[lug] host.allow host.deny help

Chip Atkinson catkinson at circadence.com
Tue Oct 9 09:01:53 MDT 2001


You should also consider putting the black listed IPs in ipchains as 
well.  If you wish to keep some people out, you should keep them 
completely out, not just out of the services that are wrapped.  This 
then should prevent them from attacking you through port 80 or the DNS 
ports.

Chip

D. Stimits wrote:

> Greg Horne wrote:
> 
>> Maybe I have not explained what I am trying to do well enough.  Let me try
>> again.  I want to allow everybody in the world to access my server.  The
>> only people that should be blocked are those people that I specify.
>> 
>> Like:
>> host.allow
>> ALL: ALL
>> 
>> host.deny
>> evil person #1
>> evil person #2
> 
> 
> ALL: evil.person.com
> ALL: microsoft.com
> (yeah, just having fun there, but you did mention "evil")
> 
> "ALL" means all xinetd (or inetd) run daemons, like ftp and telnet.
> 
> D. Stimits, stimits at idcomm.com
> 
> 
>> How do I accomplish that?
>> 
>> Greg
>> 
>> 
>>> From: dan radom <dradom at redback.com>
>>> Reply-To: lug at lug.boulder.co.us
>>> To: lug at lug.boulder.co.us
>>> Subject: Re: [lug] host.allow host.deny help
>>> Date: Mon, 8 Oct 2001 17:26:59 -0600
>>> 
>>> ALL : xxx.xxx.xxx.xxx (single host)
>>> ALL : xxx.xxx.xxx.xxx/255.255.255.0 (entire class c)
>>> in.ftpd : xxx.xxx.xxx.xxx ftp only
>>> 
>>> what i do is ALL : ALL in hosts.deny and allow specific access fromt he
>>> allow file.
>>> 
>>> * Greg Horne (jeerygh at hotmail.com) wrote:
>>> 
>>>> Well in addition to those IP's are people that try to gain ftp and
>>> 
>>> telnet
>>> 
>>>> access, so how would I go about blacklisting them?
>>>> 
>>>> Greg
>>> 
>>> _______________________________________________
>>> Web Page:  http://lug.boulder.co.us
>>> Mailing List: http://lists.lug.boulder.co.us/mailman/listinfo/lug
>> 
>> _________________________________________________________________
>> Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp
>> 
>> _______________________________________________
>> Web Page:  http://lug.boulder.co.us
>> Mailing List: http://lists.lug.boulder.co.us/mailman/listinfo/lug
> 
> _______________________________________________
> Web Page:  http://lug.boulder.co.us
> Mailing List: http://lists.lug.boulder.co.us/mailman/listinfo/lug




More information about the LUG mailing list