LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-15-2003, 04:13 PM   #1
ehedman
Member
 
Registered: Jan 2003
Location: Wisconsin, USA
Distribution: Rehat 7.3
Posts: 33

Rep: Reputation: 15
Unhappy Redhat 7.3 security


I have a redhat 7.3 server that I have problems accessing
with telnet and trying to set up as a Samba Server. The server is also a webserver and resides behind a router as a fire walll as does the rest of my network. As I have done on
other redhat servers, I turned off ipchains and turned on iptables. I can secure shell login from anywhere inside my
network. When I telnet, I get connection refused. I then tried allowing everything through. I stopped and cleared out all the iptables entries. I restarted iptables andentered the following commands with no error messages:

iptables -P INPUT ACCEPT
iptables -P OUTPUT ACCEPT
iptables -P FORWARD ACCEPT

I still get connection refused. When I enter:

iptables -L

it shows that these are the only policies and they are entered correctly. Any ideas?
 
Old 02-15-2003, 04:31 PM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Maybe a stupid question, but you have telnetd running?
What do the logs say (PAM|TCP wrappers/xinetd thing?)?
 
Old 02-15-2003, 06:39 PM   #3
ehedman
Member
 
Registered: Jan 2003
Location: Wisconsin, USA
Distribution: Rehat 7.3
Posts: 33

Original Poster
Rep: Reputation: 15
I thought I did. I went into the services configuration and made sure xinetd was running (which it says is required for telnet). I double checked with ps -ef | grep xinetd and saw that it really was. telnet was checked to start at start up. The commands to start and stop the service were grayed out. I couldn't do it from the tool. Telnet it self runs from the command line on the server buts gets a connection refused message when I telnet out to any other server. I am a newbie. How do I check the logs?
 
Old 02-15-2003, 10:27 PM   #4
mychl
Member
 
Registered: Jul 2001
Location: Earth
Posts: 164

Rep: Reputation: 30
xinetd running does not mean telnet is running....

Have a look in /etc/xinetd.d for a file called telnet, edit it and change the line that reads

disable yes

to

disable no

save the file and restart xinetd /etc/init.d/xinetd restart

hth
 
Old 02-16-2003, 05:12 PM   #5
ehedman
Member
 
Registered: Jan 2003
Location: Wisconsin, USA
Distribution: Rehat 7.3
Posts: 33

Original Poster
Rep: Reputation: 15
I checked that the entry in the file in the
/etc/xinetd.d/telnet

was:

dasable no

I did an

/etc/init.d/xinetd restart

iIt gave me the okay message on shutting down and restarting the service. I still have the same problem. Attempts to telnet to the server get connection refused.
Secure shell logins work just fine.

What do I try next
 
Old 02-16-2003, 09:51 PM   #6
Crashed_Again
Senior Member
 
Registered: Dec 2002
Location: Atlantic City, NJ
Distribution: Ubuntu & Arch
Posts: 3,503

Rep: Reputation: 57
What about your tcpwrappers? /etc/hosts.allow and /etc/hosts.deny ?
 
Old 02-17-2003, 11:06 AM   #7
ehedman
Member
 
Registered: Jan 2003
Location: Wisconsin, USA
Distribution: Rehat 7.3
Posts: 33

Original Poster
Rep: Reputation: 15
I just checked. No entries in either the hosts.allow or
hosts.deny files. I just tried adding the entry
ALL: ALL

like i have in an old slackware box. It didn't work
 
Old 02-18-2003, 11:06 AM   #8
geoffm33
Member
 
Registered: May 2002
Distribution: RH 7.3 - YDL 2.3
Posts: 63

Rep: Reputation: 15
might be a dumb question, but...

When you restarted xinetd, flushed iptables, etc, etc; what computer are you trying to connect in from?

While on the server you are trying to telnet into, can you type:

# telnet localhost
 
Old 02-18-2003, 12:18 PM   #9
ehedman
Member
 
Registered: Jan 2003
Location: Wisconsin, USA
Distribution: Rehat 7.3
Posts: 33

Original Poster
Rep: Reputation: 15
telnet to localhost works
 
Old 02-18-2003, 12:23 PM   #10
ehedman
Member
 
Registered: Jan 2003
Location: Wisconsin, USA
Distribution: Rehat 7.3
Posts: 33

Original Poster
Rep: Reputation: 15
I have tried connecting in from a couple of PCs running Windows 2000 and a couple of other Linux and SCO Unixware boxes on my local network. All have IP addresses in the same 192.168.1.* range. All have entries in the servers hosts file.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
redhat linux 9 security neo.dot Linux - Security 1 06-22-2004 06:42 AM
New RedHat Security Features k2x5 Linux - Security 1 07-29-2003 07:41 PM
Redhat Security BajaNick Linux - Security 2 07-28-2003 01:11 PM
Redhat 9 Security mrsolo Linux - Security 14 05-03-2003 09:05 AM
RedHat 7.2 Security levels kjelle Linux - Software 1 02-07-2002 03:52 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:08 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration