On Tue, 20 Mar 2001, John Jasen wrote:

> On Tue, 20 Mar 2001, Hans Scheffers wrote:
> 
> > BTW; 3 ports are still opened that makes me curious:
> > 113 - auth
> 
> somewhat 'polite' to leave this open.
> 
> > 139 - netbios-ssn
> 
> Samba. Do a chkconfig --list | grep smb, and you can shut it off
> (until next reboot) by and /etc/rc.d/init.d/smb stop (across reboots)
> chkconfig smb off.

beytter yet, if required, and the FW is yer gateway, then use the ipchain
rules to block outside access and allow inside access.

> 
> Samba also has configuration flags to control access by IP address,
> subnet, and so forth, so if you need windows file and printer sharing, you
> may look into that.
> 
> > 515 - printer
> 
> /etc/rc.d/init.d/lpd stop and/or chkconfig lpd off
> 
> Again, I think lpd can be controlled to an extent by /etc/hosts.lpd
> 

Again, let the ipchains rules determine the direction of allowance.

Thanks,

Ron DuFresne
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
"Cutting the space budget really restores my faith in humanity.  It
eliminates dreams, goals, and ideals and lets us get straight to the
business of hate, debauchery, and self-annihilation." -- Johnny Hart
        ***testing, only testing, and damn good at it too!***

OK, so you're a Ph.D.  Just don't touch anything.

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to