Alisson Sellaro wrote: > I was checking my firewall logs and have detected lots of TCP/113 > dropped packets. Checking /etc/services I realized it was ident > traffic. What do you think about such service? Should I let it blocked > or should I allow it without further security exposure?
Please wrap your emails at 72 columns or so when sending to lists. I don't know of any specific security problems with ident, other than the fact that a service that exists to tell people about your machine may be revealing information that a cracker would want to know. But to me, the principal issue with ident is, what good is it doing me if I let it run on my system? None, as far as I can tell. I don't need it, so it's gone. Whether it's actually dangerous or not is a non-issue to me. Craig