heads up, folks: random vnc (remote desktop) attempts

H.S. hs.samix at gmail.com
Tue Feb 17 01:35:51 UTC 2009


Norberto Bensa wrote:
> On Mon, Feb 16, 2009 at 10:23 PM, H.S. <hs.samix at gmail.com> wrote:
>> BTW, on a related note, can't one take away execute permissions from
>> /tmp for added security?
> 
> You could make it a separate partition, and mount it noexec; /home

I seem to have some faint memory that /tmp is used by apt and needs to
be non-noexec. But I cannot recall for certain.


> should also be noexec, nodev, nosuid. You should also mount /usr ro.
> That said, you need a balance. You want a secured box or an usable
> one?
> 
> 
>> http://episteme.arstechnica.com/eve/forums/a/tpc/f/469092836/m/264004244831
> 
> Just don't run VNC or any other service if don't need it. And if you
> do, please, secure it and monitor it.

Sure. But how do monitor it? It (vino) doesn't appear to leave any logs
at all!




-- 

Please reply to this list only. I read this list on its corresponding
newsgroup on gmane.org. Replies sent to my email address are just
filtered to a folder in my mailbox and get periodically deleted without
ever having been read.





More information about the ubuntu-users mailing list