[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-users] Re: How to turn off Finger and Who Services on Qube2



>The file you need to edit is /etc/inetd.conf

>Comment out the lines which look like:

>finger stream  tcp     nowait  >root   
/usr/sbin/tcpd  in.fingerd
>cfinger stream tcp     nowait  >root   
/usr/sbin/tcpd  in.cfingerd

>[cfinger may not be there, I'm looking on a RedHat
>box here]

when we do vi /etc/inetd.conf we get:

# cfinger is for GNU finger, which is currently not in
use in RHS Linux
#
#finger stream  tcp     nowait  root    /usr/sbin/tcpd
 in.fingerd
#cfinger stream tcp     nowait  root    /usr/sbin/tcpd
 in.cfingerd
#systat stream  tcp     nowait  guest   /usr/sbin/tcpd
 /bin/ps -auwwx
#netstat        stream  tcp     nowait guest  
/usr/sbin/tcpd  /bin/netstat
  -f inet


These are already commented out, but when we do:

[mitch@www mitch]$ finger

We receive:
Login     Name      Tty  Idle  Login Time   Office    
Office Phone
mitch     Mitch      p1        Oct  4 04:52 (10.0.0.5)
mitch     Mitch      p2  1:28  Oct  4 06:03
(10.0.0.11)
mitch     Mitch      p3        Oct  4 06:25
(10.0.0.26)
root      Root       p0    47  Oct  4 05:34
(10.0.0.67)


When we did this:

ps aux| fgrep finger

it revealed this:

root       927  0.0  0.1  1384   360  p3 S   06:08  
0:00 fgrep finger

[root@www /root]# ps aux |fgrep finger
root      1018  0.0  0.1  1384   360  p3 S   06:18  
0:00 fgrep finger

When we did this:

fgrep finger /etc/services


we received this:

finger          79/tcp
cfinger         2003/tcp                        # GNU
finger

We do not regular joe user who is telneted in to be
able to do the finger command and receive the finger
output.  Is there any way to disable this since we can
not find the on/off switch as tried above.



>and then do:

>/etc/rc.d/init.d/inetd stop
>/etc/rc.d/init.d/inetd start

>which should sort you out. Note that the 'who'
>command is a local shell
>command and as such is not a remote service. You may
>have to look for
>'rwhod' instead in either inetd.conf or >your
/etc/rc.d/init.c/<blah>
>files.


Also, when we do this:

[root@www log]# locate rwhod

We receive this:

/usr/include/protocols/rwhod.h

Any way to stop who services so when people telnet in
it doesn't work?

Warm Regards,
RT

[snip]
HTH

Graeme


__________________________________________________
Do You Yahoo!?
Yahoo! Photos - 35mm Quality Prints, Now Get 15 Free!
http://photos.yahoo.com/