Search Members Help

» Welcome Guest
[ Log In :: Register ]

Mini-ITX Boards Sale, Fanless BareBones Mini-ITX, Bootable 1G DSL USBs, 533MHz Fanless PC <-- SALE $200 each!
Get The Official Damn Small Linux Book. DSL Market , Great VPS hosting provided by Tektonic
Pages: (4) </ 1 [2] 3 4 >/

[ Track this topic :: Email this topic :: Print this topic ]

reply to topic new topic new poll
Topic: Security Questions< Next Oldest | Next Newest >
green Offline





Group: Members
Posts: 453
Joined: Oct. 2004
Posted: April 22 2006,13:46 QUOTE

I agree 100% regarding a firewall not being overkill, I have a dedicated firewall myself.
However, I bet the "open ports" look siginificantly different if done from another box against that one.
You are showing what connections you initiated, and the x server ports do not show up like that from the outside.
It would be super rare for a hacker to waste his/her time on a *nix box with no ports open and no promise of a golden treasure on the inside.
Back to top
Profile PM 
jpeters Offline





Group: Members
Posts: 804
Joined: April 2006
Posted: April 22 2006,18:54 QUOTE

"I think the X client/server connections are exposed to attacks"

I looks like all the connections are to the /tmp or /var folders on your ramdisk.
As long as there is no access to the harddisk, that shouldn't be a problem (from what little I know, anyway).
Back to top
Profile PM 
jpeters Offline





Group: Members
Posts: 804
Joined: April 2006
Posted: April 22 2006,19:58 QUOTE

I just ran a couple of available security checks, and got the following results:

https://tau.hackerwhacker.com/quickscan.php Test site

No open ports found

http://www.auditmypc.com:

We completed the audit and did not find any open ports.
This is ideal for the average visitor.

Shields Up: https://www.grc.com/:

unsolicited Packets: PASSED ? No Internet packets of any sort were received from your system as a side-effect of our attempts to elicit some response from any of the ports listed above. Some questionable personal security systems expose their users by attempting to "counter-probe the prober", thus revealing themselves. But your system remained wisely silent. (Except for the fact that not all of its ports are completely stealthed as shown below.)

Ping Echo: PASSED ? Your system ignored and refused to reply to repeated Pings (ICMP Echo Requests) from our server.


GRC Port Authority Report created on UTC: 2006-04-22 at 19:52:19

Results from scan of ports: 0, 21-23, 25, 79, 80, 110, 113,
                           119, 135, 139, 143, 389, 443, 445,
                           1002, 1024-1030, 1720, 5000

   0 Ports Open
   1 Ports Closed
  25 Ports Stealth
---------------------
  26 Ports Tested

NO PORTS were found to be OPEN.

The port found to be CLOSED was: 113

Other than what is listed above, all ports are STEALTH.
___
Back to top
Profile PM 
300c_pilot Offline





Group: Members
Posts: 217
Joined: Dec. 2005
Posted: April 23 2006,05:46 QUOTE

Thought I would throw 2 more cents into the pot.

It is just easier to setup a good firewall on linux because it is free(download the iptables.dsl). So there is no excuse for not learning how to setup iptables. Then  you are reasonably sure that you are safe. Its good enough for the fortune 100 companies.

Something is always better then nothing.

Always use protection
:D


--------------
300c_Pilot
Boise, Idaho
Back to top
Profile PM WEB 
pr0f3550r Offline





Group: Members
Posts: 378
Joined: Dec. 2005
Posted: April 23 2006,10:47 QUOTE

jpeters,
try to run a security test from within your LAN on a shared hub and then we talk about it.

I guess, if you want complete security traded with performance, run DSL in QEMU, which acts as a gateway/firewall. That's what I do. Slow but secure.


--------------
THE QEMU FORUM: http://qemu.dad-answers.com/index.php

QEMU ON WINDOWS: http://www.h7.dion.ne.jp/~qemu-win/

How to use floppy, CD-ROM and hard disk - http://www.h7.dion.ne.jp/~qemu-win/HowToFloppyCdrom-en.html

How to use network - http://www.h7.dion.ne.jp/~qemu-win/HowToNetwork-en.html
Back to top
Profile PM 
18 replies since April 21 2006,21:33 < Next Oldest | Next Newest >

[ Track this topic :: Email this topic :: Print this topic ]

Pages: (4) </ 1 [2] 3 4 >/
reply to topic new topic new poll
Quick Reply: Security Questions

Do you wish to enable your signature for this post?
Do you wish to enable emoticons for this post?
Track this topic
View All Emoticons
View iB Code