[ale] xinetd config (RH7.2)

James P. Kinney III jkinney at localnetsolutions.com
Thu Feb 28 12:08:11 EST 2002


Should be:

disabled = yes

On Thu, 2002-02-28 at 12:08, Gene Matthews wrote:
> I'm trying to tighten down a RH7.2 box.  Below is what /etc/xinetd.conf
> currently looks like.  I have added the 'disabled' line to the defaults
> and sent a SIGUSR2 signal to the xinetd pid.  However, a lot of unwanted
> services are still being listened for.  
> 
> 
> defaults
> {
> 	disabled
> 	instances               = 60
>         log_type                = SYSLOG authpriv
>         log_on_success		= HOST PID
>         log_on_failure		= HOST
> 	cps			= 25 30
> 
> }
> 
> includedir /etc/xinetd.d
> 
> 
> 
> The only thing enabled in /etc/xinetd.d/ is amanda.  However, a 'netstat
> -l' still shows lots of stuff open. I know somethings don't use
> inetd/xinetd; they may have their own deamon (like sshd).  But finger,
> echo, discard, etc. do (I think!).
> 
> Anyone have any pointers.  The 'disabled' flag should work if I'm
> reading the man page correctly and sending the SIGUSR2 should reload
> it.  I'm trying to avoid a reboot.
> 
> Thanks,
> 
> Gene
> 
> # netstat -l
> Active Internet connections (only servers)
> Proto Recv-Q Send-Q Local Address           Foreign Address        
> State      
> tcp        0      0 *:tcpmux                *:*                    
> LISTEN      
> tcp        0      0 *:20034                 *:*                    
> LISTEN      
> tcp        0      0 *:32771                 *:*                    
> LISTEN      
> tcp        0      0 *:32772                 *:*                    
> LISTEN      
> tcp        0      0 *:40421                 *:*                    
> LISTEN      
> tcp        0      0 *:32773                 *:*                    
> LISTEN      
> tcp        0      0 *:32774                 *:*                    
> LISTEN      
> tcp        0      0 *:31337                 *:*                    
> LISTEN      
> tcp        0      0 *:ircd                  *:*                    
> LISTEN      
> tcp        0      0 *:systat                *:*                    
> LISTEN      
> tcp        0      0 *:5742                  *:*                    
> LISTEN      
> tcp        0      0 *:imap                  *:*                    
> LISTEN      
> tcp        0      0 *:finger                *:*                    
> LISTEN      
> tcp        0      0 *:netstat               *:*                    
> LISTEN      
> tcp        0      0 *:54320                 *:*                    
> LISTEN      
> tcp        0      0 *:2000                  *:*                    
> LISTEN      
> tcp        0      0 *:ingreslock            *:*                    
> LISTEN      
> tcp        0      0 *:ssh                   *:*                    
> LISTEN      
> tcp        0      0 *:nntp                  *:*                    
> LISTEN      
> tcp        0      0 *:socks                 *:*                    
> LISTEN      
> tcp        0      0 *:12345                 *:*                    
> LISTEN      
> tcp        0      0 *:12346                 *:*                    
> LISTEN      
> tcp        0      0 *:635                   *:*                    
> LISTEN      
> tcp        0      0 *:49724                 *:*                    
> LISTEN      
> tcp        0      0 *:uucp                  *:*                    
> LISTEN      
> udp        0      0 *:640                  
> *:*                                 
> udp        0      0 *:641                  
> *:*                                 
> udp        0      0 *:who                  
> *:*                                 
> udp        0      0 *:tcpmux               
> *:*                                 
> udp        0      0 *:32770                
> *:*                                 
> udp        0      0 *:32771                
> *:*                                 
> udp        0      0 *:32772                
> *:*                                 
> udp        0      0 *:32773                
> *:*                                 
> udp        0      0 *:32774                
> *:*                                 
> udp        0      0 *:echo                 
> *:*                                 
> udp        0      0 *:discard              
> *:*                                 
> udp        0      0 *:snmp                 
> *:*                                 
> udp        0      0 *:snmptrap             
> *:*                                 
> udp        0      0 *:54321                
> *:*                                 
> udp        0      0 *:700                  
> *:*                                 
> udp        0      0 *:tftp                 
> *:*                                 
> udp        0      0 *:amanda               
> *:*                                 
> udp        0      0 *:31337                
> *:*                                 
> Active UNIX domain sockets (only servers)
> Proto RefCnt Flags       Type       State         I-Node Path
> 
> 
> 
> 
> -- 
> Gene Matthews
> Matthews Midrange Consulting, Inc.
> (678) 923-8327
> (877) 882-6291 (toll free)
> http://mmc-inc.com
> 
> 
> ---
> This message has been sent through the ALE general discussion list.
> See http://www.ale.org/mailing-lists.shtml for more info. Problems should be 
> sent to listmaster at ale dot org.
> 
-- 
James P. Kinney III   \Changing the mobile computing world/
President and COO      \          one Linux user         /
Local Net Solutions,LLC \           at a time.          /
770-493-8244             \.___________________________./

GPG ID: 829C6CA7 James P. Kinney III (M.S. Physics)
<jkinney at localnetsolutions.com>
Fingerprint = 3C9E 6366 54FC A3FE BA4D 0659 6190 ADC3 829C 6CA7 



 This is a digitally signed message part




More information about the Ale mailing list