Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

port scan - which should be open / closed, how to open / close

Status
Not open for further replies.

SM777

Technical User
Mar 7, 2001
208
GB
I found a php script which test for open ports on the linux server.

I have found a list stating what each port is used for. What I don't know is:

Which ones are the security risks?

Which opened ports are not needed and should be closed if I am not using those services? e.g. things like Finger. Do I really need that port open?

How to close those ports?

Is there a good guide somewhere?
 
The default attitude about open ports are that there should be none, unless you absolutely need them.
As an example, for a webserver you would only want port 80 and port 443 (if using SSL) open, all others should be closed.
To close a port is usually just a matter of shutting down the application listening on that port. It can also be accomplished with a firewall like [tt]iptables[/tt] or [tt]ipchains[/tt]. //Daniel
 
I have Portscan and Snort running. I guess if they are listening on certain ports then those ports should be left alone?

 
You can find out which application is listening on what port with the command [tt]netstat -pnat[/tt]. //Daniel
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top