Re: Fedora 8 ports open



On Tue, 13 Nov 2007 22:26:25 +0000, Georg Klein wrote:

Zam <NOSPAM@xxxxxxxxxxx> wrote:


What's opening the ports?

SSH, POP3, RCP, IMAP and something using port 995... you should never
run without a firewall.

To use your "well-known ports" example, port 995 is pop3s (secure
pop3, much preferred from wireless hot-spots).

As root:
lsof -i :22,110,111,143,995
or
netstat -pan | egrep ":22|:110|:111|:143|:995"

Thanks guys. I neglected to mention that I am configuring shorewall. I
had forgotten to add it to the startup scripts. When I start shorewall
all is well.

I think, in general it is not OK to have these ports open after a fresh
standard install.

Fedora/RH has always had certain services running at install... the
firewall configurator that runs at install determines whether traffic is
allowed to access them.

I think the only zero ports open default install on the market is OpenBSD
(http://www.openbsd.org/).

Though Slackware may be as secure at install.

--
I told you this was going to happen.

.



Relevant Pages

  • Re: Trend SMB 3.0 Issues
    ... Officescan communication between client/server uses some ports, ... On one client machine - if you have the client installed, ... > click in a group - click add - and successfully install remotely. ... > sounds like XP firewall. ...
    (microsoft.public.windows.server.sbs)
  • Re: Trend SMB 3.0 Issues
    ... >> or it's name (specified during install). ... If I go directly to the site via IE (Server ... >> sounds like XP firewall. ... Look for blocked packets on the ports trend ...
    (microsoft.public.windows.server.sbs)
  • Re: Firewall newbie under attack
    ... If you haven't installed a firewall from the beginning of setting your ... >> If you aren't clear on ports, get a good book on TCP/IP. ... those who install firewalls see this initially. ... > everybody from Pacific Bell Internet Services to Macy's scanning my ports. ...
    (comp.security.firewalls)
  • Re: Is complete home security possible?
    ... install it by default" setup in ordinary windoze installs, ... >happened if a simple firewall policy was put in place. ... of our systems run any variety of windoze. ... valid response to ports 1024-1100/udp. ...
    (comp.security.firewalls)
  • Re: Adding Programs w/ActiveSync 3.7
    ... > would be granted access to the internet. ... my firewall typically advises me that software is ... Activesync uses certain ports to communicate with the Pocket PC. ... install the software... ...
    (microsoft.public.pocketpc.activesync)