On Friday 25 June 2004 5:01 pm, Spiro Azkoul wrote: > Can anyone think of a reason to simple block SUN RPC via iptables rather > than simply stopping the service if it is a mail/pop/imap/web server? Disable and uninstall any service you do not require on a machine. If you want the machne to run mail/pop/imap/web, then there should be no ftp server, no telnet daemon, no finger service, no daytime service, no portmapper (rpc), no file sharing..... You might want to leave sshd running on the system, though :) Regards, Antony. -- "The joy of X!!?? I've always hated compiling graphical shite. You have a 10 line program, and it ends up depending on the entire known universe." - Philip Hands Please reply to the list; please don't CC me.