Go Back   Velocity Reviews > Newsgroups > Computer Security
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply

Computer Security - X-Windows installed on hardenend DMZ host

 
Thread Tools Search this Thread
Old 10-08-2004, 11:21 AM   #1
Default X-Windows installed on hardenend DMZ host


Hi all,

(I trust this is ok in this group - If not pls could anyone point to a
more appropriate one, pls).

Does anyone know where to find more information about security risks /
issues having X-Windows libs + apps installed (but not running) on a DMZ
box?

Thanks in advance,

Robin


Robin Huiser
  Reply With Quote
Old 10-09-2004, 12:46 AM   #2
donnie
 
Posts: n/a
Default Re: X-Windows installed on hardenend DMZ host
On Fri, 08 Oct 2004 12:21:13 +0200, Robin Huiser <>
wrote:

>Hi all,
>
>(I trust this is ok in this group - If not pls could anyone point to a
>more appropriate one, pls).
>
>Does anyone know where to find more information about security risks /
>issues having X-Windows libs + apps installed (but not running) on a DMZ
>box?
>
>Thanks in advance,
>
>Robin

#####################
You didn't say what OS it is but as far as FreeBSD goes, remote X
displays are disabled by default. That's the -listen_tcp option of
the startx command. Also, if I remember correctly, X server runs on
port 6000, which can be blocked.
Soemthing comes to mind. Edit the xinitrc file where it says #start
some nice programs. Delete what it says under that.
donnie


donnie
  Reply With Quote
Old 10-21-2004, 01:14 PM   #3
Robin Huiser
 
Posts: n/a
Default Re: X-Windows installed on hardenend DMZ host
donnie wrote:

> On Fri, 08 Oct 2004 12:21:13 +0200, Robin Huiser <>
> wrote:
>
>
>>Hi all,
>>
>>(I trust this is ok in this group - If not pls could anyone point to a
>>more appropriate one, pls).
>>
>>Does anyone know where to find more information about security risks /
>>issues having X-Windows libs + apps installed (but not running) on a DMZ
>>box?
>>
>>Thanks in advance,
>>
>>Robin

>
> #####################
> You didn't say what OS it is but as far as FreeBSD goes, remote X
> displays are disabled by default. That's the -listen_tcp option of
> the startx command. Also, if I remember correctly, X server runs on
> port 6000, which can be blocked.
> Soemthing comes to mind. Edit the xinitrc file where it says #start
> some nice programs. Delete what it says under that.
> donnie

Thanks for the comment!!!

The OS is AIX and my concerns are mainly what a hacker could do with the
extra installed software and libs - there is no X server running during
normal operation.



Robin Huiser
  Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
How to Reset / Recover Forgotten Windows NT / 2000 / XP / 2003 Administrator Password wskaihd Software 2 11-17-2009 02:01 AM
How to activate Remote Assistance with XP using Windows Live Messenger Oziisr General Help Related Topics 0 02-01-2008 04:45 PM
Computer Security aldrich.chappel.com.use@gmail.com A+ Certification 0 11-27-2007 02:11 AM
MCITP: Enterprise Support Technician MileHighWelch MCITP 1 06-19-2007 10:25 PM
Re: Question about MS critical updates John Coode A+ Certification 0 06-30-2004 06:08 PM




SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46