Xerox 701P46740 manual Security Guide

Page 12

 

INETD Service

 

Description

 

 

 

 

 

 

 

daytime

Daytime Protocol

Displays the date and time. Used primarily for

 

 

 

server

testing. Not used by the Xerox FreeFlow Print

 

 

 

 

Server.

 

 

discard

Discard Protocol server

Discards everything sent to it.Used primarily for

 

 

 

 

testing. Not used by the Xerox FreeFlow Print

 

 

 

 

Server.

 

 

dtspc

CDE sub-process

CDE sub-process Control Service (dtspcd) is a

 

 

 

Control Service

network daemon that accepts requests from

 

 

 

 

clients to execute commands and launch

 

 

 

 

applications remotely. Not used by the Xerox

 

 

 

 

FreeFlow Print Server.

 

 

echo

Echo Protocol server

Echoes back any character sent to it. Sometimes

 

 

 

 

used in packet debugging and can be used for

 

 

 

 

denial of service attacks. Not used by the Xerox

 

 

 

 

FreeFlow Print Server.

 

 

exec

Remote execution

Used by rexec(1) command. Potentially

 

 

 

server

dangerous— passwords and subsequent

 

 

 

 

session is clear text (not encrypted). Not used by

 

 

 

 

the Xerox FreeFlow Print Server.

 

 

finger

Remote user

Display information about local and remote

 

 

 

information server

users. Gives away user information. Not used by

 

 

 

 

the Xerox FreeFlow Print Server.

 

 

fs

X font server

Used by CDE to dynamically render fonts. The

 

 

 

 

Xerox FreeFlow Print Server uses bit-map fonts.

 

 

ktkt_warnd

Kerberos warning

ktkt_warnd is a daemon on Kerberos clients that

 

 

 

daemon

can warn users when their Kerberos tickets are

 

 

 

 

about to expire. It is invoked by inetd when a

 

 

 

 

ticket-granting ticket (TGT) is obtained for the

 

 

 

 

first time, such as after using the kinit command.

 

 

ftp

File transfer protocol

This can be used to enable/disable the ftp

 

 

 

server

server. This does not affect using the ftp client

 

 

 

 

from the Xerox FreeFlow Print Server to another

 

 

 

 

host running an FTP server. Note that

 

 

 

 

FreeFlow® requires this service to be enabled.

 

 

gssd

RPC program

Generates and validates GSS-API tokens for

 

 

 

authentication

kernel RPC.

 

 

kcms_server

KCMS library service

Allows the KCMS library to access profiles on

 

 

 

daemon

remote machines. Not used by the Xerox

 

 

 

 

FreeFlow Print Server.

 

 

login

Remote login server

Used by the rlogin(1) command. Potentially

 

 

 

 

dangerous— uses ~/.rhosts file for

 

 

 

 

authentication; passwords and subsequent

 

 

 

 

session is clear text (not encrypted).

 

 

 

 

 

 

 

 

 

 

 

8

Security Guide

Image 12
Contents Security Guide USA Table of contents Table of contents Contents About this guideConventions Customer support Security System supplied security profilesCD-ROM FTPEnable and disable services BSMS72AUTOINSTALL S40LLC2S47ASPPP S70UUCPS15NFS.SERVER S17HCLNFS.DAEMONS76SNMPDX S77DMISecurity Guide Security Guide User level changes Disabling secure name service databases Multicast routing disabledSolaris file permissions OS and host information hiddenExecutable stacks disabled Remote CDE login disabledXerox FreeFlow Print Server router capabilities disabled Sendmail daemon securedRemote shell internet service Enable-ftp and disable-ftpSecurity warning banners Disabling LP anonymous printingSetting the current and default profiles Account managementCreating user-defined profiles Local users and groupsDefault user groups and user accounts Group authorization Creating user accountsMED CD-ROM CDSAuto-Logon Default Screen/Auto-Logoff Password securityStrong Passwords How to Enable/Disable Strong PasswordAudit Logs GUI LoggingAccessing the Xerox FreeFlow Print Server through ADS Date/Time User Login/LogoutChanging individual passwords User Activity on the SystemLimiting access IP FilteringUsing the Print Server SSL/TLS Security Feature Secure Socket LayerRemote Workflow Creating and Using a Self-Signed Certificate IsgwSecurity Guide Network Protocol Digital CertificatesHttp IPPSnmp WinsMicr mode Secure PrintSSL NFSPrevent Unauthorized Queue Changes Roles and responsibilitiesQueue Lock Xerox responsibilitiesSecurity tips Customer ResponsibilitiesVirus Scan Online Help for security