"Karl J. Runge" wrote:
> 
> BUT, you also gotta block and/or shutdown RPC services. E.g.
> rpc.nfsd, rpc.statd, rpc.mountd. We usually think of these
> as UDP services, but there are often TCP counterparts.
> Regardless, they are not protected by /etc/hosts.deny !!!
> Run rpcinfo -p to see the list of RPC services you are
> exporting (hopefully none).
> 
> You either have to shut off the RPC services, or if you need
> them in a LAN, you should setup ipchains filtering to limit
> access to your LAN hosts. (this is usually done on a firewall,
> but can be done with a single host)

Any how-to pointers available?
-- 
#ken    P-)}

Ken Coar                    <http://Golux.Com/coar/>
Apache Software Foundation  <http://www.apache.org/>
"Apache Server for Dummies" <http://Apache-Server.Com/>
"Apache Server Unleashed"   <http://ApacheUnleashed.Com/>

ApacheCon 2001!
Four tracks with over 70+ sessions. Free admission to exhibits
and special events - keynote presentations by John 'maddog' Hall
and David Brin. Special thanks to our Platinum Sponsors IBM and
Covalent, Gold Sponsor Thawte, and Silver Sponsor Compaq.  Attend
only Apache event designed and fully supported by the members of
the ASF. See more information and register at <http://ApacheCon.Com/>!

**********************************************************
To unsubscribe from this list, send mail to
[EMAIL PROTECTED] with the following text in the
*body* (*not* the subject line) of the letter:
unsubscribe gnhlug
**********************************************************

Reply via email to