-
Default network security on knoppix
Hi,
I've installed Knoppix and connected to the net. I understood there's no firewall and that by default 'all ports are closed'. However, (and excuse me for being such a newbie), I don't understand if this means the computer is actually secure or not.
I'm not running a server. My computer is a pure client. If all ports are closed, and are only opened when I willingly open them to access a network resource, that should be secure enough, right?
Or can this be exploited?
In short, what should I do to get decent security using my Knoppix box (installed to the HD) on the network?
-
Senior Member
registered user
search for guarddog, guidedog, they are frontends for the iptables, those are a firewall in linux. a verry good one at that.
-
Senior Member
registered user
Re: Default network security on knoppix

Originally Posted by
ezuk
Hi,
I've installed Knoppix and connected to the net. I understood there's no firewall and that by default 'all ports are closed'. However, (and excuse me for being such a newbie), I don't understand if this means the computer is actually secure or not.
It means if you have a service running then you are not accepting any outside connections on the port if you have no service running on a port it will be closed by default anyways and there should be no way to connect to it.
I'm not running a server. My computer is a pure client. If all ports are closed, and are only opened when I willingly open them to access a network resource, that should be secure enough, right?
Or can this be exploited?
Not quite sure what you mean here if the machine is just a client then you should not have to open anything. For instance if you want to connect to the internet (http) you do not have to open up port 80 you are doing the connecting to someones service not the other way around you only need to open the port when you want to provide the service to other people.
In short, what should I do to get decent security using my Knoppix box (installed to the HD) on the network?
Install a firewall as suggested in the post above another one you may want to look at is firestarter. If you have not already done it some packages you may want to remove to prevent the startup of services once the package gets upgraded.
Code:
samba, lisa, dhcp3-server, shaper, apache, brltty, ntp, nis, ssh, bind9, portmap, nfs, distccd, mysql-server, nvtv
You can check for open ports at Gibson Research by using the Shield's Up port scanner and a link on the Debian web site.
http://www.debian.org/doc/manuals/se...-debian-howto/
-
Thank you very much for both of your replies. You've helped me. :P
Similar Threads
-
By Davetron in forum Networking
Replies: 3
Last Post: 02-02-2004, 08:30 PM
-
By vengapir8 in forum Customising & Remastering
Replies: 34
Last Post: 06-17-2003, 11:12 PM
-
By LinuxDistros.CJB.NET in forum Networking
Replies: 19
Last Post: 06-10-2003, 12:37 PM
-
By Bd84 in forum General Support
Replies: 12
Last Post: 05-27-2003, 04:16 PM
-
By WT in forum General Support
Replies: 1
Last Post: 12-31-2002, 09:21 PM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules

Intel Xeon E5-2699 V4 2.20GHz 55M 22-CORES LGA2011-3 Server Processor 145W SR2JS
$84.49

Dell EMC PowerEdge R440 Xeon silver 4215 2.5GHz 16 GB ram 2x 550W PSU No HDD
$275.00

Lenovo ThinkStation P520 Intel Xeon W-2123 3.6GHz 900W - NO RAM/ GPU/ HDD/ OS
$189.98

Dell PowerEdge R620 2x Xeon E5-2650 2GHz 32GB RAM 250GB SAS SERVER
$85.00

Intel Xeon Gold 6230 2.1 GHz Processor - SRF8W
$29.00

Matched Pair _ Intel Xeon E5-2698 V4 2.2GHz 20-Core Processor CPU LGA2011 SR2JW
$94.99

Intel Xeon E5-2667V4 8-Core 3.20GHz SR2P5 CPU Processor *km
$19.99

Intel Xeon E5-2680 V4 CPU 2.4~3.3GHz 14-Core 35M LGA 2011-3 R3 Server SR2N7 120W
$16.99

Intel Xeon Processor E5-2687W V4 SR2NA 3.00GHz Broadwell 160W LGA2011 12-Core
$36.00

Intel(R) Xeon(R) CPU @ 3.30GHz, 4 Core(s), 32 GB RAM, 1 GB HDD Workstation 3
$145.00