Manag
ii  gksu                 2.0.0-1             graphical frontend to su
ii  gnome-session        2.14.3-3            The GNOME 2 Session Manager
ii  gnome-terminal [x-te 2.14.2-1            The GNOME 2 terminal
emulator appl
ii  icewm [x-window-mana 1.2.28-3            wonderful
Win95-OS/2-Motif-like wi
ii  konsole [x-terminal- 4:3.5.5a.dfsg.1-1   X terminal emulator for KDE
ii  kwin [x-window-manag 4:3.5.5a.dfsg.1-1   the KDE window manager
ii  libart-2.0-2         2.3.17-1            Library of functions for 2D
graphi
ii  libatk1.0-0          1.12.3-1            The ATK accessibility toolkit
ii  libattr1             2.4.32-1            Extended attribute shared
library
ii  libc6                2.3.6.ds1-7         GNU C Library: Shared libraries
ii  libcairo2            1.2.4-4             The Cairo 2D vector
graphics libra
ii  libdmx1              1:1.0.2-2           X11 Distributed Multihead
extensio
ii  libfontconfig1       2.4.1-2             generic font configuration
library
ii  libglade2-0          1:2.6.0-2           library to load .glade
files at ru
ii  libglib2.0-0         2.12.4-1            The GLib library of C routines
ii  libgnomecanvas2-0    2.14.0-2            A powerful object-oriented
display
ii  libgtk2.0-0          2.8.20-3            The GTK+ graphical user
interface
ii  libpam-modules       0.79-4              Pluggable Authentication
Modules f
ii  libpam-runtime       0.79-4              Runtime support for the PAM
librar
ii  libpam0g             0.79-4              Pluggable Authentication
Modules l
ii  libpango1.0-0        1.14.7-1            Layout and rendering of
internatio
ii  libpopt0             1.10-3              lib for parsing cmdline
parameters
ii  librsvg2-2           2.14.4-2            SAX-based renderer library
for SVG
ii  librsvg2-common      2.14.4-2            SAX-based renderer library
for SVG
ii  libselinux1          1.32-3              SELinux shared libraries
ii  libwrap0             7.6.dbs-11          Wietse Venema's TCP
wrappers libra
ii  libx11-6             2:1.0.3-2           X11 client-side library
ii  libxau6              1:1.0.1-2           X11 authorisation library
ii  libxcursor1          1.1.7-4             X cursor management library
ii  libxdmcp6            1:1.0.1-2           X11 Display Manager Control
Protoc
ii  libxext6             1:1.0.1-2           X11 miscellaneous extension
librar
ii  libxfixes3           1:4.0.1-4           X11 miscellaneous 'fixes'
extensio
ii  libxi6               1:1.0.1-3           X11 Input extension library
ii  libxinerama1         1:1.0.1-4.1         X11 Xinerama extension library
ii  libxml2              2.6.27.dfsg-1       GNOME XML library
ii  libxrandr2           2:1.1.0.2-4         X11 RandR extension library
ii  libxrender1          1:0.9.1-3           X Rendering Extension
client libra
ii  lsb-base             3.1-15              Linux Standard Base 3.1
init scrip
ii  lwm [x-window-manage 1.2.1-1+b1          Lightweight Window Manager
ii  metacity [x-window-m 1:2.14.5-1          A lightweight GTK2 based
Window Ma
ii  olwm [x-window-manag 3.2p1.4-21.1        Open Look Window Manager
ii  openbox [x-window-ma 3.3-2               standards compliant, fast,
light-w
ii  pwm [x-window-manage 1.0.20010309-12     Lightweight window manager
with fr
ii  rxvt [x-terminal-emu 1:2.6.4-10          VT102 terminal emulator for
the X
ii  sawfish [x-window-ma 1:1.3+cvs20061004-1 a window manager for X11
ii  twm [x-window-manage 1:1.0.1-4           Tab window manager
ii  uwm [x-window-manage 0.2.9b-2.2          The ultimate window manager
for UD
ii  wm2 [x-window-manage 4-9                 small, unconfigurable
window manag
ii  wmaker [x-window-man 0.92.0-6            NeXTSTEP-like window
manager for X
ii  wmii [x-window-manag 3.1-4               lightweight tabbed and
tiled X11 w
ii  xbase-clients        1:7.1.ds-3          miscellaneous X clients
ii  xfce4-terminal [x-te 0.2.5.6rc1-2        Xfce terminal emulator
ii  xfwm4 [x-window-mana 4.3.99.1-1          window manager of the Xfce
project
ii  xterm [x-terminal-em 210-3.1             X terminal emulator

Versions of packages gdm recommends:
ii  dialog                    1.0-20060221-1 Displays user-friendly
dialog boxe
ii  whiptail                  0.52.2-8       Displays user-friendly
dialog boxe
ii  zenity                    2.14.3-1       Display graphical dialog
boxes fro

-- debconf-show failed




-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to