Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:03 PM
03-23-2004 10:03 PM
telnet
system through telnet.
how to restrict the user from using the telnet
utility?
Amit Singh
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:08 PM
03-23-2004 10:08 PM
Re: telnet
change /var/adm/inetd.sec
man inetd.sec
Regards,
Jean-Luc
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:10 PM
03-23-2004 10:10 PM
Re: telnet
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:15 PM
03-23-2004 10:15 PM
Re: telnet
what I want to say is that...
I am having auser "ana" & "root" from the other servers. I want that they should not do the telnet to my servers.
What should i do ?
Amit Singh
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:15 PM
03-23-2004 10:15 PM
Re: telnet
Is it a permanently or temporarily.
type:
> home direcotyr of user/logout
this will creat a file logout in user's home directory
and then put this entry in the .profile of the user's home directory.
if (test -f logout)
then exit 0
fi
to enable access to the user remove the file logout from the home directory of the user.
with best wishes.
naveej
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:15 PM
03-23-2004 10:15 PM
Re: telnet
Regarding limiting the use of the telnet application, it's another matter where you have the option to incorporate a set of different approaches. Each approach have some cons.
1) Completely remove telnet from the system.
2) Move the telnet binary to a directory which is only accessible by certain users.
3) Wrap the telnet binary in a script.
4) Setup a jailed shell, which doesnt include the binary.
No matter which approach you choose, you have to ensue that the user aint able to transfer data to the account, otherwise the user would be able to circumvent the restriction by uploading a binary with telnet capabilities.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:30 PM
03-23-2004 10:30 PM
Re: telnet
U can easily set up a script in the .profile of the home directory of the user or in the /etc/profile , which matches the IP address and the user name by executing whomai and who -u and hence denying access...
With best wishes
naveej
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:42 PM
03-23-2004 10:42 PM
Re: telnet
does HP-Ux is having that kind of functionality? thats what I want to know.
also if I want to block the root from the
other system for doing the telnet to my machine, I can edit the /etc/securetty file
in linux and remove the line "telnet" from that, but what to do in HP-Ux?
Amit Singh
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:48 PM
03-23-2004 10:48 PM
Re: telnet
/etc/securetty
one line
console
so only root cannot telnet from a remote system. You will have to telnet as another user then su for root.
Regards,
Jean-Luc
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:48 PM
03-23-2004 10:48 PM
Re: telnet
For telnet restrictions try from SAM
for denying root telnet access just create a file /etc/securetty and add "console" with the following command:
#cat "console" > /etc/securetty
Reg
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 10:51 PM
03-23-2004 10:51 PM
Re: telnet
Regds,
Kaps
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 11:14 PM
03-23-2004 11:14 PM
Re: telnet
normal user? if I want that the particular user should not do the telnet to my machine
then which file should I change?
Amit singh
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 11:23 PM
03-23-2004 11:23 PM
Re: telnet
You can use a normal user login and use su to get the root login if required.
Reg
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2004 11:42 PM
03-23-2004 11:42 PM
Re: telnet
remove/rename this user home directory and amend the security file with :
ABORT_LOGIN_ON_MISSING_HOMEDIR=1
Therefore the user with no valid home directory will fail to login.
Jean-Luc
PS : I haven't tried myself, this is from documentation
check this link
http://www.interex.org/pubcontent/enterprise/jul01/09uxqa.html
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-24-2004 06:05 PM
03-24-2004 06:05 PM
Re: telnet
thanks for Ur help.
but would U tell me what will happen if I put the name of the user in /etc/nologin.
& do You have any document on these things.
I will be thankfull to U.
byeeeee
Amit Singh
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-24-2004 06:16 PM
03-24-2004 06:16 PM
Re: telnet
I never tried inserting an userid out there
Kaps
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-24-2004 06:28 PM
03-24-2004 06:28 PM
Re: telnet
Make the comment in /etc/services and /etc/inetd.conf file
Thanx
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-24-2004 08:36 PM
03-24-2004 08:36 PM
Re: telnet
as mentioned /etc/nologin is too extreme for what you are looking for.
In my previous post I mentioned another possibility (eventhough I have not tested it!).
Also, you should assign points to the forumers who contributed to your threads.
Regards,
Jean-Luc
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-24-2004 09:06 PM
03-24-2004 09:06 PM
Re: telnet
Block one user for telnet, but he can still use ftp ?
change his shell entry in the /etc/passwd file to /usr/bin/false.
Robert-Jan
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-25-2004 01:26 AM
03-25-2004 01:26 AM
Re: telnet
If I am changing the shell entry in passwd file then how he will be getting the shell
whenever he is logging.
another thing is that if that user from the other server then?
I think this is not the permanent solution to this.
Amit Singh