some more questions about security...
Posted in 1999
Topics: Server Administration
Hello All,
Looks like this group gives some good support, I cannot imagine
why the FAQ doesn't have the security questions in it, but here goes:
1) Where is the Create Databases permission (so I can turn it off for
public)
2) Does everyone from different machines get mapped to public?
3) Must we portfilter on the router to achieve what tcp_wrappers would
offer?
Anyone try:
virtual interface (or loopback) w/ informix listening on
it
then a tcp_wrappers proxy on the real interface?
or shall I be the first....
4) Does anyone actually run informix listening on tcp on a net connected
host (IP please :)
5) Is there a SQL command to find out how you are logged in?
6)a. If I start dbaccess logged in locally, can pass a parameter and be
a different user.
b. If I write a C program, the SDK would allow me to login as a
different user?
7) Is "public" just scary?
I know it's a lot of questions, but I promise I will answer all future
questions on this newgroup
on the subject... if I get the answers :)
Email or repost, I will summerize if it's email..
Kenneth Topp
--------no spam please?---------
Pardon me, I didn't appreciate that informix is so tightly integrated with the authorization of the native OS. It's very nice... I've cleaned up my questions throwing out those which are dumb (assuming public == anonymous). kenneth wrote: > Hello All, > > Looks like this group gives some good support, I cannot imagine > why the FAQ doesn't have the security questions in it, but here goes: > > 1) Where is the Create Databases permission (so I can turn it off for > public) > > 2) DUMB QUESTION > 3) Must we port filter on the router to achieve what tcp_wrappers would > offer? > Anyone try: > virtual interface (or loopback) w/ informix listening on > it > then a tcp_wrappers proxy on the real interface? > or shall I be the first.... > I still don't want that tcp port to appear as open.. for hack attempts, any overflows, etc. > > 4) DUMB > > 5) DUMB > > 6) DUMB > 7) DUMB > I know it's a lot of questions, but I promise I will answer all future > questions on this newgroup > on the subject... if I get the answers :) > > Email or repost, I will summerize if it's email.. > > Kenneth Topp > --------no spam please?---------