[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Securing telnet



>>>>> "Patrick" == Patrick Kirk <patrick@kirks.net> writes:

  Patrick> I have set hosts.deny as blank and hosts.allow as ALL: ALL
  Patrick> Any thoughts on how to set up the rules to allows the setup
  Patrick> above?

        You probably want to reverse that. Set hosts.deny to
ALL: PARANOID, and put something like:

telnetd: 10.0.0/8 

        in hosts.allow. Add any other services running via
tcp-wrappers you need to allow here. AFAIK, sshd doesn't run from
inetd.conf, as installed by Debian. 

                                                -arun
                        
-- 
arun krishnaswamy	<kar@myrealbox.com>	<arun@mrna.tn.nic.in>
http://prometheus.home.dhs.org	PGP: 0x5606B2B1 GPG: 1024D/C75FD05C



Reply to: