Results 1 to 6 of 6

Thread: Is cheatcode "knoppix secure" required for online security?

  1. #1
    Junior Member
    Join Date
    Oct 2015
    Posts
    11

    Is cheatcode "knoppix secure" required for online security?

    Sudo works ok in Knoppix 7.2. But I'm unable to use it with the cheatcode "secure" option. Thus I have to reboot to add ip6tables, which wipe when I reboot in secure mode. Is there a way to add ip6tables and still use secure mode online?

  2. #2
    Moderator Moderator
    Join Date
    Nov 2010
    Location
    Germany/ Dietzenbach
    Posts
    1,124
    Thus I have to reboot to add ip6tables, which wipe when I reboot in secure mode
    What do you mean by this?

  3. #3
    Junior Member
    Join Date
    Oct 2015
    Posts
    11
    Quote Originally Posted by davidpiney View Post
    Sudo works ok in Knoppix 7.2. But I'm unable to use it with the cheatcode "secure" option. Thus I have to reboot to add ip6tables, which wipe when I reboot in secure mode. Is there a way to add ip6tables and still use secure mode online?
    I have to enter the ip6tables offline, without the root being locked by the "secure" cheatcode. Then when I reboot with the "secure" cheatcode enabled, the ip6tables have returned to the default setting (ip6tables -L). In other words there's no persistence Werner. Is knoppix 7.2 secure online without the root being locked with "secure")? If not, how can I make changes (such as the ip6tables above) to have persistence? Is it possible to make root changes when the cheatcode "secure" is enabled? Thanks for the help too Werner. I'm really grateful you folks are doing all this. I hope I can make it up to you.

  4. #4
    Moderator Moderator
    Join Date
    Nov 2010
    Location
    Germany/ Dietzenbach
    Posts
    1,124
    In other words there's no persistence
    If you want persistence, you have to use a "Flash disk install"

    http://knoppix.net/wiki/Category:Har...e_Installation.
    Is knoppix 7.2 secure online without the root being locked with "secure")?
    Yes, of course. By default Knoppix doesn't offer any services outside the LAN.

  5. #5
    Junior Member
    Join Date
    Oct 2015
    Posts
    11
    Quote Originally Posted by Werner P. Schulz View Post
    If you want persistence, you have to use a "Flash disk install"

    http://knoppix.net/wiki/Category:Har...e_Installation.Yes, of course. By default Knoppix doesn't offer any services outside the LAN.
    I did install knoppix 7.2 on a flashdrive Werner, and made an additional partition persistent. But its the ip6tables entry that doesn't stay when I change to secure mode with cheatcodes. I put an update.zip file with the ip6tables firewall in KNOPPIX-DATA but it never installed during init. I wish there was someway to get secure mode after everything was setup, and just before going online? Or better still, being able to wholly control root with a fail-safe password system.

    Is it best to use the secure mode online Werner? All 65534 ports are filtered, one is up, and I don't think there's any services running. But even in secure mode, I'm having a very difficult time with hackers here Werner. So I'm profoundly grateful for your help, and for the Knoppix program. It's kept me running the best so far, in what has been a major struggle.

    Thanks Werner.

    david

  6. #6
    Moderator Moderator
    Join Date
    Nov 2010
    Location
    Germany/ Dietzenbach
    Posts
    1,124
    Or better still, being able to wholly control root with a fail-safe password system.
    You can give root a valid password and restrict the use of sudo/gksudo → Security considerations.
    Is it best to use the secure mode online?
    No, it's paranoia.
    But even in secure mode, I'm having a very difficult time with hackers here
    If there isn't a service reachable outside the LAN, hackers cannot attack the service.

    Searching for open ports != attack a service.
    Last edited by Werner P. Schulz; 11-02-2015 at 10:47 AM.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


A-Tech 256GB 4x 64GB 4Rx4 PC4-19200 ECC Load Reduced LRDIMM Server Memory RAM picture

A-Tech 256GB 4x 64GB 4Rx4 PC4-19200 ECC Load Reduced LRDIMM Server Memory RAM

$287.96



A-Tech 8GB DDR3 1600 PC3-12800 Laptop SODIMM 204-Pin Memory RAM PC3L DDR3L 1x 8G picture

A-Tech 8GB DDR3 1600 PC3-12800 Laptop SODIMM 204-Pin Memory RAM PC3L DDR3L 1x 8G

$13.99



Team T-FORCE VULCAN Z 16GB (2 x 8GB) 288-Pin PC RAM DDR4 3200 (PC4 25600) XMP picture

Team T-FORCE VULCAN Z 16GB (2 x 8GB) 288-Pin PC RAM DDR4 3200 (PC4 25600) XMP

$35.99



HyperX FURY DDR3 8GB 16GB 32GB 1600 MHz PC3-12800 Desktop RAM Memory DIMM 240pin picture

HyperX FURY DDR3 8GB 16GB 32GB 1600 MHz PC3-12800 Desktop RAM Memory DIMM 240pin

$12.90



8GB PC3L-12800S 1600MHz SODIMM DDR3 RAM | Grade A picture

8GB PC3L-12800S 1600MHz SODIMM DDR3 RAM | Grade A

$12.00



Crucial 16GB (2x 8GB) Kit DDR3L 1600MHz PC3-12800 UDIMM Desktop 240-Pin CL11 RAM picture

Crucial 16GB (2x 8GB) Kit DDR3L 1600MHz PC3-12800 UDIMM Desktop 240-Pin CL11 RAM

$23.33



Crucial DDR3L 16GB 1600 2x 8GB PC3-12800 Laptop SODIMM Memory RAM PC3 16G DDR3 picture

Crucial DDR3L 16GB 1600 2x 8GB PC3-12800 Laptop SODIMM Memory RAM PC3 16G DDR3

$21.50



HyperX FURY RAM DDR4 16GB 8GB 32GB 4GB 3200 2666 2400 2133 Desktop Memory DIMM picture

HyperX FURY RAM DDR4 16GB 8GB 32GB 4GB 3200 2666 2400 2133 Desktop Memory DIMM

$14.85



HyperX FURY DDR4 8GB 16GB 32GB 3200MHz PC4-25600 Desktop RAM Memory DIMM 288pins picture

HyperX FURY DDR4 8GB 16GB 32GB 3200MHz PC4-25600 Desktop RAM Memory DIMM 288pins

$72.93



HyperX FURY DDR4 16GB 3200 MHz PC4-25600 Desktop RAM Memory DIMM 288pin 2x 16GB picture

HyperX FURY DDR4 16GB 3200 MHz PC4-25600 Desktop RAM Memory DIMM 288pin 2x 16GB

$127.20