<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: how do I secure the ypbind daemon in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686909#M589822</link>
    <description>putting a couple of NIS servers in the file&lt;BR /&gt;/var/yp/secureservers has stopped the&lt;BR /&gt;sunos 3x error message . But it now fails&lt;BR /&gt;NIS client with the message &lt;BR /&gt;FAILURE code 1 after the ypbind daemon tries to start up in file /sbin/rc.d/S420nis.client&lt;BR /&gt;&lt;BR /&gt;I have tried adding NIS clients to the &lt;BR /&gt;/var/yp/securenets file but I get NIS master FAILURE codes as well.&lt;BR /&gt;&lt;BR /&gt;Hope this makes sense and help me further.&lt;BR /&gt;&lt;BR /&gt;Is the format of the secureservers file&lt;BR /&gt;&lt;BR /&gt;Subnet_mask IP_ADDRESS  e.g.&lt;BR /&gt;255.255.252.0 137.229.234.20&lt;BR /&gt;255.255.252.0 137.229.237.21&lt;BR /&gt;&lt;BR /&gt;Mick</description>
    <pubDate>Wed, 20 Mar 2002 16:30:37 GMT</pubDate>
    <dc:creator>Mick Goddard_1</dc:creator>
    <dc:date>2002-03-20T16:30:37Z</dc:date>
    <item>
      <title>how do I secure the ypbind daemon</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686906#M589819</link>
      <description>A Intrusion report lists that ypbind is running over a non-reserved port. And it needs to be moved to a reserved ports to pass Intrusion tests. &lt;BR /&gt;&lt;BR /&gt;It is a HP700 10.20. I have tried setting YPBIND_OPTIONS = "-s" in /etc/rc.config.d/namesvrs file on NIS Master&lt;BR /&gt;and Client. Both machines report error message&lt;BR /&gt;on startup of NIS&lt;BR /&gt;&lt;BR /&gt;"Secure mode sunos 3.x servers rejected"&lt;BR /&gt;&lt;BR /&gt;Can anyone help me configue this properly.&lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;&lt;BR /&gt;Mick&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 20 Mar 2002 10:57:15 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686906#M589819</guid>
      <dc:creator>Mick Goddard_1</dc:creator>
      <dc:date>2002-03-20T10:57:15Z</dc:date>
    </item>
    <item>
      <title>Re: how do I secure the ypbind daemon</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686907#M589820</link>
      <description>Mick,&lt;BR /&gt;&lt;BR /&gt;From the man pages of ypbind:&lt;BR /&gt;&lt;BR /&gt;The "-s" option:&lt;BR /&gt;&lt;BR /&gt;"-s" Secure.  When specified, only NIS servers bound to a reserved port are used.  This allows for a slight increase in security in completely controlled environments, where there are no computers operated by untrusted individuals.  It offers no real increase in security.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Get the security patch checker and see if there are any patches that may apply:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProductInfo.pl?productNumber=B6834AA" target="_blank"&gt;http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProductInfo.pl?productNumber=B6834AA&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;live free or die&lt;BR /&gt;harry</description>
      <pubDate>Wed, 20 Mar 2002 13:05:23 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686907#M589820</guid>
      <dc:creator>harry d brown jr</dc:creator>
      <dc:date>2002-03-20T13:05:23Z</dc:date>
    </item>
    <item>
      <title>Re: how do I secure the ypbind daemon</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686908#M589821</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;check the file "/var/yp/secureservers" &lt;BR /&gt;&lt;BR /&gt;See also,&lt;BR /&gt;man ypserv &lt;BR /&gt;&lt;BR /&gt;-Vijay</description>
      <pubDate>Wed, 20 Mar 2002 13:24:02 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686908#M589821</guid>
      <dc:creator>K.Vijayaragavan.</dc:creator>
      <dc:date>2002-03-20T13:24:02Z</dc:date>
    </item>
    <item>
      <title>Re: how do I secure the ypbind daemon</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686909#M589822</link>
      <description>putting a couple of NIS servers in the file&lt;BR /&gt;/var/yp/secureservers has stopped the&lt;BR /&gt;sunos 3x error message . But it now fails&lt;BR /&gt;NIS client with the message &lt;BR /&gt;FAILURE code 1 after the ypbind daemon tries to start up in file /sbin/rc.d/S420nis.client&lt;BR /&gt;&lt;BR /&gt;I have tried adding NIS clients to the &lt;BR /&gt;/var/yp/securenets file but I get NIS master FAILURE codes as well.&lt;BR /&gt;&lt;BR /&gt;Hope this makes sense and help me further.&lt;BR /&gt;&lt;BR /&gt;Is the format of the secureservers file&lt;BR /&gt;&lt;BR /&gt;Subnet_mask IP_ADDRESS  e.g.&lt;BR /&gt;255.255.252.0 137.229.234.20&lt;BR /&gt;255.255.252.0 137.229.237.21&lt;BR /&gt;&lt;BR /&gt;Mick</description>
      <pubDate>Wed, 20 Mar 2002 16:30:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/how-do-i-secure-the-ypbind-daemon/m-p/2686909#M589822</guid>
      <dc:creator>Mick Goddard_1</dc:creator>
      <dc:date>2002-03-20T16:30:37Z</dc:date>
    </item>
  </channel>
</rss>

