Bugtraq mailing list archives
r commands
From: aleph1 () dfw net (Aleph One)
Date: Mon, 17 Oct 1994 17:57:49 -0500 (CDT)
Well guess i'll just pitch in my two cents in. If you dont allow users to set up their own .rhosts files, or you dissable them compleately. Then you loose what makes the r commands so wanted by people.... transparency. They like them because they dont have to type a user name and passwd to log into other machines. Now if this dissapears then rlogin is a beefed up telnet. Therefore you must a) Allow you users to use them and simply drop all incoming packets to any ports where the r deamons hang at the router. or b) dont allow them at all. In a university setting a) is probably fine while a bussiness would probably go with b). Like I said just my $0.02 a1 http://dfw.net/~aleph1 Uebercrackers Security Web
Current thread:
- Re: Internet Worm, (continued)
- Re: Internet Worm Steve Davis (Oct 17)
- Re: Internet Worm Jonathan M. Bresler (Oct 17)
- Re: Internet Worm Perry E. Metzger (Oct 17)
- Re: Internet Worm Jonathan M. Bresler (Oct 17)
- Re: Internet Worm Perry E. Metzger (Oct 17)
- Re: Internet Worm Bennett Todd (Oct 17)
- Re: Internet Worm Perry E. Metzger (Oct 18)
- Re: Internet Worm Scott Schwartz (Oct 18)
- Re: Internet Worm Perry E. Metzger (Oct 18)
- Re: Internet Worm Steve Davis (Oct 17)
- Re: Internet Worm Christine R. Gressley (Oct 17)
- r commands Aleph One (Oct 17)
- Re: r commands Perry E. Metzger (Oct 18)
- Re: r commands Fred Kuhns (Oct 18)
- Re: Internet Worm Bennett Todd (Oct 17)
- PLEASE UNSUBSCRIBE Cpt Danger (Aug 20)
- PLEASE UNSUBSCRIBE ME Mike Roemmich x71633 - ESO (Oct 18)
- Re: Internet Worm Julian Assange (Oct 18)
- PLEASE UNSUBSCRIBE ME Mark McPherson (Oct 17)
- Re: Internet Worm Pat Myrto (Oct 17)
- Re: Internet Worm David Miller (Oct 17)
- PLEASE UNSUBSCRIBE Vatsal P. Sonecha (Oct 17)