-
Security
Hi Gurus,
I just installed Knoppix 3.3 on my HDD. It works incredibly well, but I have a problem with the security level. I do use Knoppix to connect on other unix servers (Sun, HP, ...) and develop on those machines. The trouble is that a telnet works ok but I can't run any graphical interface because of DISPLAY not reachable. However, I have defined and exported the DISPLAY as found in 'ifconfig'. I have also enabled external display through 'xhost +'. Finally, I've found in /etc/hosts.allow and /etc/hosts.deny that the config was set up as 'PARANOID'. I've renamed both files (according to the man page, lack of file opens the connection). As long as I do not run a server but a workstation, security is not a major constraint for me. I'm missing a config file somewhere to enable DISPLAY to pass through but where. While testing, I realized that even assigning the IP address to the user knoppix (rather than the hos name) causes the same problem.
Could anyone help on this ?
TIA,
Pierre
-
Senior Member
registered user
Umm, why would you want to use telnet in the first place ?
ssh is safer and it is handy also in places where you don't need security.
-
![Quote](images/misc/quote_icon.png)
Originally Posted by
windos_no_thanks
Umm, why would you want to use telnet in the first place ?
ssh is safer and it is handy also in places where you don't need security.
Good question I didn't ask myself, but I assume it would make no difference in the current situation: graphical apps can't open the display and do abort. You could test it youself:
1) 'ifconfig' to determine your IP address
2) export DISPLAY=IP address:0.0 (192.168.1.10:0.0 for example)
3) 'xclock' returns Error: Can't open display: ...
Any idea?
TIA,
Pierre
-
Senior Member
registered user
![Quote](images/misc/quote_icon.png)
Originally Posted by
pierrevn
![Quote](images/misc/quote_icon.png)
Originally Posted by
windos_no_thanks
Umm, why would you want to use telnet in the first place ?
ssh is safer and it is handy also in places where you don't need security.
Good question I didn't ask myself, but I assume it would make no difference in the current situation: graphical apps can't open the display and do abort. You could test it youself:
1) 'ifconfig' to determine your IP address
2) export DISPLAY=IP address:0.0 (192.168.1.10:0.0 for example)
3) 'xclock' returns Error: Can't open display: ...
Any idea?
TIA,
Pierre
You are looking for the setting nolisten tcp in the file /etc/kde3/kdm/Xservers if you are doing this in KDE.
[edit]
You would have to restart kdm for the changes to take effect with /etc/init.d/kdm restart as root this best done from a console login unless you want to lose any unsaved work when KDE re-starts.
[/edit]
-
Thanks to you, Stephen: I removed this 'nolisten tcp' from the file and it works now as I expect. Great!
Cheers,
Pierre
-
Senior Member
registered user
![Quote](images/misc/quote_icon.png)
Originally Posted by
pierrevn
![Quote](images/misc/quote_icon.png)
Originally Posted by
windos_no_thanks
Umm, why would you want to use telnet in the first place ?
ssh is safer and it is handy also in places where you don't need security.
Good question I didn't ask myself, but I assume it would make no difference in the current situation: graphical apps can't open the display and do abort. You could test it youself:
1) 'ifconfig' to determine your IP address
2) export DISPLAY=IP address:0.0 (192.168.1.10:0.0 for example)
3) 'xclock' returns Error: Can't open display: ...
Any idea?
TIA,
Pierre
I see you already got it working but using ssh should have made a difference. Using the -X switch (by default on in knoppix so you usually don't need to specify it) ssh forwards the
X connections through the encrypted pipe. The application on the remote machine thinks
it is using a display on the same machine, your X-server also thinks the application is on the
same machine as itself and everyone is happy.
Similar Threads
-
By eadz in forum Hdd Install / Debian / Apt
Replies: 11
Last Post: 11-04-2010, 09:02 PM
-
By NetKatz in forum Hdd Install / Debian / Apt
Replies: 2
Last Post: 05-02-2004, 02:38 PM
-
By RNK in forum Customising & Remastering
Replies: 13
Last Post: 04-29-2004, 12:37 PM
-
By Edix in forum Hdd Install / Debian / Apt
Replies: 1
Last Post: 11-10-2003, 08:20 PM
-
By kipizit in forum General Support
Replies: 1
Last Post: 11-07-2003, 03:08 AM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
![IBM System X3250 M3 Server 8GB RAM Intel Xeon x3440 2.53ghz (NO HDD) picture](/store/img/g/M~sAAOSwFVlkVr-r/s-l225/IBM-System-X3250-M3-Server-8GB-RAM-Intel-Xeon-x344.jpg)
IBM System X3250 M3 Server 8GB RAM Intel Xeon x3440 2.53ghz (NO HDD)
$41.99
![IBM Server Rack Cabinet 9308-RC4 picture](/store/img/g/tSIAAOSwSUpmAe1K/s-l225/IBM-Server-Rack-Cabinet-9308-RC4.jpg)
IBM Server Rack Cabinet 9308-RC4
$209.00
![IBM System p5 9131-52A 3.5](/store/img/g/iZ4AAOSwcBxmYJo7/s-l225/IBM-System-p5-9131-52A-3-5-4-Bay-Server-80P6787-1-.jpg)
IBM System p5 9131-52A 3.5" 4-Bay Server 80P6787 1 CPU 2GB 6 HD CADDIES TAPE BU
$250.00
![IBM Power S822 8284-22A 12SFF Power8 3.89GHz 6Core 64GB RAM No HDD Server System picture](/store/img/g/xiEAAOSwwGtmRmN6/s-l225/IBM-Power-S822-8284-22A-12SFF-Power8-3-89GHz-6Core.jpg)
IBM Power S822 8284-22A 12SFF Power8 3.89GHz 6Core 64GB RAM No HDD Server System
$359.99
![IBM Power S822 8284-22A 12SFF Power8 3.89GHz 6-Core 64GB RAM No Bezel/HDD Server picture](/store/img/g/5xQAAOSwMXNmRmOG/s-l225/IBM-Power-S822-8284-22A-12SFF-Power8-3-89GHz-6-Cor.jpg)
IBM Power S822 8284-22A 12SFF Power8 3.89GHz 6-Core 64GB RAM No Bezel/HDD Server
$279.99
![IBM Model M Clicky Vintage Server Mechanical Keyboard 1989 *Tested* picture](/store/img/g/DiMAAOSw8Chmguhc/s-l225/IBM-Model-M-Clicky-Vintage-Server-Mechanical-Keybo.jpg)
IBM Model M Clicky Vintage Server Mechanical Keyboard 1989 *Tested*
$149.98
![IBM x3650 M4 Server Intel Xeon E5-2640 (x2) 144GB RAM No HDDs (#4XN7N) picture](/store/img/g/~~AAAOSwFFZmeyKv/s-l225/IBM-x3650-M4-Server-Intel-Xeon-E5-2640-x2-144GB-RA.jpg)
IBM x3650 M4 Server Intel Xeon E5-2640 (x2) 144GB RAM No HDDs (#4XN7N)
$169.99
![IBM SYSTEM x3200 M3 Tower- Intel i3 540 @ 3.07GHz, 4GB, 500GB HHD picture](/store/img/g/TDIAAOSwEsNlaJMN/s-l225/IBM-SYSTEM-x3200-M3-Tower-Intel-i3-540-3-07GHz-4GB.jpg)
IBM SYSTEM x3200 M3 Tower- Intel i3 540 @ 3.07GHz, 4GB, 500GB HHD
$125.00
![IBM QRadar xx29 Server 4412Q2A picture](/store/img/g/7GAAAOSwmK1lqTUO/s-l225/IBM-QRadar-xx29-Server-4412Q2A.jpg)
IBM QRadar xx29 Server 4412Q2A
$209.99
![IBM Netezza 3567 picture](/store/img/g/-uEAAOSw4ixmWekl/s-l225/IBM-Netezza-3567.jpg)
IBM Netezza 3567
$5000.00