Sponsored Content
Full Discussion: closing open ports
Special Forums Cybersecurity closing open ports Post 7558 by rwb1959 on Thursday 27th of September 2001 06:17:01 PM
Old 09-27-2001
Ummmm...

I've never seen SIGUSR1 used for this.
It has always been SIGHUP.

The way to get inetd to re-read inetd.conf
is....

find the process id of inetd...

ps -ef | grep inetd

...then as root do...

kill -HUP process_id_of_inetd

... it apparently ignores the signal if it did
not come from root.

Are you sure Linux uses SIGUSR1?
 

9 More Discussions You Might Find Interesting

1. Cybersecurity

firewall vs. closing ports

This may be kind of a stupid question, but here goes: Say I'm running a FreeBSD webserver (w/apache). I've managed to close ALL open ports (including SSH/telnet and portmapper), excepting '80' that apache is listening on. A netstat -a shows me nothing open. Discounting DoS/DDoS or holes in... (7 Replies)
Discussion started by: adam_crosby
7 Replies

2. IP Networking

Closing out ports???

Hi all Is there a command that I can use to close out open ports? I did a netstat - a -p and got a long list of ports open (see sample below). I have disabled the some of the applications from /etc/services/. But there are still applications listening on certain ports. I need to know how to... (6 Replies)
Discussion started by: skotapal
6 Replies

3. Shell Programming and Scripting

Check open ports every ...

Hello, i need a script (bash type maybe?..), which would check open ports on 127.0.0.1 and then compare open ports with "registered/allowed" port list and try to kill the program who uses unregistered ports. It would be great that script would be started lets say every 5 or 10 minutes. You see i... (2 Replies)
Discussion started by: MorchiuS
2 Replies

4. Solaris

open ports solaris 8

Hello, I have a number of Solaris 8 Sun servers that have open ports that I cannot identify. I see some with 1013-1023 (which are reserved ports according to the IANA. Lsof does not identify these. I rebooted the server and they went off, but this morning I saw they were all back on again. Any... (1 Reply)
Discussion started by: csgonan
1 Replies

5. Solaris

Open ports in solaris 10

hi guys, may i know the exact steps to open a port in solaris.i have some rough idea - which is adding the port number in /etc/services. but i am not sure the correct conventions, steps or any other steps. kindly advise.thanks guys ! (1 Reply)
Discussion started by: cromohawk
1 Replies

6. Shell Programming and Scripting

closing unwanted open ports using scripts

i have a text file i.e file1.txt which shows open ports on particular system. i have another text file i.e file2.txt which shows a list of allowed ports on a system. for eg: file2.txt 22/tcp ssh 23/tcp telnet. can i have a script which would compare these text files ,file1 and file2 ... (1 Reply)
Discussion started by: anand121
1 Replies

7. UNIX for Dummies Questions & Answers

open ports and services

just a quick question: a. whats the simplest command to check open port and the corresponding services? example: bash-2.05# netstat -an | grep LISTEN *.199 *.* 0 0 49152 0 LISTEN *.8989 *.* 0 0 49152 ... (1 Reply)
Discussion started by: lhareigh890
1 Replies

8. IP Networking

Open/close of ports

Hi, I have read some forum theads about the open and close ports. some points are clear and it is not working on my machine or something am i missing? I have commented out a port /etc/services, one application uses then when i use the telnet <hostname> <port_blocked> it shows connected..... (1 Reply)
Discussion started by: balamv
1 Replies

9. Shell Programming and Scripting

Closing open file descriptors from /proc/pid/fd

Hi guys, i need to write a shell script that will close file descriptors from /proc/pid/fd will calling exec 4<&- solve the problem ? thanks in advance :) (15 Replies)
Discussion started by: alpha_romeo
15 Replies
inetd(8)						      System Manager's Manual							  inetd(8)

NAME
inetd - Internet services daemon SYNOPSIS
For starting the daemon: inetd [-d] [-R rate] [-r radid] [configfile] For signaling the running daemon: inetd [-d] [-h | -q | -s | -t] FLAGS
Dumps debugging messages to syslogd(8) and to standard error. Sends the currently running master inetd daemon a SIGHUP signal, which causes it to reread its configuration files. Sends the currently running master inetd daemon a SIGQUIT signal, which kills all inetd child daemons, but none of the services that the child daemons have started. The master inetd daemon continues to run. Specifies the maximum number of times a service can be invoked in one minute. The default is 2 billion (INT_MAX). Specifies the identifier of the Resource Affinity Domain (RAD) on which to start an inetd child daemon. You can specify this option multiple times on the command line (see the "Examples" section). The default is to start a child daemon on all RADs. Sends the currently running master inetd daemon a SIGUSR2 sig- nal, which kills all inetd daemons, including the master inetd daemon, and all services that they have started. Sends the currently run- ning master inetd daemon a SIGTERM signal, which kills all inetd daemons, including the master inetd daemon, but none of the services that they have started. By default, the files are /etc/inetd.conf and /etc/inetd.conf.local. They contain configuration information that the daemon reads at startup. If you specify configfile on the command line, only that file is read at startup. DESCRIPTION
The inetd daemon should be run at boot time by inetd in the /sbin/init.d directory. At startup, it determines how many RADs are present (if on NUMA-capable hardware) and starts an inetd child daemon on each RAD. On non-NUMA hardware, only one inetd child daemon is started. Each inetd child then listens for connections on certain Internet sockets. When a connection is found on one of its sockets, it decides what service the socket corresponds to, and invokes a program to service the request. After the program is finished, it continues to lis- ten on the socket (except in some cases that are discussed later in this reference page. Essentially, inetd allows running one daemon to invoke several others, reducing load on the system. Upon execution, each inetd child reads its configuration information from the two configuration files, which, by default, are /etc/inetd.conf and /etc/inetd.conf.local; the /etc/inetd.conf file is read first. There must be an entry for each field of the configura- tion files, with entries for each field separated by a tab or a space. Comments are denoted by a # (number sign) at the beginning of a line. If an entry exists in both configuration files, the entry in the /etc/inetd.conf.local file overrides the entry in the /etc/inetd.conf file. See inetd.conf(4) for more information. The inetd daemon provides several trivial services internally by use of routines within itself. These services are echo, discard, chargen (character generator), daytime (human-readable time), and time (machine-readable time, in the form of the number of seconds since midnight January 1, 1900). All of these services are tcp or udp based, and support both IPv4 and IPv6. (Note: These services are initially turned off. To turn them on, you must remove the comment leader of the service in /etc/inetd.conf or /etc/inetd.conf.local, depending on your configuration, and send a SIGHUP signal to inetd.) For details of these services, consult the appropriate RFC. The inetd daemon rereads its configuration files when it receives a hangup signal, SIGHUP. Services may be added, deleted, or modified when the configuration files are reread. You should use the -h option to send a SIGHUP signal. You can use the inetd daemon to start RPC daemons by adding them to the inetd.conf or inetd.conf.local file. When you add an RPC service it must be followed by a slash (/) and the range of version supported. Also, the protocol field must consist of the string rpc followed by a slash (/) and protocol listed in the /etc/protocols file. Resource Affinity Domains and inetd When you add a new RAD, complete the following steps: Add the RAD. Configure the RAD. Issue the inetd -h command to force inetd to reread its configuration file. When you delete a RAD, complete the following steps: Issue the inetd -q command to kill all child daemons. Unconfigure the RAD. Remove the RAD. Issue the inetd -h command to force inetd to reread its configuration file. See the appropriate hardware documentation for the actual procedure for adding and deleting a RAD. EXAMPLES
To start an inetd daemon on RADs 1 and 2, enter: # inetd -r1 -r2 FILES
Specifies the command path. The global configuration file. The cluster member-specific configuration file. Process ID. RELATED INFORMATION
Commands: comsat(8). Daemons: fingerd(8), ftpd(8), rexecd(8), rlogind(8), rpc.rquotad(8), rpc.rstatd(8), rpc.rusersd(8), rpc.rwalld(8), rpc.sprayd(8), rshd(8), telnetd(8), tftpd(8). Files: inetd.conf(4). delim off inetd(8)
All times are GMT -4. The time now is 06:43 AM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy