Go Back   { mindfrost82.com } > Gadget Corner > Tech Newsgroups > Linux > Suse

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 07-21-2008, 12:31 PM
Chaz
 
Posts: n/a
Telnet limit

Hi,

Bit of a conundrum on telnet to OpenSUSE (Have discussed security
aspect but user group insistent on using telnet).

Once they get to 31 logins using telnet, they can do no more.

Any ideas how to increase this limit?

pty limit is 4096, so that's not it.

Thanks in advance,

Chaz.
Reply With Quote
  #2 (permalink)  
Old 07-21-2008, 12:53 PM
houghi
 
Posts: n/a
Re: Telnet limit

Chaz wrote:
>
>
> Hi,
>
> Bit of a conundrum on telnet to OpenSUSE (Have discussed security
> aspect but user group insistent on using telnet).
>
> Once they get to 31 logins using telnet, they can do no more.
>
> Any ideas how to increase this limit?
>
> pty limit is 4096, so that's not it.
>
> Thanks in advance,


Do you let us know when you get an answer form linux.ittoolbox.com?

Also read `man telnetd` esecialy the part about debugging.

houghi
--
We all came out to Montreux Frank Zappa and the Mothers
On the Lake Geneva shoreline Were at the best place around
To make records with a mobile But some stupid with a flare gun
We didn't have much time Burned the place to the ground
Reply With Quote
  #3 (permalink)  
Old 07-21-2008, 01:18 PM
Bernd Felsche
 
Posts: n/a
Re: Telnet limit

Chaz <chaz@ten-25.co.uk> wrote:

>Bit of a conundrum on telnet to OpenSUSE (Have discussed security
>aspect but user group insistent on using telnet).


First, tell the users that there's a licence fee payable to the
patent holder. Inform them that it's UKP 12.55+VAT per connection
plus the cost of liability insurance. :-)

When you've collected the down-payment for your next car, change the
"instances" in either the xinetd.conf or the telnet detail file in
xinetd.d directory. Note that you can restrict telnet services to
those who've paid to use them, based on IP address.

See xinetd.conf(5)

Don't install telnetd when you next upgrade.
--
/"\ Bernd Felsche - Innovative Reckoning, Perth, Western Australia
\ / ASCII ribbon campaign | Science is the belief in
X against HTML mail | the ignorance of the experts.
/ \ and postings | -- Richard Feynman
Reply With Quote
  #4 (permalink)  
Old 07-21-2008, 01:31 PM
news.motzarella.org
 
Posts: n/a
Re: Telnet limit

Le Mon, 21 Jul 2008 14:31:40 +0200, Chaz <chaz@ten-25.co.uk> a écrit:

> Hi,
>
> Bit of a conundrum on telnet to OpenSUSE (Have discussed security
> aspect but user group insistent on using telnet).
>
> Once they get to 31 logins using telnet, they can do no more.
>
> Any ideas how to increase this limit?
>
> pty limit is 4096, so that's not it.
>
> Thanks in advance,
>
> Chaz.


number of pts's in /etc/securetty ?

--
JB
Reply With Quote
  #5 (permalink)  
Old 07-21-2008, 01:47 PM
houghi
 
Posts: n/a
Re: Telnet limit

Bernd Felsche wrote:
> Chaz <chaz@ten-25.co.uk> wrote:
>
>>Bit of a conundrum on telnet to OpenSUSE (Have discussed security
>>aspect but user group insistent on using telnet).

>
> First, tell the users that there's a licence fee payable to the
> patent holder. Inform them that it's UKP 12.55+VAT per connection
> plus the cost of liability insurance. :-)


Hehe. I have no idea what type of users these are. Where work, we also
use telnet to one of our servers. Not that easy to replacy company wide.

If I had users I would 'force' them to use ssh as well. (Depends on what
exactly needs to be done) Then point them to e.g. putty.

You can also tell them to be able to use telnet, they must start using
S/Key http://en.wikipedia.org/wiki/S/Key

Also when they enter, they must type another message. e.g. "I am an idiot
for using telnet" and let them type randomly Y and N several times,
where at least one question is that they will give up their doughters
once they reach legal age.

houghi
--
We all came out to Montreux Frank Zappa and the Mothers
On the Lake Geneva shoreline Were at the best place around
To make records with a mobile But some stupid with a flare gun
We didn't have much time Burned the place to the ground
Reply With Quote
  #6 (permalink)  
Old 07-21-2008, 06:02 PM
Rikishi 42
 
Posts: n/a
Re: Telnet limit

On 2008-07-21, houghi <houghi@houghi.org.invalid> wrote:

>>>Bit of a conundrum on telnet to OpenSUSE (Have discussed security
>>>aspect but user group insistent on using telnet).

>>
>> First, tell the users that there's a licence fee payable to the
>> patent holder. Inform them that it's UKP 12.55+VAT per connection
>> plus the cost of liability insurance. :-)

>
> Hehe. I have no idea what type of users these are. Where work, we also
> use telnet to one of our servers. Not that easy to replacy company wide.
>
> If I had users I would 'force' them to use ssh as well. (Depends on what
> exactly needs to be done) Then point them to e.g. putty.


If a company is large enough, it might have one of of those 'Security
Officers' (anal retentive dust collector units) sitting in some office,
usually wasting usefull people's time. Put those to some good use, for once.

Tell your users they can have telnet, if the Security Officer issues an
individual written permission for it. They usually don't put their asses on
the line.



--
The sand remembers once there was beach and sunshine
but chip is warm too
-- haiku from Effector Online, Volume 1, Number 6
Reply With Quote
  #7 (permalink)  
Old 07-21-2008, 06:42 PM
houghi
 
Posts: n/a
Re: Telnet limit

Rikishi 42 wrote:
> Tell your users they can have telnet, if the Security Officer issues an
> individual written permission for it. They usually don't put their asses on
> the line.


All depends on what 'users' they are. Are they users as in customers or
'users' as in the CEO of the company where you work.

I work in a larger company and we as hell don't ave a security officer.
:-D

houghi
--
This was written under the influence of the following:
| Artist : Doe Maar
| Song : Sinds 1 dag of 2
| Album : Skunk
Reply With Quote
  #8 (permalink)  
Old 07-21-2008, 09:27 PM
Rikishi 42
 
Posts: n/a
Re: Telnet limit

On 2008-07-21, houghi <houghi@houghi.org.invalid> wrote:

>> Tell your users they can have telnet, if the Security Officer issues an
>> individual written permission for it. They usually don't put their asses on
>> the line.

>
> All depends on what 'users' they are. Are they users as in customers or
> 'users' as in the CEO of the company where you work.


They are all users. The status of CEO may have it's importance in other
fields. But a user is a user. And CEO's are often stereotypical ones. Those
I deal with give their password to their secretairies, for $DEITY's sake.


> I work in a larger company and we as hell don't ave a security officer.
>:-D


I do. My nickname for him is "Wagon de voie de garage".
If you get my drift...

--
The sand remembers once there was beach and sunshine
but chip is warm too
-- haiku from Effector Online, Volume 1, Number 6
Reply With Quote
  #9 (permalink)  
Old 07-21-2008, 10:51 PM
houghi
 
Posts: n/a
Re: Telnet limit

Rikishi 42 wrote:
> On 2008-07-21, houghi <houghi@houghi.org.invalid> wrote:
>
>>> Tell your users they can have telnet, if the Security Officer issues an
>>> individual written permission for it. They usually don't put their asses on
>>> the line.

>>
>> All depends on what 'users' they are. Are they users as in customers or
>> 'users' as in the CEO of the company where you work.

>
> They are all users. The status of CEO may have it's importance in other
> fields. But a user is a user. And CEO's are often stereotypical ones. Those
> I deal with give their password to their secretairies, for $DEITY's sake.


I am aware that they are all users. There is however a difference in the
reason as to why you can not cut them off telnet.


houghi
--
This was written under the influence of the following:
| Artist : Doe Maar
| Song : Radeloos
| Album : Hees van Ahoy CD 1
Reply With Quote
  #10 (permalink)  
Old 07-22-2008, 12:42 AM
Nikos Chantziaras
 
Posts: n/a
Re: Telnet limit

houghi wrote:
> I am aware that they are all users. There is however a difference in the
> reason as to why you can not cut them off telnet.


Because you hate them?
Reply With Quote
Reply

  { mindfrost82.com } > Gadget Corner > Tech Newsgroups > Linux > Suse


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 06:02 PM.


Powered by vBulletin, Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.1.0 ©2007, Crawlability, Inc.
© 1999-2008 mindfrost82.com v11.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109