Great Circle Associates Firewalls
(January 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: RCP tcp/udp 111
From: Brian Mitchell <brian @ saturn . net>
Date: Sun, 12 Jan 1997 14:32:32 -0600 (CST)
To: Rob Sansom <sansom @ connectix . com>
Cc: firewalls-l <firewalls @ greatcircle . com>

On Fri, 10 Jan 1997, Rob Sansom wrote:

> Wow, I'm actually posting, and breaking my New Years resolution not to write
> email first thing in the morning...
> 
> RPC Portmapper.  Very bad to allow people to connect to this, since they can
> find out what sorts of RPC services you run on your host (if I'm correct).

Alas, blocking it does not really stop them from doing that, it just makes
it a wee bit more difficult (and it really isnot all that difficult, even
without portmapper access). Nonetheless, it should be blocked...


Brian Mitchell / brian @
 saturn .
 net
http://www.saturn.net/~brian/security/



Indexed By Date Previous: SOCKS/HTTP filtering
From: Michael Werneburg <MWernebu @ trimark . com>
Next: Apache 1.1.1 overflow
From: David Sacerdote <davids @ secnet . com>
Indexed By Thread Previous: Re: RCP tcp/udp 111
From: "David J. Meltzer" <davem @ iss . net>
Next: Blocking ports
From: Dave Wreski <tel1dvw @ is . ups . com>

Google
 
Search Internet Search www.greatcircle.com