Programming Tutorials Browser Tutorials Articles Struts Tutorials Hibernate Tutorials

Search: 

  Tutorial: Locking Down Server Access to SSH With SunScreen Software (Community Submission)

This Tech Tip shows how to lock down a server to a group of client machines, allowing SSH access only, using SunScreen software.

Tutorial Details:

Locking Down Server Access to SSH With SunScreen Software
Laurence Moughan, February 2005

The goal here is to lock down a server to a group of client machines, allowing SSH access only (for this example). This can be done by means of TCP wrappers, but we are using Sun\'s firewall product known as SunScreen software.

Deploy SunScreen packages from the Solaris 8 OS CD-ROM 2 of 2. Packages are found under Products/EA.

First you need to start SunScreen admin tool in edit mode and specify the name of a ruleset to create.

Hostname# cd /opt/SUNWicg/SunScreen/bin
hostname# ./ssadm edit local

This will create a ruleset named local to edit.

Loaded common objects from Registry version 10
Loaded policy from local version 1

Then you need to add objects for the local machine called self and the client machines that require access, where xxx.xxx.xxx.xxx is the IP of the machines.

Edit>Add ADDRESS \"self\" xxx.xxx.xxx.xxx
Edit>Add ADDRESS \"client1\" xxx.xxx.xxx.xxx
Edit>Add ADDRESS \"client2\" xxx.xxx.xxx.xxx

Now create an address group -- this is simplest way of applying a set of clients to a single rule.

add ADDRESS sshgroup {client1 client2 etc }

Now create a rule (SSH as a service already exists and does not need creation).

#add RULE \"ssh\" \"sshgroup\" \"self\" ALLOW

Now verify the configuration:

Edit>Verify
Edit>Configuration verified successfully (not activated).

And save the configuration.

Edit>save
Saved common objects to Registry version 1
Saved policy to local version 1

Quit out of edit, and then activate the ruleset.

Edit>quit

Hostname#./ssadm activate local

Now only your group of clients will be able to access the machine using SSH; no other access will be allowed


 

Read Tutorial at: Click here to view the tutorial

Rate Tutorial:
Locking Down Server Access to SSH With SunScreen Software (Community Submission)

View Tutorial:
Locking Down Server Access to SSH With SunScreen Software (Community Submission)

Related Tutorials:

Displaying 1 - 50 of about 2343 Related Tutorials.

Open Source Community
software (F/OSS), we are attempting to establish a community in which information... branch to the open-source community, calling for a sit-down to discuss how... source community creating software for dispersed data storage. Cleversafe
 
Locking Issues
;    External locking is performed when server and other programs... by the server and it does not involve any other programs. Table ? level locking... processes. External locking is performed when server and other programs lock
 
MySQL Transactional and Locking Statements
MySQL Transactional and Locking Statements, Start Transaction  Commit... and Locking Statements         ... isolation level. The RELEASE clause is used for disconnecting the server
 
VoIP Server
client and server software and best of all Teamspeak is free of charge to non... simply called Office Communications Server 2007, the software integrates voice... VoIP Server VoIP Server   
 
Open Source E-mail Server
;    Open-source server software Sun is considering making its Java Enterprise System server software open-source, John Loiacono, Sun's executive... their needs. Darwin Streaming Server is only supported by the open source community
 
EJB Container or EJB Server
EJB Container or EJB Server EJB Container or EJB Server           ...;   An EJB container is nothing but the program that runs on the server
 
Best Open Source Software
Best Open Source Software Best Open Source Software Best Open Source Open source software. Often (and sometimes incorrectly) called freeware, shareware, and "source code," open source software has been
 
VoIP Billing Software
VoIP Billing Software VoIP Billing Software...;  VoiceMaster VoIP Billing software VoiceMaster... billing software:- * Standard and Advanced VoIP Billing Functionality 
 
VoIP Management Software
upgraded software suite to the growing VoIP service provider community. By its nature... VoIP Management Software VoIP Management Software...;   VoIP Routing and VoIP Management Software Your
 
Open Source Application Server
to the notion of an application server, software that gives a Web site its ability to scale... is based on open source software and is only supported on Red Hat's own Linux server... Community Edition (WAS CE) is a lightweight J2EE application server built
 
VoIP Software Phones
VoIP Software Phones VoIP Software Phones VoIP Software Phones VoIP Software Phones are basically a software for making VoIP calls using computer. Software phones are usually less expensive and it offers
 
Apache Geronimo Application server Tutorial
JavaEE( or J2EE, old name) application server. It is so much capable that it can... JavaEE application server which uses Industry respected and Industry proven... costs you a penny. It is a J2EE 1.4 certified application server, however
 
Free VoIP Software Development Libraries
. VOCAL provides the development community with software and tools needed... Free VoIP Software Development Libraries Free VoIP Software Development Libraries      
 
Open Source Knowlegde base Software
software systems like Linux operating system, Apache Web Server, StarOffice Suite... Open Source Knowledge base Software Open Source Knowlegde base Software Knowledgebase Knowledge base is an online resource
 
Beginner Guide to Linux Server
Beginner Guide to Linux Server Beginner Guide to Linux Server        ... Linux as it provides low costs software for them. Earlier Linux used to be difficult
 
Beginner Guide to Linux Server
Beginner Guide to Linux Server Beginner Guide to Linux Server Introduction Linux is know for its security, performance... software for them. Earlier Linux used to be difficult to install and configure
 
Open Source Defination
server software -- the web server market.      ... that some types of software seem to facilitate "bottom-up" community development... are contrasted to the less vibrant collectivities formed by "top-down" software
 
Open Source Bloggers Software written in Java

 
MySQL Access Control
identity by supplying the correct password. If not, the server denies access to you... MySQL Access Control MySQL Access Control  ...; MySQL Security Access Control Most users concentrate on MySQL's databases
 
Deployer
properly closing the ssh connection to the server. About Deployer Deployer is an Eclipse plug-in to deploy files in remote servers, using SSH. It uses SFtp protocol...). Deployer was originaly coded to aviod the manual upload of jar files to my server every
 
Open Source Accounting Software
Open Source Accounting Software Open Source Accounting Software Open Source Accounting Software TurboCASH .7 is an open source... software providers typically release a low-end product for ?100 that excludes
 
Java server Faces Books
Java server Faces Books Java server Faces...;     Java server Faces...; Core Java server Faces This is the support web
 
Web Server
contain the HTTP server (to access and store the web pages and files), SMTP... Introduction to Web Server,What is Web Server,Web Server Introduction Web Server Introduction    
 
Java Server Faces (JSF) Tutorial
JSF Tutorial,JSF Tutorials,Java Server Face,Java Server Faces,Online JSF Tutorial JSF - Java Server Faces Tutorials...;  Complete Java Server Faces (JSF) Tutorial - JSF Tutorials
 
SME Server 7.0 Pre 2 has been released now
to expensive and complex proprietary software. SME Server features  1... SME Server 7.0 Pre 2 has been released now SME Server 7.0 Pre 2 has been released now SME Server 7.0 pre-release 2
 
Introduction to Server Side Programming
machines (called clients) can access the server programs. New... at the server side without having to bother about clients? hardware or software... Server Side Introduction,Server Side Programming Intro,Introduction
 
Application Server
Application Server Application Server...; An application server is an application program that accepts connections in order... server, database server, backup server, print server, mail server, web server
 
Web-CAT Electronic Submission Plug-in
Web-CAT Electronic Submission Plug-in Web-CAT Electronic Submission Plug-in      ...;        The electronic submission
 
jQuery Drop Down Menu
jQuery Drop Down Menu jQuery Drop Down Menu...; In this JQuery tutorial we will develop a program  to make Drop Down menu Steps to develop the Drop Down menu . Step 1:        
 
Access all the fields from table through JSP
Access all the fields from table through JSP Access all the fields from table through JSP   ... in Tomcat. Start tomcat server and type url 'http://localhost:8080/user/welcome
 
VoIP Software
out its call-handling software, known as Office Communications Server. Chris... VoIP Software VoIP Software   ... you change to using VoIP you can install software to do the telephony work
 
Differentiate between Web Server and Application Server
. An application server providers allows the client to access the business logic for use... Differentiate between Web Server and Application Server Differentiate between Web Server and Application Server
 
Open Source projects
-source software when using existing search engines, directories and community... software community needed. My aim for this project is to help raise $500,000... Open Source Project Mono provides the necessary software to develop and run
 
Free GPS Software
Free GPS Software Free GPS Software...; GPS Aprs Information APRS is free GPS software for use with packet radio...;      Introduction of Free GPS Software I took
 
Watch Out For Spyware Programs That Slows Down Your Computer System
Watch Out For Spyware Programs That Slows Down Your Computer System Watch Out For Spyware Programs That Slows Down... the internet. Spyware software is usually attached to some kind of free software
 
Watch Out For Spyware Programs That Slows Down Your Computer System
Watch Out For Spyware Programs That Slows Down Your Computer System Watch Out For Spyware Programs That Slows Down... the internet. Spyware software is usually attached to some kind of free software
 
Introduction to Apache Geronimo application Server
Server            ...;  Apache Geronimo application server is fully JEE certified open source application server in the market. Apache Geronimo project uses best open source
 
Open Source Outlook
the business benefits of using open source software - on the server, for the database... are still locked into their propietary, vertically locked down world; we need... access with a cell phone. Then you might integrate that calendar with, say, GPS
 
Client-Server Architecture
Client-Server Architecture Client-Server...;     Client-server architecture can be considered as a network environment that exchanges information between a server machine 
 
Working with Tomcat Server
- Apache Tomcat  Server is free software available for download... Working with Tomcat Server Working with Tomcat Server         
 
Tutorials - Java Server Pages Technology
JSP Tutorials - Java Server Pages Technology Tutorial Tutorials - Java Server Pages Technology    ... with a robust framework for creating dynamic web content on the server
 
Tutorials - Java Server Pages Technology
JSP Tutorials - Java Server Pages Technology Tutorial Tutorials - Java Server Pages Technology    ... with a robust framework for creating dynamic web content on the server
 
tinysofa classic server 2.0 Update 4 has been released now
to a friendly and helpful community of tinysofa enterprise server users. In case... tinysofa classic server 2.0 Update 4 has been released now tinysofa classic server 2.0 Update 4 has been released
 
IBM WebSphere Application Server Training
Application Server is the foundation of the IBM WebSphere software platform... IBM WebSphere Application Server Training IBM WebSphere Application Server Training     
 
Malicious Advertising
and youve agreed for them to access information about you. Many software products... cant drive down the street without coming across an ad, either a billboard suspended over a road or a large poster plastered down the side of a bus. If you walk
 
MIT Open Source
, maintaining and tracking Open Source software that is developed within the MIT community. This Source Forge project is intended to hold larger software... advocate using high quality free software as opposed to scaled-down versions of more
 
Downloading and Installing WebLogic server 6.0
Downloading and Installing WebLogic server 6.0 Downloading and Installing WebLogic server 6.0... how to Install Web Logic 6.1 Server on windows machine. You can
 
Open Source E-mail
-source server software Sun is considering making its Java Enterprise System server software open-source, John Loiacono, Sun's executive vice president... of its standards-based e-mail server software, which will support mobile e-mail
 
Amzi! Prolog + Logic Server
Eclipse Plugin-Language Amzi! Prolog + Logic Server...;     Amzi! specializes in software, services..., Products and Services. Amzi! Prolog + Logic Server ? Embeddable
 
Tutorial - Sun Java System Application Server Platform Edition
sun java system application server platform,sun java system application server platform 9 Sun Java System Application Server... Application Server Platform version 9 for the deployment and testing of our
 
Site navigation
 

 

Send your comments, Suggestions or Queries regarding this site at roseindia_net@yahoo.com.

Copyright © 2006. All rights reserved.