[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-users] Security Problems



On Sat, 30 Jun 2001, DJ Busch wrote:

> Thanks for the suggestion!  I installed nmap and ran it with the commandline
> "nmap -p 1-65535 216.219.239.8" and it returned the following:
> 
>   Starting nmap V. 2.53 by fyodor@xxxxxxxxxxxx ( www.insecure.org/nmap/ )
>   Interesting ports on  (216.219.239.8):
>   (The 65532 ports scanned but not shown below are in state: closed)
>   Port       State       Service
>   22/tcp     open        ssh
>   53/tcp     open        domain
>   1501/tcp   open        sas-3
> 
>   Nmap run completed -- 1 IP address (1 host up) scanned in 12 seconds
> 
> These ports aren't included in the list shimi gave.  Can I just go into the
> services file and remove them?  What can I do to shut these off and what
> happens if none of these ports is the problem?
> 
> 
> DJ Busch

I said *default* installation.
Default installation has no SSH server installed. Did you install it?
Default installation don't have DNS server running, did you enable it?
With regards to port 1501, that SOUNDS familiar, but I'm not sure from
when. Can you, please, type: netstat -lt | grep 1501 (as root) - and show
the output?

Oh and, next time, DON'T mention your IP!!! There could be script kiddies
lurking on this mailing list, waiting just for this!

- shimi.