On Wed, 17 Nov 1999, Torsten Behle wrote:
Do I need to have the ident daemon on port 113 running? That port is currently open on the external interface on my firewall.
No. None of the usual services depends on the ident daemon.
This is not totally correct. I had port 113 disabled (&logged) a long time. I got denys during FTP transfers nethertheless FTP worked. But there are some FTP-Servers, which need the port open, else no connection will be made.
I second that. The tcp-wrapper can also be configured to only accept connections from hosts running ident. In priciple you may have an interest yourself using ident because it makes it possible to find out which user on an specific machine is using a connection. In case of a breakin attempted from your machine it is possible to find the user account used to do it. The ident answer can of course be spoofed and you might be liable anyway for things going on on your machine... Cheers Robert -- Robert Casties --------------------- http://philoscience.unibe.ch/~casties History & Philosophy of Science Tel: +41/31/631-8505 Room: 216 Institute for Exact Sciences Sidlerstrasse 5, CH-3012 Bern Uni Bern (PGP key on homepage: D7 2B DE 64 2D 65 16 A0)