[newbie] Question about remote access
I have a question concerning remote access and iptables. I have installed Mandrake 10.0 Community on a PII 450Mhz. with 256Mb RAM. I have tweaked all the settings in Mandrake Control Center, but I know nothing about iptables. I have assigned the following to the su and login commands: owner: root group: wheel PERMISSIONS: owner: read, write, execute, setuid group: read, write, execute others: forbidden And, I have added myself (the only user) to the wheel group. I have, and use, rkhunter. Even if someone had remote access to my system, they would not be able to call the su or login commands. I tried to telnet myself in a konsole session and got a reply telling me connection refused. I tried to ping myself and got 6 packets transmitted, 0 received, 100% packet loss, time 4999ms It seems that my box would be invisible to anyone trying to ping me and unavailable to anyone trying to telnet me. Is this sufficient? Or, must I learn how to deal with iptables? Ian MacGregor -- - Registered Linux User #350412 MacGregor Despite Them! Want to buy your Pack or Services from MandrakeSoft? Go to http://www.mandrakestore.com Join the Club : http://www.mandrakeclub.com
Re: [newbie] Question about remote access
On Wed, 2004-04-21 at 17:05, Ian MacGregor wrote: I tried to telnet myself in a konsole session and got a reply telling me connection refused. I tried to ping myself and got 6 packets transmitted, 0 received, 100% packet loss, time 4999ms It seems that my box would be invisible to anyone trying to ping me and unavailable to anyone trying to telnet me. Is this sufficient? Or, must I learn how to deal with iptables? I'd have a look at the IPaddress your machine has when connected to the net, send that to a good friend and see if (s)he can ping you. That would be a better test imho. If you are hesitant about IPtables, there are helpful scripts, like EasyTables, QuickTables etc, that do a great job in helping you set up a good firewall. Paul Want to buy your Pack or Services from MandrakeSoft? Go to http://www.mandrakestore.com Join the Club : http://www.mandrakeclub.com
Re: [newbie] Question about remote access
Unfortunately, I don't know anyone who knows how to ping :( On Wednesday 21 April 2004 8:21 am, Paul wrote: On Wed, 2004-04-21 at 17:05, Ian MacGregor wrote: I tried to telnet myself in a konsole session and got a reply telling me connection refused. I tried to ping myself and got 6 packets transmitted, 0 received, 100% packet loss, time 4999ms It seems that my box would be invisible to anyone trying to ping me and unavailable to anyone trying to telnet me. Is this sufficient? Or, must I learn how to deal with iptables? I'd have a look at the IPaddress your machine has when connected to the net, send that to a good friend and see if (s)he can ping you. That would be a better test imho. If you are hesitant about IPtables, there are helpful scripts, like EasyTables, QuickTables etc, that do a great job in helping you set up a good firewall. Paul -- - Registered Linux User #350412 MacGregor Despite Them! Want to buy your Pack or Services from MandrakeSoft? Go to http://www.mandrakestore.com Join the Club : http://www.mandrakeclub.com
Re: [newbie] Question about remote access
On Wed, 2004-04-21 at 17:27, Ian MacGregor wrote: Unfortunately, I don't know anyone who knows how to ping :( Hmmm. Not sure if you could see me as a good friend, but I do ping once in a while. You can send me your IP through private mail, I could check for you. Paul Want to buy your Pack or Services from MandrakeSoft? Go to http://www.mandrakestore.com Join the Club : http://www.mandrakeclub.com
Re: [newbie] Question about remote access
I just sent you some info. thanks for volunteering. On Wednesday 21 April 2004 8:36 am, Paul wrote: On Wed, 2004-04-21 at 17:27, Ian MacGregor wrote: Unfortunately, I don't know anyone who knows how to ping :( Hmmm. Not sure if you could see me as a good friend, but I do ping once in a while. You can send me your IP through private mail, I could check for you. Paul -- - Registered Linux User #350412 MacGregor Despite Them! Want to buy your Pack or Services from MandrakeSoft? Go to http://www.mandrakestore.com Join the Club : http://www.mandrakeclub.com