[ale] xinetd config (RH7.2)

Gene Matthews gene at mmc-inc.com
Thu Feb 28 12:08:17 EST 2002


I'm trying to tighten down a RH7.2 box.  Below is what /etc/xinetd.conf
currently looks like.  I have added the 'disabled' line to the defaults
and sent a SIGUSR2 signal to the xinetd pid.  However, a lot of unwanted
services are still being listened for.  


defaults
{
	disabled
	instances               = 60
        log_type                = SYSLOG authpriv
        log_on_success		= HOST PID
        log_on_failure		= HOST
	cps			= 25 30

}

includedir /etc/xinetd.d



The only thing enabled in /etc/xinetd.d/ is amanda.  However, a 'netstat
-l' still shows lots of stuff open. I know somethings don't use
inetd/xinetd; they may have their own deamon (like sshd).  But finger,
echo, discard, etc. do (I think!).

Anyone have any pointers.  The 'disabled' flag should work if I'm
reading the man page correctly and sending the SIGUSR2 should reload
it.  I'm trying to avoid a reboot.

Thanks,

Gene

# netstat -l
Active Internet connections (only servers)
Proto Recv-Q Send-Q Local Address           Foreign Address        
State      
tcp        0      0 *:tcpmux                *:*                    
LISTEN      
tcp        0      0 *:20034                 *:*                    
LISTEN      
tcp        0      0 *:32771                 *:*                    
LISTEN      
tcp        0      0 *:32772                 *:*                    
LISTEN      
tcp        0      0 *:40421                 *:*                    
LISTEN      
tcp        0      0 *:32773                 *:*                    
LISTEN      
tcp        0      0 *:32774                 *:*                    
LISTEN      
tcp        0      0 *:31337                 *:*                    
LISTEN      
tcp        0      0 *:ircd                  *:*                    
LISTEN      
tcp        0      0 *:systat                *:*                    
LISTEN      
tcp        0      0 *:5742                  *:*                    
LISTEN      
tcp        0      0 *:imap                  *:*                    
LISTEN      
tcp        0      0 *:finger                *:*                    
LISTEN      
tcp        0      0 *:netstat               *:*                    
LISTEN      
tcp        0      0 *:54320                 *:*                    
LISTEN      
tcp        0      0 *:2000                  *:*                    
LISTEN      
tcp        0      0 *:ingreslock            *:*                    
LISTEN      
tcp        0      0 *:ssh                   *:*                    
LISTEN      
tcp        0      0 *:nntp                  *:*                    
LISTEN      
tcp        0      0 *:socks                 *:*                    
LISTEN      
tcp        0      0 *:12345                 *:*                    
LISTEN      
tcp        0      0 *:12346                 *:*                    
LISTEN      
tcp        0      0 *:635                   *:*                    
LISTEN      
tcp        0      0 *:49724                 *:*                    
LISTEN      
tcp        0      0 *:uucp                  *:*                    
LISTEN      
udp        0      0 *:640                  
*:*                                 
udp        0      0 *:641                  
*:*                                 
udp        0      0 *:who                  
*:*                                 
udp        0      0 *:tcpmux               
*:*                                 
udp        0      0 *:32770                
*:*                                 
udp        0      0 *:32771                
*:*                                 
udp        0      0 *:32772                
*:*                                 
udp        0      0 *:32773                
*:*                                 
udp        0      0 *:32774                
*:*                                 
udp        0      0 *:echo                 
*:*                                 
udp        0      0 *:discard              
*:*                                 
udp        0      0 *:snmp                 
*:*                                 
udp        0      0 *:snmptrap             
*:*                                 
udp        0      0 *:54321                
*:*                                 
udp        0      0 *:700                  
*:*                                 
udp        0      0 *:tftp                 
*:*                                 
udp        0      0 *:amanda               
*:*                                 
udp        0      0 *:31337                
*:*                                 
Active UNIX domain sockets (only servers)
Proto RefCnt Flags       Type       State         I-Node Path




-- 
Gene Matthews
Matthews Midrange Consulting, Inc.
(678) 923-8327
(877) 882-6291 (toll free)
http://mmc-inc.com


---
This message has been sent through the ALE general discussion list.
See http://www.ale.org/mailing-lists.shtml for more info. Problems should be 
sent to listmaster at ale dot org.






More information about the Ale mailing list