Is arch linux safe to be connected to the net just after install?

Is it secured enough to be connected to the net after install and all updates applied or do I have to do some additional configuration to make harden it?

IMHO every home computer should be connected to a recent and good name brand NAT router.  Even if you only have one computer, I still recommend running it behind a good router.
With the default /etc/rc.conf file, there are only four daemons started at boot up.  If you put your out of the box Arch install behind a properly optioned NAT router, you should be safe for E-mail, browsing, messaging, downloading Arch updates, etc.  After that it's up to you to use some common sense about what web sites you visit.
Here is a good tutorial on NAT routers.  If you are interested in computer security, it is a good read.  While you are at that site, you can go to ShieldsUp, click on proceed, then in the blue box, click on "All Service ports".  This will probe the first 1056 ports and hopefully all your ports will be green and you get a "TrueStealth" rating. 
If I turn on additional daemons, such as SAMBA or SSH, then I take a couple of additional precautions.  These extra precautions aren't really necessary as long as you aren't doing any port forwarding on your router, but I tend to be on the paranoid side when it comes to security.  Since I use Gnome, I install the Firestarter firewall.  I know it isn't under development anymore, but since iptables hasn't changed since then, does it really matter?  You also have to use a work around to start the GUI, but that is easy enough.  gksu dbus-launch firestarter does the trick.  Set up the firewall so that the smb service (SAMBA) and the ssh service only allow computers on your home network.  Anything external to your network is not allowed.  Then I use the /etc/hosts.allow and /etc/hosts.deny files to only allow computers on my home network.  That should be good enough for a home network.
Now, if you want to open up ports and services that "Listen" to the world, such as Apache, mail servers, etc, then that is a whole new can of worms that is currently beyond my capabilities.
Pudge

Similar Messages

  • Initiate a dial-up connection or detect whether I am connected to the net

    I want to initiate a dial-up connection from my java program and also to detect whether I am connected to the internet or not.

    well I am developing a proxy server and I want to add
    a feature of dial-up demand that detects the current
    connection status and if not connected to the net then
    call the dial-up dialers in dial-up networking folder
    and then connects to the internetI'd say it works like I wrote earlier:
    Keep yourself in the proxy-server the connections-status.
    If your proxy-server runs on a normal PC, it should be enough to try to connect to the internet.
    But do you need control over multiple dial-up dialers etc., this probably isn't enough.
    If I can find the time, I'll look into it.
    Maybe direct access to the modem is also an option.
    That depends on the modem of course and then you probably also need additional scripting. I guess that's not what you're looking for, but if you need info on that, it's probably also an option to look at a wvdial-script on Linux for connection to the internet. It might also be a problem if you have multiple channels for connecting onto the internet (cable,phone,ASDL etc.)

  • I can not get my mac book air to connect  to the net with my broadband

    How can I get my mac book air to connect to the net with a broadband ?

    Power off the router. Unplug it from the wall. Wait for few minuets.
    Power off the router. Wait a while.
    Connect the router back to to the wall.
    Power the router back on. Wait  until all lights are lit properly. It will take a while.
    Restart the computer.
    Start up in Safe Mode.
    http://support.apple.com/kb/HT1455
    For more on this:
    http://support.apple.com/kb/HT4628

  • HT4356 Mavric doesn't support my 5 years old Big Screen Display, OR? Tried to connect my Mac Book Pro after installing Mavric, The Screen didn't work as before. I could only see the Desktop but not the movies for example. What can I do?

    Mavric doesn't support my 5 years old Big Screen Display, OR? Tried to connect my Mac Book Pro after installing Mavric, The Screen didn't work as before. I could only see the Desktop but not the movies for example.
    <E-mail Edited by Host>

    It appears what happened is the installer though it was looking at a empty drive and just went ahead and installed.
    I of course am assuming here you didn't use Disk Utility to format the drive first before installing, that would wipe out your files and programs for sure.
    So what to do, what to do.
    Well there is hope for you as long as the drive wasn't Filevaulted.
    I'll explain. When a hard drive writes data for the first time to a drive, it starts at the very top and works it's way down.
    When OS X was installed the first time, it was at the top of the drive, unless you upgraded then the upgraded OS X could have been written elsewhere.
    Now when you just reinstalled OS X, the new OS went on the top of the drive, overwriting any data that was there previously, so what was there you have lost forever which is about 8GB or so. If it was the previous OS there, then your more in luck because only the old OS X was overwritten.
    The remaining space on the drive still can have a copy of your files, provided it's not overwritten yet.
    It's because when a hard drive deletes data or reformats, it doesn't remove the data off the drive or overwrites it immediately, it's just made so it's SPACE is available for new files to be written there.
    So technically one can recover the deleted data off a non-encrypted/scrubbed hard drive with special software.
    The way it does this is it reads the 1's and 0's of the files themselves, and through a lot of figuring out, can tell what that file is and what it belongs too.
    So what you will have to do is this:
    Create a data recovery/undelete external boot drive
    or if you don't have the skills, then take it to a local PC/Mac tech and they can do a direct image of the drive and then you can run Data Rescue on it to rebuild your files.

  • I have a macbook and want to watch netflix on my tv, but i don't have an hdmi connection on the tv, just RCA.  I bought the mini-display port to VGA.  What do i need to connect it to RCA input on my TV?

    I have a macbook and want to watch netflix on my tv, but i don't have an hdmi connection on the tv, just RCA.  I bought the mini-display port to VGA.  What do i need to connect it to RCA input on my TV?

    There is a VGA adapter to TV S-Video RCA Out Cable for PC Video.http://www.amazon.com/VGA-Adapter-S-Video-Cable-Video/dp/B000Y7T5UU/ref=sr_1_7?s =electronics&ie=UTF8&qid=1316369974&sr=1-7

  • Open script cannot get connection from the brower helper after 15 seconds.

    Error:
    ===
    Open script cannot get connection from the brower helper after 15 seconds. Do you want to continue waiting for the browser to load?
    Please Note:
    ========
    1. I have tried this only on IE
    2. I am running OATS on a Remote desktop
    Situation:
    ======
    Trying to stop the recording
    Try to get xpath of an object using Inspect Path
    Setup details
    ========
    Windows XP 5.1 Service Pack 3, x86
    OpenScript 12.1.0.1.383
    Internet Explorer 8.0.6001.18702
    FireFox 13.0.1
    Mitigation steps done till now:
    ==================
    1. Disabled windows firewall
    2. Disable XSS filter setting
    3. Restarted the ATS services (3 of them)
    4. Run the Open Script Diagnosis Tool (PS: There are 3 errros even after running it. The 3 errros are listed in the workspace_log log file snippet below...)
    Error in worspace_log:
    =============
    To Change setting:
    Go to Tools > Internet Options and Choose Security Tab
    Select the Zone to modify and Press Custom level
    Find Enable XSS filter Setting - Select Disable and click Ok
    !ENTRY oracle.oats.scripting.diagnosisTool.api.DiagnosisExecutor 4 0 2012-07-09 17:08:52.594
    !MESSAGE Failure found when diagnosing Oracle EBS/Forms Load Testing Forms LT Diagnoser
    !ENTRY oracle.oats.scripting.diagnosisTool.api.DiagnosisExecutor 4 0 2012-07-09 17:08:52.594
    !MESSAGE Did not auto-fix the problem.
    !ENTRY oracle.oats.scripting.diagnosisTool.api.DiagnosisExecutor 4 0 2012-07-09 17:08:52.594
    !MESSAGE Suggestion for fixing: Please change your Java proxy setting to Use Browser Settings
    Aprreciate help on this.

    To resolve this, you need to reconfigure the "Oracle Application Testing Suite Helper Service" (OATSHelperSvr) to start as a user who has privledges to run open script tests rather than the default SYSTEM user.
    Reconfiguring the OATSHelperSvr Service:
    1. Open the services panel (Start > Run > services.msc)
    2. Find the Oracle Application Testing Suite Helper Service
    3. Right Click > Properties then select the Log On Tab
    4. Specify an interactive user that has rights to run OpenScript (test by logging in as that user and running tests):
    5. Click OK
    6. Restart the service after dialogs are closed by Right Click > Restart
    7. You should now repeat this process for the "Oracle Application Testing Suite Agent Service" (eLoadAgentMon) Service (Two services in
    total)
    You should now retry running the test in Oracle Test Manager

  • Can i connect my ipod touch to internet, via a laptop that is connected to the net by a USB modem/dongle

    I have an i pod touch, which i use to facetime friends abroad when i am at home in the uk. I work on a ship and we have very limited broadband and we are not permitted to stream through company PC's. When we are in port what i would like to do is buy a USB modem/dongle (locally, as of now i am in indonesia) for my laptop, and connect to the net using that. Is it possible to make the laptop a wfi hot spot and then connect my touch so i can facetime.
    Is it technically doable?
    How much data does facetime use, and would it be an expensive way to do it?

    Yes. Google for
    setup window 7 (or the OS you have) as wofo hotspot
    See:
    http://www.geeksugar.com/How-Much-Data-Does-iPhone-4S-FaceTime-Use-23562212
    for comparison, according to one test of an iPhone 4 FaceTime call, about 3MB of data were used per minute over 3G service. Using this rule, a one-hour FaceTime phone call would use a scant 0.175GB of data.

  • Mac won't update software or access iTunes shop. Message comes up with 'not connected to the net. Check connections' error. I still have internet access. Changed my Apple ID but no result. Repaired permissions and re-installed operating system.

    Mac won't update software or access iTunes shop. Message comes up with 'not connected to the net. Check connections' error. I still have internet access. Changed my Apple ID but no result. Repaired permissions and re-installed operating system.

    It sounds like you may have multiple problems, but none of them are likely to be caused by malware.
    First, the internet-related issues may be related to adware or a network compromise. I tend to lean more towards the latter, based on your description of the problem. See:
    http://www.adwaremedic.com/kb/baddns.php
    http://www.adwaremedic.com/kb/hackedrouter.php
    If investigation shows that this is not a network-specific issue, then it's probably adware. See my Adware Removal Guide for help finding and removing it. Note that you mention AdBlock as if it should have prevented this, but it's important to understand that ad blockers do not protect you against adware in any way. Neither would any kind of anti-virus software, which often doesn't detect adware.
    As for the other issues, it sounds like you've got some serious corruption. I would be inclined to say it sounds like a failing drive, except it sounds like you just got it replaced. How did you get all your files back after the new drive was installed?
    (Fair disclosure: I may receive compensation from links to my sites, TheSafeMac.com and AdwareMedic.com, in the form of buttons allowing for donations. Donations are not required to use my site or software.)

  • Firefox and Thunderbird do not connect to the net, and they also hang.. What is the Fix?

    ''locking this thread as duplicate, please continue at [https://support.mozilla.org/en-US/questions/1020334 /questions/1020334]''
    In the blink of an eye, both Thunderbird and Firefox have BOTH STOPPED connecting to the Net. let me share with you what I have done... and what has been unsuccessful this far.
    System & Software Pertinents..
    Windows 7 x64 System running a i7 Intel CPU, with 8 GB of RAM and a 500 GB Drive.
    Thunderbird is Version 24.2
    Firefox is Version 27.
    Here are the specific things that I have done, POST problem, to try and solve..
    A) Check firewall settings... BOTH programs are cleared for Bit Passage
    B) Check Anti-Virus.... Anti-Virus Disabled.. UNINSTALLED and Registry Cleaned.. still has the problem persisting..
    C) Deleted and Reinstalled Thunderbird & Firefox Working Directories (without deleting User Profiles)... Problem still persisting..
    D) Created NEW Profile with Profile Mgr in Firefox.. no go...
    E) RAN WHOLE System VIRAL/MALWARE Check... .. No infections..
    F) FRESH REINSTALLS of Thunderbird and Firefox... NO go...
    G) Checked Processes using ENUM and DNS Checks... both check out fine!
    H) OTHER browsers connect... OPERA.. Chrome and IE even... Also, Sea Monkey... but not Firefox.
    In TRYING to create an e.mail account, Thunderbird's Account Creation interface sits there attempting to connect... no connection achieved...
    Any help that you can offer is appreciated!!
    Thank you all, in advance!

    Message to Toad-Hall
    Thank you, for that. To be sure, I tried your suggestion, and selected "System Proxy" as the choice, for Thunderbird and Firefox. Rebooted, and looked at the outcome.. NO Joy.. :-(
    I believe that I shall send the output of the Error Log in my next post. Perhaps someone can point me in the right direction after looking at the Error.log.
    Thank you...Toad Hall. If you think of something else to try, I am ALL ears.. I shall keep trying..

  • Connection Error on starting GUI after installing SAP ABAP Trial Version

    I bought the new edition of ABAP Object recently.
    I tried to install the SAP NetWeaver 2004s ABAP Trial Version that came with the book. After installing the WAS and SAP GUI 7.0.
    Then, I set up the server properties as stated in the CD.
    System Connection Parameters:
    Description: NSP local
    Application Server: localhost
    System Number: 00
    System ID: NSP
    When I try to connect to the server, it gave me the following errors:
    partner '127.0.0.1:sapdp00' not reached.
    Error Text: WSAECONNREFUSED:Connection refused.
    Please advise.
    Thanks.
    Kent

    Durairaj,
    I have installed MS Loopback Adapter, and also point my localhost to the IP:
    10.10.0.10   localhost
    But I still not able to connect to NSP local system.
    The network connection for the Loopback Adapter is showing No or Limited Connection, is that because of this reason?
    Thanks.
    Kent

  • How to connect to the net - high speed

    Hi there, Im writing for a friend of mine who has a iMac... he has his highspeed cable plugged into his iMac, however the net does not work.... on my macbook once I plug in my cable the internet works right away for me.... so Im wondering what he has to do / get for his net to work.... He has a PC that connects to the net via a modem.... however his iMac is downstairs in the basement....
    ne suggestions? Thanks a bunch!

    Usually the modem needs to be reset. It stores information about your computer that sometimes needs to be reset.
    Have him power down the computer, then unplug the power to the modem.
    Wait for a minute, then plug the modem back in and wait for it to initialize itself. Then power up the computer.
    If that doesn't work, have him call his internet provider.
    They can determine if there is anything wrong with the line or the modem.
    Message was edited by: Scott T.

  • A mac, a laptop and a pc can connect to the net, but pc can not conenct to mac or laptop

    It's tricky. I have a wireless wrt54g router working off of a comcast cable modem. I have the mac, the laptop and the pc all wired into it. The mac (os X) and the laptop (windows XP) can see and talk to each other and connect to the net. The pc downstairs (windows XP, same version as laptop) can connect to the net, but not to the mac or the lap top, yet it does show up in the network windows of both. I ran the windows network diagnostic and it told me that Default IP Gateway 192.161.1.1 passed, but IP Address 192.168.1.101 failed. I checked the router and the starting IP Address is 192.161.1.100 The same diagnostic on the laptop tells me that IP Address 192.168.1.108 passed. Can anyone tell me why IP Address 192.168.1.101 failed? As far as I can tell both the laptop and the pc have the same internet settings. Thanks Mark

    Yes, they need to run bonjour for windows.
    The Extreme should also use all short names, no spaces and pure alphanumeric.. it has to meet SMB standard.
    Hard disk should also conform to that.
    Open Windows Explorer and type directly into the address the name or the IP of the AE.
    \\AEName or \\AEIPaddress (replacing with actual name or IP).
    If that fails.. try ping.. open a command windows and ping the AE by name or IP.
    You can be pretty sure any failure is caused by name issues or firewall issues.. turn off all firewalls and force the computers to home location.

  • REP-0309: Unable to connect to the specified database after three attempts.

    Hi,
    I am getting the following error in cloned instance when I developed one custom report (rdf) and copied that report into custom top reports folder. and ran that report using custom responsbility.
    that report query is like this
    select user_name,user_id,start_date,end_date from fnd_user.
    simple report...
    ==========================
    Current system time is 30-JUL-2008 11:36:16
    +-----------------------------
    | Starting concurrent program execution...
    +-----------------------------
    Arguments
    USERID='0'
    APPLLCSP Environment Variable set to :
    XML_REPORTS_XENVIRONMENT is :
    /u01/testora/8.0.6/guicommon6/tk60/admin/Tk2Motif_UTF8.rgb
    XENVIRONMENT is set to: /u01/testora/8.0.6/guicommon6/tk60/admin/Tk2Motif_UTF8.rgb
    Current NLS_LANG and NLS_NUMERIC_CHARACTERS Environment Variables are :
    American_America.UTF8
    Enter Password:
    Enter Password:
    Enter Password:
    REP-0501: Unable to connect to the specified database.
    ORA-01017: invalid username/password; logon denied
    REP-0501: Unable to connect to the specified database.
    ORA-12154: TNS:could not resolve service name
    REP-0501: Unable to connect to the specified database.
    ORA-12154: TNS:could not resolve service name
    REP-0309: Unable to connect to the specified database after three attempts. Access denied.
    Report Builder: Release 6.0.8.25.0 - Production on Wed Jul 30 11:36:16 2008
    (c) Copyright 1999 Oracle Corporation. All rights reserved.
    Enter Username: Enter Username:
    Start of log messages from FND_FILE
    End of log messages from FND_FILE
    Program exited with status 1
    Concurrent Manager encountered an error while running Oracle*Report for your concurrent request 779500.
    Review your concurrent request log and/or report output file for more detailed information.
    Executing request completion options...
    Finished executing request completion options.
    Concurrent request completed
    Current system time is 30-JUL-2008 11:36:17
    =========================================
    what might be the problem...
    I developed the report in 10g Report Builder. and moved to 1.5.10.2 instance... ran that report in my report builder using apps user and..it is running fine in my report builder.

    hi bsubbu
    your password of custom application user schema at database level should be similar with the password at application level
    for instance your custom application schema name and password is xxgis/xxgis , we register this schema at application site by this navigation
    security> oracle > register >database username (xxgis) > password (xxgis)
    here you might have change your custom application user's password at database level using
    alter user xxgis identified by newpassword;
    change this user password at application site also :
    security> oracle > register> database username (xxgis) > password (newpassword)
    i understand this from the document
    Regards
    Message was edited by:
    user608721

  • Cannot connect to the net using my wi fi on my blackberry curve

    hi there, i cannot connect to the net using my wi fi on my blackberry curve 8520. wen i go in to settings and click on to manage connections it as a tick at the side of wi fi  and says TALKTALK- 3B0BD4 and a tick at the end. if i turn my mobile network of my signal goes,  and when i try to connect to the net a message comes up saying  unable to connect to the internet, please try again later. if the problem persists please contact your service provider.when i try to set up a new wi fi connection and scan for networks it comes up with TALKTALK-3B0BD4 and undernieth it says connected and the signal is full at the side of it? many thanks maria

    i cannot browse the internet thru wifi using bb curve 9360..when i checked  my wifi settings it  says that im already connected but when im trying to browse it says cannot connect contact your service provider

  • Connection failure when connecting to the net with...

    I hope someone can help me. I have got Nokia PC suite on my PC. I often use it to connect to the net. Just recently I had a few viruses on my pc and now since they have been cleaned off I keep getting a connection failure when I try to connect. I have tried uninstalling and reinstalling my software but nothing seems to help. I know it is something to do with my pc as I have tried four different phones that do work on other pc's, just not this one.
    I have checked to make sure all the modem settings are right and that the phone is detected as a modem.
    What should I try that might help solve this??
    Thanks
    Katherine

    Make sure you have entered the access point in the one touch access settings, enter the settings maually and try to connect.
    If a reply has solved your problem click Accept as solution button, doing it will help others know the solution. Thanks.

Maybe you are looking for

  • At times when we try to open Firefox we get a message it is already running and have to restart comp . Why is this ?It happens with all users . Thank you

    We have gone on our comp after a while and tried to open Firefox . When we do we get a message "Firefox is running close app or restart comp . " Now the thing is I was on it earlier and closed it with the close button . Then say checked mail , or loo

  • Using iPod as encrypted disk for G4 Backup

    i have created an encrypted disk image on my iPod for backing up my G4 desktop folder. works like a charm. however, OSX limits the size of this disk image to 500MB when it is created using Disk Utility. that is unfortunate since my desktop folder is

  • Infotype changes

    Hi, If i select any pernr then the report should display the values that are not filled for this pernr in all the infotypes based on the action performed on this pernr on any given date.

  • How to resize the itunes window in mavericks?

    How can I resize the itunes window in mavericks if the window is larger than the screen? Since the window is larger than the screen I cannot use the scroll-bar anymore properly... And since resizing is in the lower right corner that leaps out of the

  • Keep running low on memory

    I keep getting an error message saying "Force Quit Applications" when the applications I am running are using nowhere near the amount of memory I have.  I have an 8 GB 1333 MHx DDR3 Mac Book Pro running Mac OS X Lion 10.7.5.  When I look in Activity