HostedDB - Dedicated UNIX Servers

Securing-Optimizing-RH-Linux-1_2_26
Comments and suggestions concerning this book should be mailed to gmourani@videotron.ca © Copyright 1999-2000 Gerhard Mourani and Open Network Architecture ® 26 · The Network Information Service (NIS) is a system, which provides and centralizes network information (login names, passwords, home directories, and group information) to all of the machines on a network. [Security risks, we don’t use it on our server] System Environment/Daemons: · The XFree86-xfs package is a font server for XFree86 that can also serve fonts to other X servers remotely. [Unnecessary, we don’t use graphical interface] · The lpr package provides the basic system utility for managing printing services. [Unnecessary and no printer installed on the server] · The pidentd package contains the identd, which looks up specific TCP/IP connections and returns either the user name or other information about the process that owns the connection. [Unnecessary, very few things on the net REQUIRE the sender to be running identd, because many machines don't have it and because many people turn it off.] · The portmapper package manages RPC connections, which are used by protocols like NFS and NIS. [Unnecessary, Security risks, and NIS/NFS services are not installed on this server] · The routed package routing daemon maintains current routing tables by handling incoming RIP traffic and broadcasts outgoing RIP traffic about network traffic routes. [Unnecessary, Security risks, and limited] · The rusers package program allows users to find out who is logged into various machines on the local network. [Security risks] · The rwho package shows who is logged in for all machines on the local network running the rwho daemon. [Security risks] · The tftp package or Trivial File Transfer Protocol (TFTP) allows users to transfer files to and from a remote machine. It is normally used only for booting diskless workstations. [Security risks, Unnecessary] · The ucd-snmp package or SNMP (Simple Network Management Protocol) is a protocol used for network management. [Unnecessary, Security risks] System Environment/Libraries: · The XFree86-libs package contains the shared libraries that most X programs need to run properly. [Unnecessary, we don’t use graphical interface ] · The libpng package contains a library of functions for creating and manipulating PNG image format files. PNG is a bit-mapped graphics format similar to the GIF format. [Unnecessary] User Interface/X: · The XFree86-75dpi-fonts package contains the 75 dpi fonts (the standard fonts) used on most X Window Systems. [Unnecessary, we don’t use graphical interface]