Re: noffle&pan
Mirko Liss <[email protected]> Tue, 25 Feb 2003 10:45:29 +0100
| Newsgroups | gmane.network.noffle.user |
|---|---|
| Message-ID | <[email protected]> |
Jim Hague wrote:
> On 23-Feb-2003 Tomislav Ivan Flis wrote:
> ># hosts.deny This file describes the names of the hosts which are
> ># *not* allowed to use the local INET services, as decided
> ># by the '/usr/sbin/tcpd' server.
> >#
> ># The portmap line is redundant, but it is left to remind you that
> ># the new secure portmap uses hosts.deny and hosts.allow. In particular
> ># you should know that NFS uses portmap!
> >
> >
> > noffle: ALL EXCEPT LOCAL
> >
> > Is the ptopblem maybe in that?
>
> No, that's fine. It's just saying 'prohibit access to Noffle from all hosts
> *except* localhost'. So 'telnet localhost nntp' should work.
It prohibits access to Noffle from all hosts except those from the same
domain, aka hosts whichout any dots in them. Possibly, that may be
exploited. Better be paranoid and replace the line in /etc/hosts.deny
with:
noffle: ALL EXCEPT localhost
Further details via 'man 5 hosts_access'.
Sorry for the delay, there's still a lot of work waiting for me.
Mirko
-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf