Great Circle Associates Firewalls
(October 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: RE: hosts.allow
From: "Caldwell, Matt" <caldwm @ xgate . columbiasc . ncr . com>
Date: Tue, 7 Oct 1997 09:51:29 -0400
To: "'Firewalls @ GreatCircle . COM'" <Firewalls @ GreatCircle . COM>, "'Andy Lewis'" <alewis @ mpsi . net>

You can limit access from the username with tcpwrappers, but this also
will affect the rest of your user base.
Also the identd protocol is not very secure, someone with root access to
a machine can modify the identd too
show that the user is someone else, or possibly the person you are
allowing in with that username. It is better to 
do a combination of the both for more security. I suggest you get the
newest TCPwrappers and read the documentation. 

>----------
>From: 	Andy Lewis[SMTP:alewis @
 mpsi .
 net]
>Sent: 	Friday, October 03, 1997 5:04 PM
>To: 	Firewalls @
 GreatCircle .
 COM
>Subject: 	hosts.allow
>
>I hope that this is not off topic.
>
>Is it possible to put a local system users name in the
>/etc/hosts.allow file.
>
>I want that person to be able to login from anywhere?
>
>I am running Linux 2.0.30
>
>Thanks
>
>


Follow-Ups:
Indexed By Date Previous: Re: dynamic address translation...
From: Eric Vyncke <evyncke @ cisco . com>
Next: RE: Gauntlet, VPN/WAN/Dialups
From: WALLY <wally @ microlan . com>
Indexed By Thread Previous: Re: hosts.allow
From: "Chris Brenton" <cbrenton @ pccmis . com>
Next: RE: hosts.allow
From: Andy Lewis <alewis @ mpsi . net>

Google
 
Search Internet Search www.greatcircle.com