LinuxQuestions.org
Review your favorite Linux distribution.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-26-2001, 06:26 PM   #1
ForumKid
Member
 
Registered: Dec 2001
Posts: 195

Rep: Reputation: 30
tcp wrappers --with-tcp-wrappers


This is an excerpt from a security book and i have no idea how to do what they are saying. Maybe someone here knows what the author is talking about.

Many internet programs allow TCP wrappers to be compiled in, ahd Ssh is such an example. When configuring SSH, simply pass the configure program with the --with-tcp-wrappers option. You can then add an entry into /etc/hosts.allow such as:

sshd: .example.com .trusted_network.org trusted_machine.example.org

What i dont understand is the configure program with the --with-tcp-wrappers option. What the heck does it mean and how do i do it.

Thanks as always

 
Old 12-31-2001, 04:36 PM   #2
infinity6
Member
 
Registered: Dec 2001
Posts: 66

Rep: Reputation: 15
tcp wrappers is a further security feature that allows for services (controlled by xinetd, I believe) to be controlled through hosts.allow/hosts.deny options. If you want to get more technical, I believe the net 2-4 howto on http://www.linuxdoc.org has a more detailed explanation. (Can't hit the site right now to verify the name. Go to the alphabetical HTML listing and it should be there.)

Tip: If you have no idea what it is or how to use it, don't configure it until you've familiarized yourself a little more with the program/OS.
 
Old 01-04-2002, 04:01 PM   #3
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3599Reputation: 3599Reputation: 3599Reputation: 3599Reputation: 3599Reputation: 3599Reputation: 3599Reputation: 3599Reputation: 3599Reputation: 3599Reputation: 3599
A small addition.
Any app that has been compiled with libwrap aka TCP Wrappers can use /etc/hosts.(allow,deny).

This also goes for apps started w/o using (x)inetd, because that's just a way of "serving" which. In some cases using (x)inetd causes performance penalties, like with sshd for example.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
TCP Wrappers on LE2005 iggep Mandriva 1 10-31-2005 09:25 AM
netatalk and TCP wrappers greenhornet Linux - Networking 0 04-22-2004 11:47 PM
TCP Wrappers ? juanb Linux - Newbie 1 01-31-2004 01:35 PM
tcp wrappers and Slackware 9.0 pine0279 Slackware 1 07-05-2003 09:48 AM
TCP Wrappers ltrain Linux - Security 6 05-31-2001 10:40 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:02 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration