heads up, folks: random vnc (remote desktop) attempts
H.S.
hs.samix at gmail.com
Tue Feb 17 01:35:51 UTC 2009
Norberto Bensa wrote:
> On Mon, Feb 16, 2009 at 10:23 PM, H.S. <hs.samix at gmail.com> wrote:
>> BTW, on a related note, can't one take away execute permissions from
>> /tmp for added security?
>
> You could make it a separate partition, and mount it noexec; /home
I seem to have some faint memory that /tmp is used by apt and needs to
be non-noexec. But I cannot recall for certain.
> should also be noexec, nodev, nosuid. You should also mount /usr ro.
> That said, you need a balance. You want a secured box or an usable
> one?
>
>
>> http://episteme.arstechnica.com/eve/forums/a/tpc/f/469092836/m/264004244831
>
> Just don't run VNC or any other service if don't need it. And if you
> do, please, secure it and monitor it.
Sure. But how do monitor it? It (vino) doesn't appear to leave any logs
at all!
--
Please reply to this list only. I read this list on its corresponding
newsgroup on gmane.org. Replies sent to my email address are just
filtered to a folder in my mailbox and get periodically deleted without
ever having been read.
More information about the ubuntu-users
mailing list