Quote:
Originally Posted by
gull04
The problem turned out to be the firewall had been turned back on by one of our offshore people, I had already stopped the service
In addition to what Don Cragun already said: how on earth can a user get the privileges necessary to turn on the firewall?? In a long (and rather depressing) life as a systems administrator i learned that admins should be like gods:
i am your root - thou shalt have no others besides me!
In AIX there is a file
/etc/nologin, which, when in place, prevents any login. (It is deleted automatically upon reboot, so it can't be forgotten.) Maybe there is something alike in RHEL, which you could incorporate to your deployment process to prevent these things? If not: how about killing
getty instead? That would also prevent new logins until a final reboot, which should perhaps be the last step in a customisation process anyway.
I hope this helps.
bakunin