OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: How to secure FTP Service/server?
From: Jan Vitek (vitekZONER.COM)
Date: Thu Aug 17 2000 - 02:24:29 CDT


Hello

some necessary steps:

use Slackware ;-)
do not give any accounts on that machine
use ncftpd (its the best i've seen and most stable) or bsd-ftpd
deny every service except ftp (and ssh) in /etc/inetd.conf
run only necessary daemons
install and configure portsentry
use kernel 2.2.16 with stealth patch and secure patch

regards
               Jan Vitek

> -----Original Message-----
> From: Focus on Linux Mailing List
> [mailto:FOCUS-LINUXSECURITYFOCUS.COM]On Behalf Of Dener Martins
> Sent: Monday, August 14, 2000 6:46 PM
> To: FOCUS-LINUXSECURITYFOCUS.COM
> Subject: How to secure FTP Service/server?
>
>
> Hi There,
>
> We wanna set up a secure FTP server running on a Linux box. What
> measures should we take to secure both the server and the service?
>
> Thanks in advance for any help!
> D.
> --
> ---------------------
> Dener Martins
> <dener.martinsserpro.gov.br>
> F: (55 61) 411-8262
>