Re: [SLUG] attacked!

From: Levi Bard (taktaktaktaktaktaktaktaktaktak@gmail.com)
Date: Fri Jun 16 2006 - 15:23:03 EDT


> Where do I look for that? AFAIC, restricting the outgoing mail destinations
> to localhost and outgoing.verizon.net is fine. There should be no such mail
> anyhow, unless /bin/mail uses the MTA. I've already changed the interfaces
> it listens on from "all" to "lo", but I'll check that before I run it. I
> also changed my password. There's one other guy who can log in remotely according to /etc/shadow; I'll get him to do the same.

You should also restrict the incoming addresses you accept outgoing
mail from if you're allowing connections from a non-loopback
interface. (Which it appears you no longer are, but were before.)

-- 
Tcsh: Now with higher FPS!
http://www.gnu.org/philosophy/shouldbefree.html
-----------------------------------------------------------------------
This list is provided as an unmoderated internet service by Networked
Knowledge Systems (NKS).  Views and opinions expressed in messages
posted are those of the author and do not necessarily reflect the
official policy or position of NKS or any of its employees.



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 20:10:19 EDT