[newbie] Question about remote access

2004-04-21 Thread Ian MacGregor
I have a question concerning remote access and iptables.
I have installed Mandrake 10.0 Community on a PII 450Mhz. with 256Mb RAM.
I have tweaked all the settings in Mandrake Control Center, but I know nothing 
about iptables.

I have assigned the following to the su and login commands:
owner: root
group: wheel
PERMISSIONS:
owner: read, write, execute, setuid
group: read, write, execute
others: forbidden
And, I have added myself (the only user) to the wheel group.
I have, and use, rkhunter.

Even if someone had remote access to my system, they would not be able to call 
the su or login commands.

I tried to telnet myself in a konsole session and got a reply telling me 
connection refused. I tried to ping myself and got 6 packets transmitted, 
0 received, 100% packet loss, time 4999ms

It seems that my box would be invisible to anyone trying to ping me and 
unavailable to anyone trying to telnet me.
Is this sufficient? Or, must I learn how to deal with iptables?

Ian MacGregor
-- 
-
Registered Linux User #350412
MacGregor Despite Them!


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com
Join the Club : http://www.mandrakeclub.com



Re: [newbie] Question about remote access

2004-04-21 Thread Paul
On Wed, 2004-04-21 at 17:05, Ian MacGregor wrote:
 I tried to telnet myself in a konsole session and got a reply telling me 
 connection refused. I tried to ping myself and got 6 packets transmitted, 
 0 received, 100% packet loss, time 4999ms
 
 It seems that my box would be invisible to anyone trying to ping me and 
 unavailable to anyone trying to telnet me.
 Is this sufficient? Or, must I learn how to deal with iptables?

I'd have a look at the IPaddress your machine has when connected to the
net, send that to a good friend and see if (s)he can ping you. That
would be a better test imho.
If you are hesitant about IPtables, there are helpful scripts, like
EasyTables, QuickTables etc, that do a great job in helping you set up a
good firewall.

Paul



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com
Join the Club : http://www.mandrakeclub.com



Re: [newbie] Question about remote access

2004-04-21 Thread Ian MacGregor
Unfortunately, I don't know anyone who knows how to ping :(

On Wednesday 21 April 2004 8:21 am, Paul wrote:
 On Wed, 2004-04-21 at 17:05, Ian MacGregor wrote:
  I tried to telnet myself in a konsole session and got a reply telling me
  connection refused. I tried to ping myself and got 6 packets
  transmitted, 0 received, 100% packet loss, time 4999ms
 
  It seems that my box would be invisible to anyone trying to ping me and
  unavailable to anyone trying to telnet me.
  Is this sufficient? Or, must I learn how to deal with iptables?

 I'd have a look at the IPaddress your machine has when connected to the
 net, send that to a good friend and see if (s)he can ping you. That
 would be a better test imho.
 If you are hesitant about IPtables, there are helpful scripts, like
 EasyTables, QuickTables etc, that do a great job in helping you set up a
 good firewall.

 Paul

-- 
-
Registered Linux User #350412
MacGregor Despite Them!


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com
Join the Club : http://www.mandrakeclub.com



Re: [newbie] Question about remote access

2004-04-21 Thread Paul
On Wed, 2004-04-21 at 17:27, Ian MacGregor wrote:
 Unfortunately, I don't know anyone who knows how to ping :(

Hmmm. Not sure if you could see me as a good friend, but I do ping once
in a while.
You can send me your IP through private mail, I could check for you.

Paul



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com
Join the Club : http://www.mandrakeclub.com



Re: [newbie] Question about remote access

2004-04-21 Thread Ian MacGregor
I just sent you some info.
thanks for volunteering.

On Wednesday 21 April 2004 8:36 am, Paul wrote:
 On Wed, 2004-04-21 at 17:27, Ian MacGregor wrote:
  Unfortunately, I don't know anyone who knows how to ping :(

 Hmmm. Not sure if you could see me as a good friend, but I do ping once
 in a while.
 You can send me your IP through private mail, I could check for you.

 Paul

-- 
-
Registered Linux User #350412
MacGregor Despite Them!


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com
Join the Club : http://www.mandrakeclub.com