ALT Linux users (in English only)
 help / color / mirror / Atom feed
From: Michael Shigorin <mike@osdn.org.ua>
To: "ALT Linux users (in English only)" <community-en@lists.altlinux.org>
Subject: Re: [Comm-en] ALT Server 4.0 - Preventing Root Log-ins
Date: Tue, 2 Mar 2010 23:11:26 +0200
Message-ID: <20100302211126.GW18182@osdn.org.ua> (raw)
In-Reply-To: <5d2de3011003020934o322e4139o6fb63079c9f61fd4@mail.gmail.com>

On Tue, Mar 02, 2010 at 11:34:01AM -0600, Virtual Sky Solutions wrote:
> Now, I'm not an expert on Apache or other such things - I just
> know enough to work my way around basic configurations.
> However, thinking about it some more, would I be correct in
> saying:  I could help prevent unwanted hacking of my server by
> changing the web configurator access port, from 8080 to another
> unused port?

Somewhat yes, since 8080 is well known http-related port;
but moreso with firewall setup blocking access to this or
another configured port by default and allowing it from a
few select IPs.

If feeling adventurous, you could also look into "knock"
package to employ so called port knocking technique on top
of "deny by default" firewall policy for web interface.

-- 
 ---- WBR, Michael Shigorin <mike@altlinux.ru>
  ------ Linux.Kiev http://www.linux.kiev.ua/


  parent reply	other threads:[~2010-03-02 21:11 UTC|newest]

Thread overview: 6+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2010-03-02  2:05 Virtual Sky
2010-03-02  7:34 ` Michael Shigorin
2010-03-02  7:46   ` Alexey Rusakov
2010-03-02 12:06     ` Virtual Sky
2010-03-02 21:11       ` Michael Shigorin [this message]
2010-03-02 23:28         ` Virtual Sky

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20100302211126.GW18182@osdn.org.ua \
    --to=mike@osdn.org.ua \
    --cc=community-en@lists.altlinux.org \
    --cc=shigorin@gmail.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link

ALT Linux users (in English only)

This inbox may be cloned and mirrored by anyone:

	git clone --mirror http://lore.altlinux.org/community-en/0 community-en/git/0.git

	# If you have public-inbox 1.1+ installed, you may
	# initialize and index your mirror using the following commands:
	public-inbox-init -V2 community-en community-en/ http://lore.altlinux.org/community-en \
		community-en@lists.altlinux.org community-en@lists.altlinux.ru community-en@lists.altlinux.com
	public-inbox-index community-en

Example config snippet for mirrors.
Newsgroup available over NNTP:
	nntp://lore.altlinux.org/org.altlinux.lists.community-en


AGPL code for this site: git clone https://public-inbox.org/public-inbox.git