nixCraft Linux Forum

nixCraft

Linux Tech Support Forum

Which Linux network services pose a security threat?

This is a discussion on Which Linux network services pose a security threat? within the Linux software forums, part of the Linux Getting Started category; Hi gurus! I was asked to close all insecure or network services pose a security threat for Linux server. I ...


Go Back   nixCraft Linux Forum > Linux Getting Started > Linux software

Register FAQ Members List Calendar Forgotten your password? Mark Forums Read
  #1 (permalink)  
Old 07-18-2006, 02:35 AM
chimu's Avatar
Contributors
User
 
Join Date: Mar 2005
My distro: Ubuntu
Posts: 33
Rep Power: 0
chimu is an unknown quantity at this point
Default Which Linux network services pose a security threat?

Hi gurus!

I was asked to close all insecure or network services pose a security threat for Linux server. I was also reading somewhere that almost all network service is insecure so I must turning off unused services or not so important one. The idea is to keep exploits for services and patched under control…

The only problem is I don’t know which Linux network services pose a security threat?

Our server setup is CentOS linux (RHEL clone) and a 2 webserver and 1 mysql server.
Reply With Quote
Sponsored Links
  #2 (permalink)  
Old 07-19-2006, 11:50 PM
monk's Avatar
Senior Member
User
 
Join Date: Jan 2005
Location: Tibet
My distro: Debian GNU/Linux
Posts: 482
Rep Power: 5
monk will become famous soon enough monk will become famous soon enough
Default

Any network service which pass usernames/passwords over a network unencrypted is insecure. Examples:
telnet
ftp
all R services (rlogin/rsh)

etc. Disable these services. If you are using RHEL/Fedora Core/CentOS, tyep ntsysv command to disable all these services:
Code:
ntsysv
Reply With Quote
  #3 (permalink)  
Old 07-20-2006, 07:59 PM
rockdalinux's Avatar
Contributors
User
 
Join Date: May 2005
Location: Bangalore
My distro: RHEL, HP-UX, Solaris, FreeBSD, Ubuntu
Posts: 581
Rep Power: 7
rockdalinux is a jewel in the rough rockdalinux is a jewel in the rough rockdalinux is a jewel in the rough rockdalinux is a jewel in the rough
Default

If you are using following services use firewall:

yservices (yppasswdd/ypserv/ypxfrd) - NIS
finger, identd
Network dump services (netdump/netdump-server)
Linux/UNIX Network file sharing (nfs/portmap etc)
sendmail
Samba
__________________
Rocky Jr.
You may have my body & soul, but you will never touch my pride!

If you have knowledge, let others light their candles at it.

Certified to work on HP-UX / Sun Solaris / RedHat
Reply With Quote
Reply

Bookmarks


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)

 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads

Thread Thread Starter Forum Replies Last Post
List Services Linux Running raj Getting started tutorials 4 03-28-2008 04:55 PM
AIX /etc/security/user like file for Linux ftengcheng Getting started tutorials 4 03-25-2008 02:28 AM
Adsl router security in Lan based network Wolverine Computer Networking and Internet/broadband 0 09-29-2007 01:26 AM
Enable or disable services in Debian Linux raj Linux software 1 01-25-2007 04:00 AM
Ubuntu Linux control startup services or scripts chimu Shell scripting 1 10-06-2006 02:17 AM


All times are GMT +5.5. The time now is 04:30 AM.


Powered by vBulletin® Version 3.7.4 - Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36