Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-05 Thread Tim
Tim: >> Since you're making this public Jatin K: > entire network is not connected to the Internet it's only on LAN > only 60 to 65 computers on it That could be public or private... Whether you want to be more secure against eavesdropping on traffic, and against malcontented people, is mo

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-04 Thread Jatin K
On Tuesday 05 October 2010 10:53 AM, Tim wrote: > Tim: > >>> Though, I wouldn't allow telnet, at all. Are you sure you need it? >>> > > Jatin K: > >> I'm also thinking like you ... no need to allow telnet .but >> customer is the king he says the he wants telnet to server ..

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-04 Thread Tim
Tim: >> Though, I wouldn't allow telnet, at all. Are you sure you need it? Jatin K: > I'm also thinking like you ... no need to allow telnet .but > customer is the king he says the he wants telnet to server ... > nothing can be done ...!!! I'd ask to make sure whether he knows about

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-03 Thread Jatin K
On Saturday 02 October 2010 06:41 PM, Tim wrote: > On Fri, 2010-10-01 at 19:06 +0530, Jatin K wrote: > >> what is the perfect way >> >> only host.allow or host.deny file >> >> r only iptables ?? >> > One could argue that this is no "perfect" way. And that multiple > efforts to protect yo

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-02 Thread Samuel Kidman
On Sat, Oct 2, 2010 at 9:11 PM, Tim wrote: > On Fri, 2010-10-01 at 19:06 +0530, Jatin K wrote: > > what is the perfect way > > > > only host.allow or host.deny file > > > > or only iptables ?? > > One could argue that this is no "perfect" way. And that multiple > efforts to protect yourself is t

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-02 Thread Tim
On Fri, 2010-10-01 at 19:06 +0530, Jatin K wrote: > what is the perfect way > > only host.allow or host.deny file > > or only iptables ?? One could argue that this is no "perfect" way. And that multiple efforts to protect yourself is the best way. Personally, I'd deny all, and just allow the

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-01 Thread JB
Jatin K gmail.com> writes: > > Dear All, > > I want to allow telnet in my server from local LAN from only one IP > address, to fulfill the requirement what should I do from the following > > [1] add an entry in /etc/host.allow like following > > telnetd : xx.xx.xx.xx > > or > > [2] add an

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-01 Thread Bruno Wolff III
On Fri, Oct 01, 2010 at 19:06:26 +0530, Jatin K wrote: > what is the perfect way > > only host.allow or host.deny file > > > or only iptables ?? I don't think there is one. It depends how you want to manage your system. Personally, I like iptables, but using tcpwrappers is fine as well. --

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-01 Thread Jatin K
On Friday 01 October 2010 06:45 PM, Tim wrote: > On Fri, 2010-10-01 at 18:09 +0530, Jatin K wrote: > >> what is the best option to go through ??? >> > Well, you could do both. Allow/deny and iptables. That way, if you > have to fiddle with one, the other is still there. > > > what i

Re: Allow telnet to only one IP using host.deny or host.allow

2010-10-01 Thread Tim
On Fri, 2010-10-01 at 18:09 +0530, Jatin K wrote: > what is the best option to go through ??? Well, you could do both. Allow/deny and iptables. That way, if you have to fiddle with one, the other is still there. -- [...@localhost ~]$ uname -r 2.6.27.25-78.2.56.fc9.i686 Don't send private rep

Allow telnet to only one IP using host.deny or host.allow

2010-10-01 Thread Jatin K
Dear All, I want to allow telnet in my server from local LAN from only one IP address, to fulfill the requirement what should I do from the following [1] add an entry in /etc/host.allow like following telnetd : xx.xx.xx.xx or [2] add an entry in /etc/host.deny like following telnet : ALL ex