> first of all, remove telnetd if it is not used
> close all the ports not being used by daemons. Sounds like the
> only ports you need open are for ftp http and what ever Zoc runs on.
> Install ipchains and block off the traffic you do not wish, you may even
> stop responses to ping to really be invisable.
> Read up on hosts.allow and hosts.deny, hosts.deny should read
> ALL: ALL and hosts.allow should have the services available
> only to hosts you wish.

Then when you finish closing off all the ports, get a port scanning tool and
then gasp in shock on seeing that sneaky service which you just missed. I
generally prefer to disable the service where possible and use ipchains only
for disabling things which cannot be easily/selectively disabled otherwise.
The reason for minimising number of rules is performance. (Which may or may
not matter depending on your NIC, CPU and network link).

Dave.

---
David Zverina
Alt Key Pty. Ltd.
http://www.altkey.com
PO Box 3121, Parramatta, 2124, Australia

--
SLUG - Sydney Linux Users Group Mailing List - http://www.slug.org.au
To unsubscribe send email to [EMAIL PROTECTED] with
unsubscribe in the text

Reply via email to