Re: Remote Client Security Alerts

Josip Deanovic via Bacula-users <[email protected]>
Newsgroups gmane.comp.bacula.user
Message-ID <[email protected]>
On 2024-09-17 13:57, Dragan Milivojević wrote:
> AFAIK there is no such feature on the FD side but I might be wrong.

If the option "--with-tcp-wrappers" is used for building Bacula
daemons, Bacula daemons would make use of libwrap library.

I recommend using local firewall rather than tcp wrappers mechanism
which is best described as a host based networking ACL system.

Some major Linux distribution dropped support for tcp wrappers 
completely
few years ago.

A lot of people never learned about tcp wrappers and those who did,
often used them incorrectly.
In that light, I would say: good riddance.


> On Tue, 17 Sept 2024 at 13:52, Chris Wilkinson <[email protected]> 
> wrote:
>> 
>> Is that something that can be done in the FD or is it a job for 
>> iptables?
>> 
>> -Chris Wilkinson
>> 
>> On Tue, 17 Sep 2024, 12:48 Dragan Milivojević, <[email protected]> 
>> wrote:
>>> 
>>> These are just automated scans. I would not run a FD open to the 
>>> world.
>>> Block anything but the DIR and SD from contacting the FD?
>>> 
>>> On Tue, 17 Sept 2024 at 12:43, Chris Wilkinson 
>>> <[email protected]> wrote:
>>> >
>>> > I keep getting security alerts from a remote client backup. The backups always run to success. The IPs that are listed in the job log are different every time and in various locations including some in Russia but also in London and European data centres. There are no entries at all in the remote client bacula log. This only happens with remote client backups, never with local client backups.
>>> >
> 
> 
> _______________________________________________
> Bacula-users mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/bacula-users

-- 
Josip Deanovic


_______________________________________________
Bacula-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/bacula-users
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.