TCLUG Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TCLUG:8688] mack address



On Sep 28, 1999, Mark Dalton <mwd@sgi.com> wrote:
> 
> But also it is good to do your own security if you put up a server
> on the internet.  Use /etc/hosts.allow to allow specific machines to
> see specific daemons on your machine. Then also use /etc/hosts.deny
> 	ALL : ALL
> 	(or you can do something a little fancier).

So if you put "ALL : ALL" in /etc/hosts.deny, and nothing in /etc/hosts.allow, 
is that enough?  Any other weak points I should tighten down when the time
comes?  Should I prune down my /etc/inetd.conf, or will the hosts.deny
cover that, too?

John