[buug] /etc/service

Michael Higashi mhigashi at hooked.net
Mon Aug 7 16:07:42 PDT 2000


On Sun, 6 Aug 2000, Rick Moen wrote:

> So, it should be readily apparent that you will accomplish nothing
> worthwhile -- nada, zip, rien du tout -- by commenting out lines of this 
> lookup table.  All you're doing is shooting yourself in the foot, and
> making your system less usable.  What you are _not_ doing is adding to
> security in any way, since the numerical ports either have services 
> running on them or not, depending on other system configuration details
> entirely.

Hmm... Would it be possible to create a hole by altering /etc/services so
that a port number of a service considered secure was associated with a
vunerable service? This would also require alterations to /etc/inetd.conf,
I think.

Just speculating,
Mike


-- 
Michael Higashi
mhigashi at hooked.net
pager: 415-541-6820





More information about the buug mailing list