Subject: Re: Hardening a Firewall Machine
To: Richard Ibbotson <richard@sheflug.co.uk>
From: gabriel rosenkoetter <gr@eclipsed.net>
List: tech-security
Date: 10/15/2001 18:35:50
--vtzGhvizbBRQ85DL
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Sun, Oct 14, 2001 at 03:59:07PM +0000, Richard Ibbotson wrote:
> > /etc/ipf.conf, but you can name it whatever you want really
> > (e.g. /home/me/ihatepings) and just use the -f filename
> > to specify it (e.g. ipf -Fa -f /home/me/ihatepings).
> Oh .. great... I'll have a go at that at the same time as some basic=20
> routing ideas. =20

This is pretty clearly documented in ipf(5), btw.

> I know that I should remove anything that shouldn't be in there.  =20

Um. Unless you've actively installed packages, they're aren't any
installed. The NetBSD base system is *not* managed by a package
system. And I don't really recommend deleting pieces of the base
system at all. Just make sure you're not using daemons you don't
want.

> BUT ....  having read the manual about package management I can see=20
> that I'm really not sure how to view a complete list of packages. =20
> And ... if I could I'm sure that the list would just scroll of the=20
> screen without giving me a chance of reading anything more than a=20
> small part of the packages list.
> Any way round that one ?=20

pkg_info(1) and less(1) may be of interest to you.

> And .. how do I delete the packages that I don't want ?

pkg_delete(1).

--=20
       ~ g r @ eclipsed.net

--vtzGhvizbBRQ85DL
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (NetBSD)
Comment: For info see http://www.gnupg.org

iEYEARECAAYFAjvLZMYACgkQ9ehacAz5CRqByACfTPqliSbHCkMKKqkVmNCZJjFP
SJYAnjotkkpYEtN20osfFYWzGq94GaKW
=ay5Z
-----END PGP SIGNATURE-----

--vtzGhvizbBRQ85DL--