[lug] Re: Unauthorized Portmap Connection

Archer Sully archer at meer.net
Mon Dec 11 20:59:40 MST 2000


SoloCDM wrote:
> 
> Archer Sully stated the following:
> >
> > SoloCDM wrote:
> > >
> > > 1) What does the following entry into /var/log/messages mean?  2)
> > > How can I stop future connections?
> > >
> >
> > 1) It means someone portscanned you and connected to your portmapper.
> > 2) Filter connections to the portmapper, or better yet, turn it off.
> 
> I use nfs.  I also tried the following:
> 

Too bad.  (I really, really, really hate nfs!)

> portmap: 192.168.0. : ALLOW
> portmap: ALL :DENY
> 
> And, the following warning occurred:
> 
> warning: /etc/hosts.allow, line 3: portmap: service possibly not
> wrapped
> 

I'm with Sean.  Use ipchains.  And while you're at it, get an
old 486 to act as your firewall so you don't have to run nfs
on a machine that's directly connected to the Internet.

-- archer




More information about the LUG mailing list