United States (change)
Shortcuts: Downloads Fedora Red Hat Network
Account Links: Cart Your Account Logout
Potentially, any network service is insecure. This is why turning unused services off is so important. Exploits for services are revealed and patched routinely, making it very important to keep packages associated with any network service updated.
Some network protocols are inherently more insecure than others. These include any services which do the following things:
Also, remote memory dump services, like netdump , pass the contents of memory over the network unencrypted. Memory dumps can contain passwords or, even worse, database entries and other sensitive information.
Other services like finger and rwhod reveal information about users of the system.Examples of inherently insecure services includes the following:
All remote login and shell programs (rlogin, rsh, and telnet ) should be avoided in favor of SSH. FTP is not as inherently dangerous to the security of the system as remote shells, but FTP servers must be carefully configured and monitored to avoid problems.
Services which should be carefully implemented and behind a firewall include: