Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

How do I deny certain users from certain IP's to telnet into system

Status
Not open for further replies.

zelco

IS-IT--Management
Nov 20, 2001
2
US
I would like to deny certain users logging in from specific IP addresses to log in / telnet / or even ftp to my system (I am running aix 5.1)
 

You can install IPsec for AiX and set firewall rules to drop SYN packets from unwanted IP-s (to local port 20 and 21)

Even though it might be a better idea to deny telnet adn ftp, and provide only ssh and scp/sftp services (if you are allowed to make such a decision).

--Trifo
 
is there an easier moe simpler way to do this?
 

There is 3 simple way:
1) ask your network manager stuff to establish such rules in your network equipment (routers, firewalls, etc)

2) ask someone to do it for you on your AiX host

3) deny solving the problem :)

Well, you can enter some lines in the /etc/profile to check patterns of unwanted IP-s and execute an "exit" command if matches found.

--Trifo
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top