SUMMARY2: Security warning: site scanning (solution included) _2_?

From: Ian Veach <ivo_at_scs.unr.edu>
Date: Wed, 20 Jan 1999 15:45:13 -0800 (PST)

One more addition that is very useful in its detail to the summary I
posted:

Thanks Sheila Hollenbaugh!

The original question:
-------------------------------------------------------------------------

> We do not have banners, and our (post-login) motd doesn't have the
> flavour name. However, if they telnet to the machine they get:
> Digital UNIX ({machine}.scs.unr.edu) (ttyvd)
> without having to log in. Is this worth changing? How would one go
> about doing it? (we have a source license, btw).

another response:
-------------------------------------------------------------------------

Sorry not to answer this before the summary appeared, but if the string
you refer to is the one that appears when you telnet to the system, it
is trivial to change, in /etc/gettydefs you can replace the string with
anything you like, it goes in the "default" entry. Here is what ours
loooks like, note that it is all one line:

default#B9600#B9600# \r\n Wright State University -- Unauthorized use
prohibited \r\n \

as opposed to the following which produces the O/S and version, %v(%h)
being the offending string in the entry:

default#B9600#B9600# %v(%h)\r\n\r\n Wright State University --
Unauthorized use prohibited \r\n \



cheers,
_____________________________________________________________________________
Ian Veach, Systems Software Analyst, UCCSN Systems Computing Services
ivo_at_nevada.edu, VOICE: (775) 784.6486, FAX: (775) 784.1108
_____________________________________________________________________________
Received on Wed Jan 20 1999 - 23:43:21 NZDT

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:38 NZDT