[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Is NFS export r/o safe from lan to dmz?



On Sun, Mar 02, 2008 at 11:13:20PM +0100, Peter Teunissen wrote:
> If the export would be r/o, what would be the risk of such a setup?

the risk of exposing portmapper and nfsd to accept connections (and so
be possibly vulnerable to bugs, buffer overflows and so on) instead of
being  firewalled, tcp-wrappered or simlpy not active. 

Then the risk of having put by misstake private files in the exported
directory.

-- 
Chi usa software non libero avvelena anche te. Digli di smettere.
Informatica=arsenico: minime dosi in rari casi patologici, altrimenti letale.
Informatica=bomba: intelligente solo per gli stupidi che ci credono.


Reply to: