LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 05-04-2002, 03:47 PM   #1
apparition
LQ Newbie
 
Registered: Apr 2002
Location: Washington D.C.
Distribution: RH 7.2
Posts: 14

Rep: Reputation: 0
securing XFree86


OK everyone...
Its noob time!

My goal is to secure X so that no one can use it unless they are actually sitting at the server. I'm not sure how X can be exploited so some guidance would be great. I've tried to RTFM but the how-to and man pages for XFree86 don't quite cover it.

When I do netstat -tuapn it shows that X is listening on 0.0.0.0:6000. That means that if it isn't firewalled anyone can get to it right? And even if it is firewalled, someone could possibly get through with a stealth port scanner???

I'm using iptables to filter packets but to be honest, I'm not sure what everything means yet.

I am not sure if my X server is secure b/c I can telnet into port 6000 from within my network. I read something about a "-nolisten tcp" option but I can't figure out how to implement it. I am not even sure if that will secure my X server or not.

I guess the bottom line is how can I tell if my X server is secure and how can I secure it (or where to find out)?
 
Old 05-04-2002, 05:20 PM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
well o do that nolisten jobby you'd say

startx -- -nolisten tcp

you may want to set an alias to it to save typing in.

on a console, or edit your kdm/gdm/xdm config file if you get in that way, replacing calls to "/usr/X11R6/bin/X" to "/blah/X -nolisten tcp". i think that the login manager will probably try to connect to a port tho, so you'll need to stop that somehow... not something i've tried to do.

a couple of handy pages:

http://www.oneeyedcrow.net/tech/securex.html
http://www.math.clemson.edu/~bmoss/l...t/security.htm
 
Old 05-04-2002, 05:48 PM   #3
apparition
LQ Newbie
 
Registered: Apr 2002
Location: Washington D.C.
Distribution: RH 7.2
Posts: 14

Original Poster
Rep: Reputation: 0
Good links...
Thx dood


[edit]

For anyone reading this in the future. I resolved the problem by changing the file:

/etc/X11/xdm/Xservers


...where it says:

":0 local /usr/X11R6/bin/X"


...change it to:

":0 local /usr/X11R6/bin/X -nolisten tcp"


...then restart X.

[/edit]

Last edited by apparition; 05-04-2002 at 07:17 PM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Securing Slackware 8.1 Tekime Slackware 9 02-21-2004 09:27 PM
Help configuring XFree86 on YDL 2.3 (black screen & failed XFree86 -configure) EnVoy Linux - General 1 11-24-2003 04:32 PM
XFree86 4.3 on woody, can't run XFree86 -Config mtr Debian 6 08-15-2003 12:50 PM
Will ATI Radeon 8500 XFree86 4.2 driver work with Xfree86 4.3? Stevetgn Linux - Hardware 1 06-24-2003 06:16 PM
securing FTP radnix Linux - Security 3 09-16-2002 01:46 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 03:55 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration