Solved

How to close the port in Solaris 10 ?

Posted on 2009-04-10
7
3,171 Views
Last Modified: 2013-12-27
I can see using nc(netcat) command that port 53 and 67,68 are open on my solaris system. I am not running DHCP and DNS server, is there a way to close this port for any further communication, so that client would get reject message when they try to connect to this port. Thanks!
0
Comment
Question by:beer9
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
  • 2
7 Comments
 
LVL 40

Expert Comment

by:omarfarid
ID: 24113872
use lsof to find what processes are using these ports and then stop them
0
 

Author Comment

by:beer9
ID: 24114008
do not we have some sort of firewall in Solaris to achieve this?
0
 
LVL 22

Expert Comment

by:blu
ID: 24114301
If you are running Solaris, then port 53, 67 and 68 are priv ports and can only be bound by system processes. Since they are all below 512, the OS also will not use them as RCP and RLOGIN ports, so it would appear that you are running DNS and DHCP.

Try this as root:

cd /proc
pfiles * > /tmp/allfiles

Then look in the /tmp/allfiles file for 'port 53', 'port 67' and 'port 68' That will tell you which processes are using those ports.
0
Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 

Author Comment

by:beer9
ID: 24121312
Thanks blu, is there a way to block some port which is gt 1023 also, I just want to know how to do port blocking/unblocking. we do not have firewall like iptables in Solaris? Thanks!
0
 
LVL 40

Expert Comment

by:omarfarid
ID: 24121889
you may look for wrapper s/w
0
 
LVL 22

Accepted Solution

by:
blu earned 250 total points
ID: 24122155
Yes, Solaris 10 comes with IPfilters installed. To configure them, see this doc:

http://docs.sun.com/app/docs/doc/816-4554/eupsq?a=view
0
 

Author Closing Comment

by:beer9
ID: 31568834
Thanks blu!
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Best way to handle awk return value 6 76
How to Change Interface on Cisco IOU 11 121
Linux: disable vim auto-comment 7 157
Write an app 10 74
A metadevice consists of one or more devices (slices). It can be expanded by adding slices. Then, it can be grown to fill a larger space while the file system is in use. However, not all UNIX file systems (UFS) can be expanded this way. The conca…
Java performance on Solaris - Managing CPUs There are various resource controls in operating system which directly/indirectly influence the performance of application. one of the most important resource controls is "CPU".   In a multithreaded…
Learn several ways to interact with files and get file information from the bash shell. ls lists the contents of a directory: Using the -a flag displays hidden files: Using the -l flag formats the output in a long list: The file command gives us mor…
Learn how to find files with the shell using the find and locate commands. Use locate to find a needle in a haystack.: With locate, check if the file still exists.: Use find to get the actual location of the file.:

730 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question