[NTLUG:Discuss] open ports

MadHat madhat at unspecific.com
Thu Jun 8 14:42:44 CDT 2000


Kyle_Davenport at compusa.com wrote:
> 
> You cannot close those ports and run x-windows, but you can secure them with an
> entry for localhosts in /etc/hosts.allow and using ipchains.
> 
> There is a kernel mod out there that will present random responses to port scans
> to foil those scanners.   Sorry I don't know where it is, but I would start with
> the secure linux distribution, http://www.kha0s.org/.
> 
> ______________________________________________
> 
> Joey_Berry at compusa.com on 06/08/2000 01:15:46 PM
> 
> Please respond to discuss at ntlug.org
> 
> To:   discuss at ntlug.org
> cc:    (bcc: Kyle Davenport/Is/Corporate/CompUSA)
> Subject:  [NTLUG:Discuss] open ports
> 
> In the process of checking my machine for security flaws I noticed that my auth
> & X11 port are open. How should I go about closing these ports? Also nmap can
> tell what OS & Kernel the machine is running, does anyone know how I can prevent
> nmap or other scanners from detecting the OS?

Also note that these "faking" mods to fool nmap and others have been
known to cause other problems in IP transactions.

-- 
MadHat at unspecific.com
                                   "The 3 great virtues of a programmer:
                                      Laziness, Impatience, and Hubris."
                                                 --Larry Wall




More information about the Discuss mailing list