LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-01-2003, 12:40 PM   #1
Ozzman
LQ Newbie
 
Registered: Jun 2003
Posts: 17

Rep: Reputation: 0
Hiding Ports


i have every port on my system blocked except ssh and http and https, BUT all my other ports still come up when i run a port scan remotely, is there anyway to "hide" them completly so they dont even show up in a port scan? except for ssh http and https those are of course fine.


Thanks In Advance
 
Old 12-01-2003, 01:17 PM   #2
fancypiper
LQ Guru
 
Registered: Feb 2003
Location: Sparta, NC USA
Distribution: Ubuntu 10.04
Posts: 5,141

Rep: Reputation: 60
portsentry?

Last edited by fancypiper; 12-01-2003 at 01:23 PM.
 
Old 12-01-2003, 01:33 PM   #3
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
From the LQ FAQ: Security references, about Iptables, please see Is "Stealth" important? as I think it applies to your case.

Fancypiper, a request if I may, would you be able to give a more verbose reply instead of just posting links?
If you want to talk about this you're invited to email me.
TIA.
 
Old 12-01-2003, 01:42 PM   #4
Ozzman
LQ Newbie
 
Registered: Jun 2003
Posts: 17

Original Poster
Rep: Reputation: 0
Quote:
Originally posted by unSpawn
From the LQ FAQ: Security references, about Iptables, please see Is "Stealth" important? as I think it applies to your case.

Fancypiper, a request if I may, would you be able to give a more verbose reply instead of just posting links?
If you want to talk about this you're invited to email me.
TIA.
thanks, btw i found his post easily understandable, however i can see why you would rather him had at least wrote, check out this app. or something like that..

Thanks again, sorry for not just checking the sticky in the first place, im still a bit of a to this site
 
Old 12-01-2003, 02:13 PM   #5
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
sorry for not just checking the sticky in the first place
Np, np, that's why we try to promote it...
 
Old 12-02-2003, 09:20 PM   #6
chrisfirestar
Member
 
Registered: Sep 2003
Location: Adelaide, Australia
Distribution: Fedora/RH
Posts: 231

Rep: Reputation: 30
is this working now?

a couple of thigns... make the command DROP instead of DENY
also you have a few other ways of people "dicovering you" eg pings
so make sure you stop external pings

# Blocks External Ping requests
echo 1 > /proc/sys/net/ipv4/icmp_echo_ignore_all

and if you want to open it up later just type

echo 0 > /proc/sys/net/ipv4/icmp_echo_ignore_all

hope this helps
 
Old 12-05-2003, 04:32 PM   #7
Ozzman
LQ Newbie
 
Registered: Jun 2003
Posts: 17

Original Poster
Rep: Reputation: 0
well i went ahead and installed it.. BUT it still isnt doing anything...

im running it in advanced tcp and udp mode, but i can still see the ports using my port scanner.. is there a special setting i need to set so it attaches itself to the firewall or anything like that?

Thanks again..
 
Old 12-07-2003, 08:43 PM   #8
chrisfirestar
Member
 
Registered: Sep 2003
Location: Adelaide, Australia
Distribution: Fedora/RH
Posts: 231

Rep: Reputation: 30
well u haven't actually said WHAT your using.. give us more info and we may be able to help.

My advice is only relevent if you are using IPTABLES really (except the ping stuff)
 
Old 12-08-2003, 05:08 AM   #9
Ozzman
LQ Newbie
 
Registered: Jun 2003
Posts: 17

Original Poster
Rep: Reputation: 0
oh sorry about that.. im talking about

portsentry

and i am using Iptables, and those settings are already set..
 
Old 12-08-2003, 07:24 PM   #10
chrisfirestar
Member
 
Registered: Sep 2003
Location: Adelaide, Australia
Distribution: Fedora/RH
Posts: 231

Rep: Reputation: 30
are you clearing your iptables?

tell what you are trying to do and i will give you a firewall script to test ok
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
hiding the desktop manas_shukla Linux - Newbie 3 01-22-2005 06:28 AM
Hiding users from each other itskiLLjoy Linux - Security 1 03-28-2004 04:37 PM
hiding sectors porous Linux - Hardware 1 10-12-2003 03:50 PM
hiding menubar new user Linux - General 1 10-01-2003 01:14 AM
Hiding tmiles Linux - Security 4 08-10-2001 08:17 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 05:15 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration