From owner-FreeBSD-users-jp@jp.freebsd.org  Sun Apr  4 22:00:43 1999
Received: by jaz.jp.freebsd.org (8.9.2+3.1W/8.7.3) id WAA26717;
	Sun, 4 Apr 1999 22:00:43 +0900 (JST)
	(envelope-from owner-FreeBSD-users-jp@jp.FreeBSD.org)
Received: from mx.issei.org (qmailr@mx.issei.org [210.169.187.134])
	by jaz.jp.freebsd.org (8.9.2+3.1W/8.7.3) with SMTP id WAA26711
	for <FreeBSD-users-jp@jp.freebsd.org>; Sun, 4 Apr 1999 22:00:41 +0900 (JST)
	(envelope-from issei@issei.org)
Received: (qmail 17127 invoked from network); 4 Apr 1999 22:00:40 +0900
Received: from tole.issei.org (root@210.169.187.132)
  by mx.issei.org with SMTP; 4 Apr 1999 22:00:40 +0900
Received: from localhost (issei@localhost [127.0.0.1])
	by tole.issei.org (8.9.3/3.7W-in) with ESMTP id WAA23764
	for <FreeBSD-users-jp@jp.freebsd.org>; Sun, 4 Apr 1999 22:00:40 +0900 (JST)
To: FreeBSD-users-jp@jp.freebsd.org
In-Reply-To: Your message of "Sun, 04 Apr 1999 16:55:51 +0900"
	<199904040755.QAA09539@gaye.slab.tnr.sharp.co.jp>
References: <199904040755.QAA09539@gaye.slab.tnr.sharp.co.jp>
X-Mailer: Mew version 1.93 on Emacs 19.34 / Mule 2.3 (SUETSUMUHANA)
Mime-Version: 1.0
Content-Type: Text/Plain; charset=iso-2022-jp
Content-Transfer-Encoding: 7bit
Message-Id: <19990404220040A.issei@issei.org>
Date: Sun, 04 Apr 1999 22:00:40 +0900
From: Issei Suzuki <issei@issei.org>
X-Dispatcher: imput version 980905(IM100)
Lines: 42
Reply-To: FreeBSD-users-jp@jp.freebsd.org
Precedence: list
X-Distribute: distribute version 2.1 (Alpha) patchlevel 24e+981115
X-Sequence: FreeBSD-users-jp 40823
Subject: [FreeBSD-users-jp 40823] Re: security 
Errors-To: owner-FreeBSD-users-jp@jp.freebsd.org
Sender: owner-FreeBSD-users-jp@jp.freebsd.org
X-Originator: issei@issei.org

In mail "[FreeBSD-users-jp 40817] Re: security "
Norihiro Kumagai <kuma@slab.tnr.sharp.co.jp> wrote:

> > # security (7) $B$K(B net.inet.tcp.log_in_vain, net.inet.udp.log_in_vain 
> > # $BJQ?t$N5-=R$bM_$7$H;W$&$N$O;d$@$1!)(B
> 
> $B5-=R%M%?$r$465<(D:$1$^$;$s$+!#(Bsend-pr $B$7$F$_$^$7$g$&!#(B

  http://www.freebsd.org/%7Ejkb/howto.html#liv

  $B>e5-$N(B URL $B$K$"$k(B FreeBSD Security How-To $B$K5-=R$,$"$j$^$9!#(B


> ipfw $B4XO"$N%9%$%C%A!)(B

  net.inet.tcp.log_in_vain, net.inet.udp.log_in_vain $B$O(B sysctl (8) $B$G(B
$B;2>H!"@_Dj$G$-$k%+!<%M%kJQ?t$G$9!#%G%U%)%k%H$G$O$$$:$l$b(B 0 $B$K@_Dj$5$l(B
$B$F$$$k$N$G$9$,!"$3$l$r(B 1 $B$K$9$k$H(B

  $B%W%m%0%i%`$,(B bind $B$7$F$$$J$$(B TCP (UDP) $B%]!<%H$X$N%Q%1%C%H(B

$B$r<u$1<h$C$?:]$K(B syslog $B$d%7%9%F%`%a%C%;!<%8%P%C%U%!$K5-O?$r;D$9$h$&$K(B
$B$J$j$^$9!#(B


  $B0J2<$O(B Just FYI.

  log_in_vain $B$r@_Dj$9$k%^%7%s$G$O(B ident $B%5!<%P$bN)$A>e$2$F$*$+$J$$$H(B 
idnet $B$X$N%"%/%;%95-O?$,;3$N$h$&$K=q$-=P$5$l$k>l9g$,$"$j$^$9!#FC$K(B 
SMTP $B$r;H$C$F30It$K%a!<%k$rAw$k%^%7%s$G$OI,$:(B ident $B%5!<%P$rN)$A>e$2$F(B
$B$*$-$^$7$g$&(B ($B%a!<%k$rAw$k:]$K!"Aj<j$N%a!<%k%5!<%P$,!"$3$A$i$K(B ident 
$B$G3NG'$7$F$/$k>l9g$,B?$$$?$a$G$9(B)$B!#(B

  ident $B%5!<%P$O(B port $B$N(B security/pidentd $B$r;H$C$F%$%s%9%H!<%k$7$F$bNI(B
$B$$$G$9$7!":G6a$O%@%_!<$N(B ident $B%5!<%P$,(B inetd (8) $B$KAH$_9~$^$l$F$$$^$9(B
$B$N$G!"$=$l$rMxMQ$7$F$b9=$$$^$;$s!#(B
  $BK\Ev$N(B ident $B%5!<%P$O<B:]$K@\B3$7$F$$$k%f!<%6L>$rJV$7$^$9$,!"(Binetd 
$BAH$_9~$_$N%@%_!<$N(B ident $B%5!<%P$O>o$K(B :ERROR:HIDDEN-USER $B$H$$$&JV;v$r(B
$BJV$7$^$9!#(B

-- 
Issei Suzuki <issei@issei.org>
