1752492 Members
5857 Online
108788 Solutions
New Discussion юеВ

rsh, nfs and firewall

 
Admin.SIF
Frequent Advisor

rsh, nfs and firewall

Hello,
Which ports should I open to allow rsh through a firewall?
What about NFS ? I read something about dynamic ports for mountd so I don't know if we can make nfs secure through a firewall by managing ports by the firewall.
Thank you
Sysd. Amin. Inforef
3 REPLIES 3
Sanjay_6
Honored Contributor
Bill Hassell
Honored Contributor

Re: rsh, nfs and firewall

If you are running HP-UX, rsh is not the remote shell coomand (as it is on some other Unix flavors), the command is remsh. You are correct that these services (remsh, rcp, rlogin, rexec and NFS) cannot be made secure through a firewall. They are actually not secure in a local network. It is much safer to implement Secure Shell (ssh with scp and sftp) for a secure connection. ssh can be setup on a different port (other than 22) for even more security.


Bill Hassell, sysadmin
Admin.SIF
Frequent Advisor

Re: rsh, nfs and firewall

Thank you, I appreciate your help. I forgot to specify that we use Tru64 Unix.
For NFS, it was working for more than 2 years. Recently we replaced the protocol udp by tcp and did a shutdown/reboot of the NFS server and since that reboot, it doesn't work any more.
For rsh, we have opened the port 514 but the command rsh from the other host come with port 1022 or 1023 and is refused. I think that they use ssh instead of rsh.
Any idee please?
Sysd. Amin. Inforef