Nov 29, 2004 #1 zelco IS-IT--Management Nov 20, 2001 2 US I would like to deny certain users logging in from specific IP addresses to log in / telnet / or even ftp to my system (I am running aix 5.1)
I would like to deny certain users logging in from specific IP addresses to log in / telnet / or even ftp to my system (I am running aix 5.1)
Nov 29, 2004 #2 trifo MIS May 9, 2002 269 HU You can install IPsec for AiX and set firewall rules to drop SYN packets from unwanted IP-s (to local port 20 and 21) Even though it might be a better idea to deny telnet adn ftp, and provide only ssh and scp/sftp services (if you are allowed to make such a decision). --Trifo Upvote 0 Downvote
You can install IPsec for AiX and set firewall rules to drop SYN packets from unwanted IP-s (to local port 20 and 21) Even though it might be a better idea to deny telnet adn ftp, and provide only ssh and scp/sftp services (if you are allowed to make such a decision). --Trifo
Nov 30, 2004 Thread starter #3 zelco IS-IT--Management Nov 20, 2001 2 US is there an easier moe simpler way to do this? Upvote 0 Downvote
Nov 30, 2004 #4 trifo MIS May 9, 2002 269 HU There is 3 simple way: 1) ask your network manager stuff to establish such rules in your network equipment (routers, firewalls, etc) 2) ask someone to do it for you on your AiX host 3) deny solving the problem Well, you can enter some lines in the /etc/profile to check patterns of unwanted IP-s and execute an "exit" command if matches found. --Trifo Upvote 0 Downvote
There is 3 simple way: 1) ask your network manager stuff to establish such rules in your network equipment (routers, firewalls, etc) 2) ask someone to do it for you on your AiX host 3) deny solving the problem Well, you can enter some lines in the /etc/profile to check patterns of unwanted IP-s and execute an "exit" command if matches found. --Trifo