Turning off UDP service in Sol 10 zone.


 
Thread Tools Search this Thread
Operating Systems Solaris Turning off UDP service in Sol 10 zone.
# 1  
Old 08-17-2007
Turning off UDP service in Sol 10 zone.

I've got a virtual host (zone) that I've been asked to lock down the network services on.

Using Nmap, I've listed the running services on the box.

One of them is 5001/udp. Running netstat -na on the host itself confirms this.

Normally I'd use "lsof", but this does not run properly on zones. I've also tried running it on the global zone, but it doesn't report for the virtual zones.

How do I find out what is starting this service, so that I can turn it off?

Thank you my friends.
AKBAR
Login or Register to Ask a Question

Previous Thread | Next Thread

9 More Discussions You Might Find Interesting

1. Solaris

Solaris 11 zone has no external network access (except to Global Zone)

Hi, hoping someone can help, its been a while since I used Solaris. After creating a NGZ (non global zone), the NGZ can access the GZ (Global Zone) and the GZ can access the NGZ (using ssh, zlogin) However, the NGZ cannot access any other netwqork devices, it can't even see the default router ... (2 Replies)
Discussion started by: GazinLincoln
2 Replies

2. Solaris

Svcadm disable in global zone affects same service in ngz

I have a service that resides in both the global and non global zones. When I disable the service in the global zone, a svcs -p on that service shows the process name and ID of the svcadmd for the non global. An svcs -l on the service in the global shows online with an intended state of disabled.... (0 Replies)
Discussion started by: Cbrown31
0 Replies

3. UNIX for Advanced & Expert Users

Solaris 10: I forgot to detach a zone before zpool export. Uninstall zone?

Dear all, recently, I migrated a solaris zone from one host to another. The zone was inside of a zpool. The zpool cotains two volumes. I did the following: host1: $ zlogin zone1 shutdown -y -g0 -i0 #Zone status changes from running to installed $ zpool export zone1 host2: $ zpool... (2 Replies)
Discussion started by: custos
2 Replies

4. Solaris

showing 2 different time zones in global zone and nonglobal zone

can some one help me out as it is showing 2 different time zones in global zone and nonglobal zone .In global zone it is showing in GMT while in nonglobal zone i it showing as PDT. System in running with solaris 10 (3 Replies)
Discussion started by: ravijanjanam12
3 Replies

5. Solaris

Zone failes to boot due to mount issue, dir exists in zone.

I have two physical servers, with zones that mount local storage. We were using "raw device" in the zonecfg to point to a metadevice on the global zone (it was not mounted in the global zone at any point). It failed to mount on every boot because the directory existed in the zone. I... (6 Replies)
Discussion started by: BG_JrAdmin
6 Replies

6. Solaris

how to add a default gateway in a zone of different VLAN of global zone

Hi Greetings... I have an issue in connecting the zone from outside the network and it is because of default gateway. I can ping default gateway from inside the zone and not able to ping from global zone due to different VLAN issue. If i add two different gateways and restart network services,... (2 Replies)
Discussion started by: vvpotugunta
2 Replies

7. Solaris

JASS - upgrading from Sol 9 to Sol 10

Do I need to reinstall/rerun JASS after upgrading from Sol9 to Sol10? Just wondered if the upgrade procedure overwrote any of the settings etc? (0 Replies)
Discussion started by: psychocandy
0 Replies

8. UNIX for Advanced & Expert Users

luupgrade: Sol 8 -> Sol 10 u7 (5/09)

Greetings Forumers! I ran into an issue after running luupgrade on v880 running Solaris 8. I want to upgrade to Solaris 10. When I rebooted the system I noticed the file systems listed as such: # df -h Filesystem size used avail capacity Mounted on /dev/dsk/c1t1d0s0 ... (2 Replies)
Discussion started by: bluescreen
2 Replies

9. Solaris

Need help with mail service on Sol 10

Hello All: I am trying to configure mail service on Solaris 10 and I am unable to send using mailx. It appears the server may not be listening on port 25: bash-3.00# mconnect connecting to host localhost (127.0.0.1), port 25 connect: Connection refused services is configured to use port... (7 Replies)
Discussion started by: hoo5091
7 Replies
Login or Register to Ask a Question
named-xfer(8)						      System Manager's Manual						     named-xfer(8)

Name
       named-xfer - pull BIND/Hesiod zones from another server

Syntax
       /usr/etc/named-xfer -z zone_to_transfer -f db_file -s serial_no [ -d debug_level ] [ -l debug_log_file ] [ -t trace_file ] [ -p port ] [ -n
       ] [ -a auth_type.auth_ver ] servers...

Description
       The transfer daemon, is a server that is usually run by the daemon, but it can also be run manually with the given arguments.  The transfer
       daemon  runs  on  a BIND/Hesiod secondary server and pulls BIND/Hesiod zones from a primary server.  This daemon is not run by default, nor
       can it be started up from

Options
       -z zone_to_transfer
			  This option is required to pull a zone.  The zone_to_transfer argument specifies the name of the BIND/Hesiod	zone  that
			  the daemon will transfer, for example, dec.com.

       -f db_file	  This option is  required to pull a zone.  The db_file argument specifies the name of the file into which the pulled zone
			  information is placed.

       -s serial_no	  This option is required to pull a zone.  The serial_no argument should be set to the current serial number  of  the  SOA
			  record for the zone zone_to_transfer.  If serial_no is set to 0, the zone is always pulled.

       -d debug_level	  The debug_level argument sets the debug level and determines the amount of debug information to be displayed.

       -l debug_log_file  The debug_log_file argument specifies the file that will contain any debug messages from the zone pull.

       -t trace_file	  The trace_file argument specifies the file that will contain a trace from the zone pull.

       -p port		  The port argument specifies the port that will be used instead of the default nameserver port listed in

       -n		  This	option	must be used when the daemon is running in the network safe mode.  It indicates that the zone pull must be
			  authenticated.

       -a  auth_type.auth_ver
			  This option must be used if the daemon is running in the network safe mode.  The auth_type argument indicates what  type
			  of authentication to use and the auth_ver argument indicates what version of the authentication type to use.	Currently,
			  the auth_type must be "kerberos" and the auth_ver must be "one".

       servers...	  The servers argument is a list of Internet addresses from which to pull a zone.  If the first host cannot be	ddreached,
			  the transfer daemon will try to pull the zone from the next host listed.

See Also
       services(5), named(8), kerberos(8krb)
       Guide to the BIND/Hesiod Service
       Guide to Kerberos

																     named-xfer(8)