[Systems] Open TCP ports

Aleksey Lim alsroot at activitycentral.org
Wed Mar 30 12:28:18 EDT 2011


On Sat, Mar 26, 2011 at 12:26:13AM -0400, Bernie Innocenti wrote:
> Here's the result of a scan of all our machines.
> 
> I see a number of slightly dangerous things, including a lot of open
> smtp ports on machines that don't need to receive email.
> 
> Please help keep the Sugar Labs infrastructure secure by making daemon
> listen only on local ports unless they're actually providing a public
> service.
> 
> If you'd like to repeat the audit, use this command line:
> 
>   nmap 140.186.70.53 140.186.70.100-129 18.85.44.118-124
> 
> ----------8<-----------8<-----------8<-----------8<-----------8<----------
> 
> Nmap scan report for jita.sugarlabs.org (18.85.44.120)
> Host is up (0.056s latency).
> Not shown: 991 filtered ports
> PORT     STATE SERVICE
> 22/tcp   open  ssh
> 80/tcp   open  http
> 443/tcp  open  https

> 5222/tcp open  unknown
> 5280/tcp open  unknown
ejabberd

> 8080/tcp open  http-proxy
feedback server

> 9090/tcp open  zeus-admin
> 9091/tcp open  unknown
webirc

> 9418/tcp open  git
git.sl.o

-- 
Aleksey


More information about the Systems mailing list