NetBSD-Users archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: access control for mountd, statd, and lockd?



On Feb 7, 2010, at 1:16 PM, Thor Lancelot Simon wrote:

> On Sun, Feb 07, 2010 at 12:19:31PM -0500, Steven Bellovin wrote:
>>> 
>>> That's not true for statd nor lockd.  So I think what you're trying to
>>> do is not going to work well.
>> 
>> Right.  Are there other choices that I'm missing?
> 
> I think our rpcbind may have some libwrap support.  I don't know much
> about it but I vaguely remember that.

But rpcbind itself lives on a fixed port, and libwrap in it doesn't stop 
someone from probing UDP space looking for the others.

I suspect that the others need their own libwrap support and/or a -p option.

                --Steve Bellovin, http://www.cs.columbia.edu/~smb







Home | Main Index | Thread Index | Old Index