[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: ALL: PARANOID from /etc/hosts.deny Should be Commented by default



On Thu, Apr 19, 2001 at 06:24:24PM -0500, Dimitri Maziuk wrote:
> Imagine a newbie doing first install... Do you also plan to explain to
> them what tcp wrappers is all about? At install-time? 
> ALL:ALL except localhost sounds like a perfectly reasonable default:
> if they want remote access to their box they should RTFM. Including
> TF hosts_access(5) M.

| Debian utilizes a basic security feature known as "TCP Wrappers", which
| allows you to control network access to services that are run on your 
| machine.  Would you like to enable TCP wrappers?
| 
| [ ] Yes
| [ ] No
| 
| Please enter the list of IP addresses that are allowed to talk to this
| machine over the network.  Examples:
| ALL (allows access from anywhere)
| 10.20.1.100 (allows access from a machine with the IP address 10.20.1.100)
| 192.168.1.  (allows any machine on the Class C network 192.168.1.0)
| 172.16.77.32/28 (allows any machine from the CIDR block 172.16.77.32/28)
| 
| If you need to enter more IP's, you can edit the file /etc/hosts.allow after
| installation is complete.
| _______________________   _______________________
| _______________________   _______________________
| _______________________   _______________________
| _______________________   _______________________

--Adam

-- 
Adam McKenna  <adam@debian.org>  <adam@flounder.net>



Reply to: