Subject: Re: Hardening a Firewall Machine
To: Richard Ibbotson <richard@sheflug.co.uk>
From: gabriel rosenkoetter <gr@eclipsed.net>
List: tech-security
Date: 10/15/2001 18:35:50
--vtzGhvizbBRQ85DL
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
On Sun, Oct 14, 2001 at 03:59:07PM +0000, Richard Ibbotson wrote:
> > /etc/ipf.conf, but you can name it whatever you want really
> > (e.g. /home/me/ihatepings) and just use the -f filename
> > to specify it (e.g. ipf -Fa -f /home/me/ihatepings).
> Oh .. great... I'll have a go at that at the same time as some basic=20
> routing ideas. =20
This is pretty clearly documented in ipf(5), btw.
> I know that I should remove anything that shouldn't be in there. =20
Um. Unless you've actively installed packages, they're aren't any
installed. The NetBSD base system is *not* managed by a package
system. And I don't really recommend deleting pieces of the base
system at all. Just make sure you're not using daemons you don't
want.
> BUT .... having read the manual about package management I can see=20
> that I'm really not sure how to view a complete list of packages. =20
> And ... if I could I'm sure that the list would just scroll of the=20
> screen without giving me a chance of reading anything more than a=20
> small part of the packages list.
> Any way round that one ?=20
pkg_info(1) and less(1) may be of interest to you.
> And .. how do I delete the packages that I don't want ?
pkg_delete(1).
--=20
~ g r @ eclipsed.net
--vtzGhvizbBRQ85DL
Content-Type: application/pgp-signature
Content-Disposition: inline
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (NetBSD)
Comment: For info see http://www.gnupg.org
iEYEARECAAYFAjvLZMYACgkQ9ehacAz5CRqByACfTPqliSbHCkMKKqkVmNCZJjFP
SJYAnjotkkpYEtN20osfFYWzGq94GaKW
=ay5Z
-----END PGP SIGNATURE-----
--vtzGhvizbBRQ85DL--