[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Daemons 'n stuff



-----BEGIN PGP SIGNED MESSAGE-----


I'm kind of a security facist, so I haven't turned on many daemons.
Here's the list though for the curious/debate

inetd.conf: *everything* turned off except for ident.

rc3.d/
	Sendmail (8.9.2-1kr)
	named (BIND 8.1.2, chrooted)
	sshd (1.2.26)
	Apache & MySQL (once I install it)

rc.local:
	LM Montior 2.1.1 (system hardware montoring kernel modules & apps)

Anyways, the serial console support was a breeze, so I'll definately
install the box at NaviSite this week.  The only issue is that I have jury
duty, and they won't tell me if I have to come in until about 11am monday.
I'm going to try and shoot for Tuesday.  More info on that as I find out.

I've got most of the source code installed on the box already (MySQL,
apache, php, mod_perl, mod_ssl, etc) so I'll start building them as time
permits.

Someone who isn't afriad to play with sendmail will want to configure it.  
That person isn't me.

Jason- we should talk about DNS and how we want to set it up.  NaviSite is
willing to secondary for us- we can either have them point at you or this
box.  We should have at least one name server here on the west coast in
one form or another.  It would be kinda cool if all of us with dialup
accounts could get dynamic DNS in the linuxkb.org domain too.

How do people want to do the password thing?  I can either assign random
passwords and have you change them or you can email me your encrypted
password string.  Please let me know what you want your username to be.  
Since this box doesn't run telnet, you'll need ssh 1.2.26.  Daniel/Jason:
you'll need to setup your RSA keys if you wish to login as root, otherwise
you can use su/sudo.

Ah, speaking of root... please do not play with the kernels, lilo,
/etc/radidtab, fdisk, and stuff like that.  There's a lot of non-standard
things going on to get the root on raid to work and it is all too easy to
cause major problems if you don't know what you're doing.  I'll be happy
to go over it with those interested sometime.  I know I don't need to say
that, but it makes me sleep better at night.

Lastly, I do have the IRC log from thursday.  I'll post it up in the
usual place later today.  On a side note, once we have the machine up at
NaviSite, I'm moving all my LKB related material to it's web server and
off of my Best account.  

Regards,
ADT

- -- 
Aaron Turner           | Either which way, one half dozen or another. 
aturner@pobox.com      | Check out the Red Hat Linux User's FAQ Online!
www.pobox.com/~aturner | http://www.pobox.com/~aturner/RedHat-FAQ/
All emails from this account are PGP signed.  Lack of a signature is "bad".
PGP Key fingerprint = FB E1 CE ED 57 E4 AB 80  59 6E 60 BF 45 1B 20 E8



-----BEGIN PGP SIGNATURE-----
Version: 2.6.2

iQCVAwUBNpfLMDM3jpXy1kJtAQH3CQQApHleIbRf1xG346yoM5b42KHMgglnEGk2
queejsF1j6bHdVigN1XGZ/CeLCUX29+eg6Iaowyax8u00rrhD0btTqpcj3yQEAW4
HjeR6buWd0QpJ0THKt+S5ncC7Dt5N0Wx1AIitd4IhLzj9i0IjyYJY65r8Ee3lpxo
axL5MTc0YLY=
=zRCH
-----END PGP SIGNATURE-----