nerdexam
Red_Hat

RH302 · Question #126

Configure to deny the pop and imap connection from outside LAN as well as station20.example.com.

1. vi /etc/hosts.deny dovecot:ALL EXCEPT .example.com EXCEPT station20.example.com We can secure the services using tcp_wrappers. There are main two files, /etc/hosts.allow and /etc/hosts.deny. There will be three stage access checking -Is access explicitly permitted? Means…

Security

Question

Configure to deny the pop and imap connection from outside LAN as well as station20.example.com.

Explanation

  1. vi /etc/hosts.deny dovecot:ALL EXCEPT .example.com EXCEPT station20.example.com We can secure the services using tcp_wrappers. There are main two files, /etc/hosts.allow and /etc/hosts.deny. There will be three stage access checking -Is access explicitly permitted? Means permitted from /etc/hosts.allow?
  • Otherwise, Is access explicitly denied? Means denied from /etc/hosts.deny?
  • Otherwise, by default permit access if neither condition matched. To deny the services we can configure /etc/hosts.deny file using ALL and EXCEPT operation. Pattern of /etc/hosts.allow and /etc/hosts.deny file is: Demon_list:client_list:options In Client list can be either domain name or IP address.

Topics

#TCP wrappers#hosts.deny#POP#IMAP

Community Discussion

No community discussion yet for this question.

Full RH302 Practice