Mailinglist Archive: opensuse-security (375 mails)

< Previous Next >
FW port 113 keeps open
  • From: "Pep" <pep@xxxxxxxxxxx>
  • Date: Fri, 13 Sep 2002 06:36:23 -0700 (PDT)
  • Message-id: <20020913063624.17148.h015.c000.wm@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
Dear susers

I am installing a new FW with SuSE 8.0. I don't how the
port TCP 113 keeps open...

I just want to open a few ports to the world:
FW_SERVICES_EXT_TCP="ssh smtp http https"

When I scan the TCP ports from the external iface I see
that port 113 is not rejected:

22/tcp open ssh
25/tcp open smtp
80/tcp open http
113/tcp closed auth
443/tcp open https

I have checked the iptables command used by the FW and
it seems ok:
montblanc:/home/pep # SuSEfirewall2 debug | grep 113
iptables -A input_ext -j REJECT -p tcp --dport 113
--syn --reject-with tcp-reset
iptables -A input_dmz -j REJECT -p tcp --dport 113
--syn --reject-with tcp-reset
iptables -A input_int -j REJECT -p tcp --dport 113
--syn --reject-with tcp-reset
It should be rejecting any connections to port 113...

So far is not a big risk because I do not run any
application in that port. How can I reject connections
to port 113? What is SuSE FW is allowing port 113???

Cheers!

Pep Serrano <pep@xxxxxxxxxxx>
http://pep.serrano.net
PGP Public Key Fingerprint: 8534 A441 2AD8 AF16 926C
FD42 C5D1 1F94

< Previous Next >