How to close the port in Solaris 10 ?

Posted on 2009-04-10
Last Modified: 2013-12-27
I can see using nc(netcat) command that port 53 and 67,68 are open on my solaris system. I am not running DHCP and DNS server, is there a way to close this port for any further communication, so that client would get reject message when they try to connect to this port. Thanks!
Question by:beer9
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
  • 2
LVL 40

Expert Comment

ID: 24113872
use lsof to find what processes are using these ports and then stop them

Author Comment

ID: 24114008
do not we have some sort of firewall in Solaris to achieve this?
LVL 22

Expert Comment

ID: 24114301
If you are running Solaris, then port 53, 67 and 68 are priv ports and can only be bound by system processes. Since they are all below 512, the OS also will not use them as RCP and RLOGIN ports, so it would appear that you are running DNS and DHCP.

Try this as root:

cd /proc
pfiles * > /tmp/allfiles

Then look in the /tmp/allfiles file for 'port 53', 'port 67' and 'port 68' That will tell you which processes are using those ports.
Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!


Author Comment

ID: 24121312
Thanks blu, is there a way to block some port which is gt 1023 also, I just want to know how to do port blocking/unblocking. we do not have firewall like iptables in Solaris? Thanks!
LVL 40

Expert Comment

ID: 24121889
you may look for wrapper s/w
LVL 22

Accepted Solution

blu earned 250 total points
ID: 24122155
Yes, Solaris 10 comes with IPfilters installed. To configure them, see this doc:

Author Closing Comment

ID: 31568834
Thanks blu!

Featured Post

The Ultimate Checklist to Optimize Your Website

Websites are getting bigger and complicated by the day. Video, images, custom fonts are all great for showcasing your product/service. But the price to pay in terms of reduced page load times and ultimately, decreased sales, can lead to some difficult decisions about what to cut.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In tuning file systems on the Solaris Operating System, changing some parameters of a file system usually destroys the data on it. For instance, changing the cache segment block size in the volume of a T3 requires that you delete the existing volu…
Introduction Regular patching is part of a system administrator's tasks. However, many patches require that the system be in single-user mode before they can be installed. A cluster patch in particular can take quite a while to apply if the machine…
Learn how to find files with the shell using the find and locate commands. Use locate to find a needle in a haystack.: With locate, check if the file still exists.: Use find to get the actual location of the file.:
This video shows how to set up a shell script to accept a positional parameter when called, pass that to a SQL script, accept the output from the statement back and then manipulate it in the Shell.

688 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question