View unanswered posts    View active topics

All times are UTC - 6 hours





Post new topic Reply to topic  [ 3 posts ] 
Print view Previous topic   Next topic  
Author Message
Search for:
PostPosted: Sat Jan 12, 2008 6:28 pm 
Offline
Joined: Thu Mar 02, 2006 5:42 pm
Posts: 410
Location: middleton wi usa atsc
I just read the thread about a compromised Myth box. I'm wondering if having VNC enabled and running TightVNC viewer on the standard ports of 5800 and 5900 (Knoppmyth is behind a firewall with all other ports closed) would be considered too risky without tunneling?
Thanks,
Zig


Top
 Profile  
 
 Post subject:
PostPosted: Mon Jan 14, 2008 3:14 pm 
Offline
Joined: Tue Feb 21, 2006 7:24 am
Posts: 396
Location: Dushanbe, Tajikistan
If you know that the address range that your going to reaching the box from you can
use iptables to limit access just the ranges you comming from.

There a number things to consider about the safty of an app.

- are you using strong passwords
- is the app using an encrypted channel

Many compromises come though webservers, mailservers and brute force attacks against weak accounts. ie. mythtv, mythtv.


Top
 Profile  
 
 Post subject:
PostPosted: Tue Jan 15, 2008 2:53 pm 
Offline
Joined: Wed Dec 10, 2003 8:31 pm
Posts: 1996
Location: /dev/null
Stick to ssh tunneling with strong passwords and 4k public/private keys in my opinion (stunnel is freeware for your win32/64 box). Otherwise don't forward the port on in your router.

_________________
Retired KM user (R4 - R6.04); friend to LH users.


Top
 Profile  
 

Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 3 posts ] 


All times are UTC - 6 hours




Who is online

Users browsing this forum: Google [Bot], Seo-Ul-har and 18 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
cron
Powered by phpBB® Forum Software © phpBB Group

Theme Created By ceyhansuyu