The UNIX and Linux Forums  

Go Back   The UNIX and Linux Forums > Special Forums > Security
.
google unix.com



Security Discuss UNIX and Linux computer and network security, cybersecurity, cyberattacks, IT security, CISSP, OWASP and more.

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
rlogin asadlone Shell Programming and Scripting 4 05-19-2008 07:33 AM
rlogin seaten Shell Programming and Scripting 3 05-13-2005 06:01 AM
rlogin seaten UNIX for Dummies Questions & Answers 2 05-12-2005 09:42 AM
Rlogin??? merlin UNIX for Dummies Questions & Answers 1 01-14-2003 08:42 AM
rsh & rlogin Inbal UNIX for Dummies Questions & Answers 2 04-24-2002 03:02 PM

Closed Thread
English Japanese Spanish French German Portuguese Italian Dutch Swedish Russian Norwegian Hungarian Hebrew Danish Bulgarian Greek Powered by Powered by Google
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
  #1 (permalink)  
Old 02-27-2006
amon amon is offline
Registered User
  
 

Join Date: Jan 2006
Posts: 71
not allow rlogin

does anyone know how to stop rlogin to my sunsolaris

so I have 2 machines...I can not telnet one becouse that is not allowed but I can telnet the other and do rlogin to first one..I want to stop that..

so..

telnet A from C machine - works
telnet B from C machine - does not work
but telent A from C and then rlogin B - works
that should be stopped...

any help?? please...
  #2 (permalink)  
Old 02-27-2006
RTM's Avatar
RTM RTM is offline Forum Advisor  
Hog Hunter
  
 

Join Date: Apr 2002
Location: On my motorcycle
Posts: 3,039
There are a couple of things you can look at - it matters what your servers are using and how they are set up.

You can either look into changing on server B your /etc/hosts.allow and/or /etc/hosts.deny files (if you are using tcp wrappers), OR, you can shutdown the rsh services in /etc/inetd.conf. See the man page for inetd.conf and inetd.

You can also look to see if /etc/hosts.equiv exist - it may be granting the access there.

Before changing anything - you need to understand what it may do to something that IS okay between these servers (maybe remote copy is needed so turning off all rsh services would not be the way to go).
  #3 (permalink)  
Old 02-28-2006
amon amon is offline
Registered User
  
 

Join Date: Jan 2006
Posts: 71
helloo thanks for answerss...

I have on my system /etc/inetd.conf and there are lines

#
# Shell, login, exec, comsat and talk are BSD protocols.
#
shell stream/BSD tcp nowait root /usr/sbin/in.rshd in.rshd
login stream tcp nowait root /usr/sbin/in.rlogind in.rlogind
exec stream/BSD tcp nowait root /usr/sbin/in.rexecd in.rexecd
talk dgram/BSD udp wait root /usr/sbin/in.talkd in.talkd
# remove comment in next line, when using bsd sendmail and biff
#comsat dgram udp wait root /usr/sbin/in.comsat in.comsat

so if I put # in front of login...should I deny by that rlogin to my machine or ...??
also my sun solaris does not have /etc/hosts.equiv...and there are no
/etc/hosts.allow and /etc/hosts.deny files...

thanks

looking forward of hearing answers...
  #4 (permalink)  
Old 02-28-2006
RTM's Avatar
RTM RTM is offline Forum Advisor  
Hog Hunter
  
 

Join Date: Apr 2002
Location: On my motorcycle
Posts: 3,039
Before you comment out anything, make sure you have a way to the system (such as console) in case changing it cuts off all access. Suggest you start a session onto the box on console as root so you can back out of any change in case it does more than just remove rlogin.
Closed Thread

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -4. The time now is 09:41 AM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited. Language Translations Powered by .
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
The UNIX and Linux Forums Content Copyright ©1993-2009. All Rights Reserved.Ad Management by RedTyger

Content Relevant URLs by vBSEO 3.2.0