LinuxSA Mailing list archives

Index: [thread] [date] [subject] [author]
  From: Mark <markc@trinity.sa.edu.au>
  To  : ka3uww@iname.com, LinuxSA <linuxsa@linuxsa.org.au>
  Date: Thu, 30 Sep 1999 14:06:27 +0930

Re: NIS/NYS security

I'm glad I gave you a chance to answer a question.
While your answer was correct, I am after the particular daemon I need to 
block/allow for NIS/NYS.

Cheers
Mark Collis

At 12:58 30/09/99 , Frank W. Holden Jr. wrote:
>You know Mark, I don't get to answer too many of these here questions,
>but this one as easy as you think! Here are the examples:
>
>hosts.allow
>ALL:LOCAL, .that.darn.stupid.machine
>in.tftpd:LOCAL, .that.darn.stupid.machine
>
>hosts.deny
>ALL:ALL
>
>After you setup your deny then you can allow whom and whatever you
>want them to be allowed to run. Now is that simple?
>
>I know if I have this one wrong the rest on here are going to flame
>the living heck out of me so on goes the asbestos jammies!
>
>Take care Mark...
>Frank
>
>
>Mark wrote:
> >
> > Hi All,
> >
> > after a bit of extra reading (Thanks to David Drury), I have NIS set up on
> > my machines.  It uses the tcp_wrapper so to lock it down I need to modify
> > /etc/hosts.allow and /etc/hosts.deny rather than /var/yp/securenets.  Can
> > anyone let me know what the syntax for blocking these requests from a
> > particular machine (or better yet, allow them from one machine only).  I
> > have read the man pages for these files but can't find a satisfactory list
> > of daemons I can choose from (I am going to shoot myself if is it as simple
> > as ypserv : machine.i.want.to.block.com   or ypserv :
> > machine.i.want.to.allow.com).
> >
> > Cheers
> > Mark Collis
> >
> > --
> > Check out the LinuxSA web pages at http://www.linuxsa.org.au/
> > To unsubscribe from the LinuxSA list:
> >   mail linuxsa-request@linuxsa.org.au with "unsubscribe" as the subject
>
>--
>Frank W. Holden Jr. --- Holden-On
>FAX (603) 288-2594
>
>***                                                      ***
>       The future of "ALL MANKIND" lies within himself!
>  Until he figures out who he is, then he can never know ME,
>      and to know ME is to know the WORLD... -fwh-


-- 
Check out the LinuxSA web pages at http://www.linuxsa.org.au/
To unsubscribe from the LinuxSA list:
  mail linuxsa-request@linuxsa.org.au with "unsubscribe" as the subject


Index: [thread] [date] [subject] [author]
Return to the LinuxSA Mailing List Information Page