Solved

How to close the port in Solaris 10 ?

Posted on 2009-04-10
7
3,055 Views
Last Modified: 2013-12-27
I can see using nc(netcat) command that port 53 and 67,68 are open on my solaris system. I am not running DHCP and DNS server, is there a way to close this port for any further communication, so that client would get reject message when they try to connect to this port. Thanks!
0
Comment
Question by:beer9
  • 3
  • 2
  • 2
7 Comments
 
LVL 40

Expert Comment

by:omarfarid
ID: 24113872
use lsof to find what processes are using these ports and then stop them
0
 

Author Comment

by:beer9
ID: 24114008
do not we have some sort of firewall in Solaris to achieve this?
0
 
LVL 22

Expert Comment

by:blu
ID: 24114301
If you are running Solaris, then port 53, 67 and 68 are priv ports and can only be bound by system processes. Since they are all below 512, the OS also will not use them as RCP and RLOGIN ports, so it would appear that you are running DNS and DHCP.

Try this as root:

cd /proc
pfiles * > /tmp/allfiles

Then look in the /tmp/allfiles file for 'port 53', 'port 67' and 'port 68' That will tell you which processes are using those ports.
0
Maximize Your Threat Intelligence Reporting

Reporting is one of the most important and least talked about aspects of a world-class threat intelligence program. Here’s how to do it right.

 

Author Comment

by:beer9
ID: 24121312
Thanks blu, is there a way to block some port which is gt 1023 also, I just want to know how to do port blocking/unblocking. we do not have firewall like iptables in Solaris? Thanks!
0
 
LVL 40

Expert Comment

by:omarfarid
ID: 24121889
you may look for wrapper s/w
0
 
LVL 22

Accepted Solution

by:
blu earned 250 total points
ID: 24122155
Yes, Solaris 10 comes with IPfilters installed. To configure them, see this doc:

http://docs.sun.com/app/docs/doc/816-4554/eupsq?a=view
0
 

Author Closing Comment

by:beer9
ID: 31568834
Thanks blu!
0

Featured Post

Free Trending Threat Insights Every Day

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

Join & Write a Comment

My previous tech tip, Installing the Solaris OS From the Flash Archive On a Tape (http://www.experts-exchange.com/articles/OS/Unix/Solaris/Installing-the-Solaris-OS-From-the-Flash-Archive-on-a-Tape.html), discussed installing the Solaris Operating S…
Using libpcap/Jpcap to capture and send packets on Solaris version (10/11) Library used: 1.      Libpcap (http://www.tcpdump.org) Version 1.2 2.      Jpcap(http://netresearch.ics.uci.edu/kfujii/Jpcap/doc/index.html) Version 0.6 Prerequisite: 1.      GCC …
Learn how to get help with Linux/Unix bash shell commands. Use help to read help documents for built in bash shell commands.: Use man to interface with the online reference manuals for shell commands.: Use man to search man pages for unknown command…
In a previous video, we went over how to export a DynamoDB table into Amazon S3.  In this video, we show how to load the export from S3 into a DynamoDB table.

760 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

23 Experts available now in Live!

Get 1:1 Help Now