What do you mean by this?Thus I have to reboot to add ip6tables, which wipe when I reboot in secure mode
Sudo works ok in Knoppix 7.2. But I'm unable to use it with the cheatcode "secure" option. Thus I have to reboot to add ip6tables, which wipe when I reboot in secure mode. Is there a way to add ip6tables and still use secure mode online?
What do you mean by this?Thus I have to reboot to add ip6tables, which wipe when I reboot in secure mode
I have to enter the ip6tables offline, without the root being locked by the "secure" cheatcode. Then when I reboot with the "secure" cheatcode enabled, the ip6tables have returned to the default setting (ip6tables -L). In other words there's no persistence Werner. Is knoppix 7.2 secure online without the root being locked with "secure")? If not, how can I make changes (such as the ip6tables above) to have persistence? Is it possible to make root changes when the cheatcode "secure" is enabled? Thanks for the help too Werner. I'm really grateful you folks are doing all this. I hope I can make it up to you.
If you want persistence, you have to use a "Flash disk install"In other words there's no persistence
→ http://knoppix.net/wiki/Category:Har...e_Installation.Yes, of course. By default Knoppix doesn't offer any services outside the LAN.Is knoppix 7.2 secure online without the root being locked with "secure")?
I did install knoppix 7.2 on a flashdrive Werner, and made an additional partition persistent. But its the ip6tables entry that doesn't stay when I change to secure mode with cheatcodes. I put an update.zip file with the ip6tables firewall in KNOPPIX-DATA but it never installed during init. I wish there was someway to get secure mode after everything was setup, and just before going online? Or better still, being able to wholly control root with a fail-safe password system.
Is it best to use the secure mode online Werner? All 65534 ports are filtered, one is up, and I don't think there's any services running. But even in secure mode, I'm having a very difficult time with hackers here Werner. So I'm profoundly grateful for your help, and for the Knoppix program. It's kept me running the best so far, in what has been a major struggle.
Thanks Werner.
david
You can give root a valid password and restrict the use of sudo/gksudo → Security considerations.Or better still, being able to wholly control root with a fail-safe password system.No, it's paranoia.Is it best to use the secure mode online?If there isn't a service reachable outside the LAN, hackers cannot attack the service.But even in secure mode, I'm having a very difficult time with hackers here
Searching for open ports != attack a service.
Last edited by Werner P. Schulz; 11-02-2015 at 10:47 AM.
Dell PowerEdge R720 Server - 2x8c CPU,256Gb RAM, 128Gb SSD/3x900Gb SAS, Proxmox
$340.00
Dell PowerEdge R620 Server 2x E5-2660 v1 2.2GHz 16 Cores 256GB RAM 2x 300GB HDD
$89.99
Dell PowerEdge R730XD 28 Core Server 2X Xeon E5-2680 V4 H730 128GB RAM No HDD
$389.99
Dell Poweredge XC730xd 3.5 2x E5-2690 v3 2.6ghz 64gb JBOD 12x Trays 2x1100w
$239.99
CTO Dell PowerEdge R630 Server, 2x Xeon E5-2620V4, 64GB- 512GB RAM, 480GB SSDs
$246.67
DELL POWEREDGE T430 SERVER W/ DUAL XEON E5-2609 CPU & 16GB MEMORY
$329.00
Dell Poweredge R620 8-Bay CTO Pick your CPU & RAM Config | H710 Raid | 2x PSU
$209.99
Dell R730 8B LFF 2x 2.40GHz 14C Intel Xeon E5-2680 v4 32GB RAM 2x 3TB HDD HBA330
$299.99
DELL PowerEdge R730 Server 2x E5-2680v4 2.4GHz =28 Cores 32GB H730 4xRJ45
$284.00
Dell Poweredge R640 8 SFF Server No HDDs/ CPUs/ RAMs/ Cards/Fan/PSU
$419.99