On Tue, 20 Mar 2001, John Jasen wrote:
> On Tue, 20 Mar 2001, Hans Scheffers wrote:
>
> > BTW; 3 ports are still opened that makes me curious:
> > 113 - auth
>
> somewhat 'polite' to leave this open.
>
> > 139 - netbios-ssn
>
> Samba. Do a chkconfig --list | grep smb, and you can shut it off
> (until next reboot) by and /etc/rc.d/init.d/smb stop (across reboots)
> chkconfig smb off.
beytter yet, if required, and the FW is yer gateway, then use the ipchain
rules to block outside access and allow inside access.
>
> Samba also has configuration flags to control access by IP address,
> subnet, and so forth, so if you need windows file and printer sharing, you
> may look into that.
>
> > 515 - printer
>
> /etc/rc.d/init.d/lpd stop and/or chkconfig lpd off
>
> Again, I think lpd can be controlled to an extent by /etc/hosts.lpd
>
Again, let the ipchains rules determine the direction of allowance.
Thanks,
Ron DuFresne
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
"Cutting the space budget really restores my faith in humanity. It
eliminates dreams, goals, and ideals and lets us get straight to the
business of hate, debauchery, and self-annihilation." -- Johnny Hart
***testing, only testing, and damn good at it too!***
OK, so you're a Ph.D. Just don't touch anything.
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]