LinuxQuestions.org
Register a domain and help support LQ
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
Search this Thread
Old 07-20-2004, 02:50 AM   #1
apache
Member
 
Registered: Jun 2004
Posts: 37

Rep: Reputation: 15
How do I close open ports ???


Hello All,
I am using APF and iptables filrrtewall on different servers.On my local sever I use APF .
When I scanned my local server for open ports I found the port 631 is open which is a tcp port using ipp service.
I have tried to close the port by adding the entries in deny_host file in apf directory as:
tcp:in:s=631:s=0.0.0.0
then i restarted the firewall as
apf -s
But still it is showing the port is open.
How can i close it?
 
Old 07-20-2004, 04:39 AM   #2
HappyTux
Senior Member
 
Registered: Mar 2003
Location: Nova Scotia, Canada
Distribution: Debian AMD64
Posts: 3,513

Rep: Reputation: 64
Re: How do I close open ports ???

Quote:
Originally posted by apache
Hello All,
I am using APF and iptables filrrtewall on different servers.On my local sever I use APF .
When I scanned my local server for open ports I found the port 631 is open which is a tcp port using ipp service.
I have tried to close the port by adding the entries in deny_host file in apf directory as:
tcp:in:s=631:s=0.0.0.0
then i restarted the firewall as
apf -s
But still it is showing the port is open.
How can i close it?
That is CUPS and it is there waiting for a connection from your printer and unless you have opened it up to the whole world somehow ( eg. you went into the config file and set it up that way ) it is not really something to worry about.
 
Old 07-20-2004, 08:44 PM   #3
sh1ft
Member
 
Registered: Feb 2004
Location: Ottawa, Ontario, Can
Distribution: Slackware, ubuntu
Posts: 391

Rep: Reputation: 31
Are you scanning the server from itself? CUPS uses the lo interface so it will pretty much always appear open locally. Try scanning from somewhere on the net, there are some good websites with java portscans out there.

If its still open globally then you could just block the port on eth0 but still accept connections from the lo interface, unless your using it as a print server, then it would be more complicated.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Which ports should I keep open and which close?? apache Linux - Security 3 07-19-2004 09:31 AM
how to close open ports mayagenesis Linux - Networking 1 07-31-2003 01:47 AM
How do i close my open ports??? Synth218 Slackware 10 07-06-2003 03:31 PM
open ports... how do i close them? prodigius Linux - Security 3 01-18-2002 09:35 AM
how to close open ports zyan Linux - Security 3 08-04-2001 09:11 PM


All times are GMT -5. The time now is 08:23 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration