View previous topic :: View next topic |
Author |
Message |
krolden Apprentice
data:image/s3,"s3://crabby-images/ea29a/ea29a4cbd68e0e1eea77308b308be178c4bce818" alt="Apprentice Apprentice"
data:image/s3,"s3://crabby-images/750d4/750d44c5bf9aee8b373e3c715e79fbc675077c68" alt=""
Joined: 28 May 2004 Posts: 293 Location: Belgium
|
Posted: Thu Aug 26, 2004 2:48 pm Post subject: netstat -> Needed services? [solved] |
|
|
When I issue "netstat -atu", I get two "listeners" that I doubt are needed.
They are:
Proto Recv-Q Send-Q Local Address Foreign Address State
tcp 0 0 *:sunrpc *:* LISTEN
tcp 0 0 *:951 *:* LISTEN
udp 0 0 *:sunrpc *:*
Neither give a PID/program name when I use -p as extra parameter.
Are these a security risk?
"locate sunrpc" refers to /usr/lib/perl5/5.8.4/i686-linux/sunrpc , but I don't really know if it is necessary to have running.
The 951 listener I cannot find somehow.
Can anyone tell me how I can find these processes and how to remove them (if recommended).
I'm running the vanilla 2.6.7 kernel.
Thanks
EDIT: it was portmap and famd. Supposedly needed for Nautilus (see setting up Gnome desktop)
Last edited by krolden on Thu Aug 26, 2004 7:36 pm; edited 1 time in total |
|
Back to top |
|
data:image/s3,"s3://crabby-images/3f3c1/3f3c163004cf5e6def6cb2e97158912573e3151e" alt="" |
dannycool Tux's lil' helper
data:image/s3,"s3://crabby-images/bc27a/bc27a0391196ce67cfff4c0ec96ac0b8f77d0350" alt="Tux's lil' helper Tux's lil' helper"
data:image/s3,"s3://crabby-images/cf413/cf413bd0939feba6d56bf22c1ceb335b6549952d" alt=""
Joined: 13 Aug 2004 Posts: 111 Location: Karlsruhe Germany
|
Posted: Thu Aug 26, 2004 3:51 pm Post subject: |
|
|
sunrcp is portmap (/etc/init.d/portmap for your convenience : ), which is needed for nfs.
951 is probably BIND named (/etc/init.d/named), the dns server. |
|
Back to top |
|
data:image/s3,"s3://crabby-images/3f3c1/3f3c163004cf5e6def6cb2e97158912573e3151e" alt="" |
lwithers Guru
data:image/s3,"s3://crabby-images/55cad/55cadf22bfc4066b9cbef86ab0e8bd0c53423b93" alt="Guru Guru"
Joined: 31 Dec 2003 Posts: 300 Location: Reading, UK
|
Posted: Thu Aug 26, 2004 7:46 pm Post subject: |
|
|
You probably want to use iptables to close those ports to external access, if you're worried about them. Keep them open for access over loopback, though. |
|
Back to top |
|
data:image/s3,"s3://crabby-images/3f3c1/3f3c163004cf5e6def6cb2e97158912573e3151e" alt="" |
|