in reply to Re: (OT) Should I get a Linux box?
in thread (OT) Should I get a Linux box?
RE: Red Hat you have heard of chkconfig? Here is a little chunk of our standard server setup docs:
Now let's start shutting down excess services we don't need. Run chkconfig --list | grep on This will show you most of the default services ie [root@plain root]# chkconfig --list | grep on keytable 0:off 1:on 2:on 3:on 4:on 5:on 6:off syslog 0:off 1:off 2:on 3:on 4:on 5:on 6:off gpm 0:off 1:off 2:on 3:on 4:on 5:on 6:off sendmail 0:off 1:off 2:on 3:on 4:on 5:on 6:off kudzu 0:off 1:off 2:off 3:on 4:on 5:on 6:off omawsd 0:off 1:off 2:off 3:on 4:on 5:on 6:off netfs 0:off 1:off 2:off 3:on 4:on 5:on 6:off network 0:off 1:off 2:on 3:on 4:on 5:on 6:off random 0:off 1:off 2:on 3:on 4:on 5:on 6:off rawdevices 0:off 1:off 2:off 3:on 4:on 5:on 6:off ipchains 0:off 1:off 2:on 3:on 4:on 5:on 6:off iptables 0:off 1:off 2:on 3:on 4:on 5:on 6:off crond 0:off 1:off 2:on 3:on 4:on 5:on 6:off anacron 0:off 1:off 2:on 3:on 4:on 5:on 6:off xfs 0:off 1:off 2:on 3:on 4:on 5:on 6:off xinetd 0:off 1:off 2:off 3:on 4:on 5:on 6:off autofs 0:off 1:off 2:off 3:on 4:on 5:on 6:off sshd 0:off 1:off 2:on 3:on 4:on 5:on 6:off httpd 0:off 1:off 2:off 3:on 4:on 5:on 6:off raidmon 0:off 1:off 2:on 3:off 4:off 5:off 6:off telnet: on [root@plain root]# Use chkconfig --help to see the options. We want to disable all unnece +ssary services. For example (using above config) [root@plain root]# chkconfig --help chkconfig version 1.3.5 - Copyright (C) 1997-2000 Red Hat, Inc. This may be freely redistributed under the terms of the GNU Public Lic +ense. usage: chkconfig --list [name] chkconfig --add <name> chkconfig --del <name> chkconfig [--level <levels>] <name> <on|off|reset>) [root@plain root]# chkconfig --level 2345 ipchains off [root@plain root]# chkconfig --level 345 xinetd off [root@plain root]# chkconfig telnet off [root@plain root]# chkconfig omawsd off
Typically you will need a number of other services that you omit from your list like iptables for your firewall, syslog, network and crond to name a few. You definitely want iptables :-)
cheers
tachyon
s&&rsenoyhcatreve&&&s&n.+t&"$'$`$\"$\&"&ee&&y&srve&&d&&print
|
|---|