Bug 51993 - firewalls block X11 but not VNC.
firewalls block X11 but not VNC.
Status: CLOSED RAWHIDE
Product: Red Hat Linux
Classification: Retired
Component: gnome-lokkit (Show other bugs)
9
i386 Linux
medium Severity high
: ---
: ---
Assigned To: Bill Nottingham
Aaron Brown
:
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2001-08-17 17:08 EDT by Ed McKenzie
Modified: 2014-03-16 22:22 EDT (History)
1 user (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2003-08-04 17:06:11 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)
Patch 1 to ipchains writer (675 bytes, patch)
2003-06-27 15:54 EDT, Shawn Walker
no flags Details | Diff
Patch 2 to spec file to apply patch 1 (618 bytes, patch)
2003-06-27 15:54 EDT, Shawn Walker
no flags Details | Diff

  None (edit)
Description Ed McKenzie 2001-08-17 17:08:29 EDT
The medium security level in lokkit blocks the X11 ports on 6000:6009, but
it doesn't block VNC ports on 5800:5809 and 5900:5909.  I'd hope it would,
since a.) VNC is essentially a cleartext protocol, and b.) one can do more
damage via VNC than via an unprotected X port.
Comment 1 Glen Foster 2001-08-20 15:22:41 EDT
We (Red Hat) should really try to fix this before next release.
Comment 2 Shawn Walker 2003-06-27 15:54:01 EDT
Created attachment 92658 [details]
Patch 1 to ipchains writer
Comment 3 Shawn Walker 2003-06-27 15:54:46 EDT
Created attachment 92659 [details]
Patch 2 to spec file to apply patch 1
Comment 4 Bill Nottingham 2003-08-04 17:06:11 EDT
Fixed differently in redhat-config-securitylevel-1.2.0-1.

Note You need to log in before you can comment on or make changes to this bug.