Re: setting access rights to priviledged ports

Olaf Titz (olaf@bigred.inka.de)
Sun, 18 Oct 1998 13:34:11 +0200


> without making kernel changes. As for the case where you do have hostile
> users, they still need to find a way to crash sendmail before putting in

Just wait until it becomes unavailable. I have seen too many services
crashing on production machines that this just makes me nervous.

(Btw. for any services started from inetd there is a trivial way to
shut them down.)

> their replacement (and learning what port to put it on, all other machines
> think they are talking to port 25)

With the transproxy trick you can look the redirections up in /proc.

olaf

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/