19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Safeguard Catalogue - Communications Remarks<br />

____________________________________________________________________ .........................................<br />

S 5.16 Survey of network services<br />

Initiation responsibility: <strong>IT</strong> Security Management, Administrators<br />

Implementation responsibility: Administrators<br />

Before starting the security check of individual network services and<br />

processes under UNIX, a survey should first be made of the services required<br />

and those which may already have been installed. For the latter, it is useful to<br />

generate a list of all network processes by means of the ps command and<br />

relevant options. <strong>The</strong>n information should be obtained on the function of each<br />

one of these processes and on where a process is started with which options.<br />

Often this is done in the /etc/rc, /etc/rc.net, /etc/rc.local files which are read<br />

during system bootup.<br />

Of particular importance is the inetd daemon since it can initiate all processes<br />

listed in the /etc/inetd.conf file. Configuration files such as /etc/services,<br />

/etc/protocols, /etc/hosts, /etc/gated.conf, and others, must also be checked.<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!