[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[cobalt-security] Just a query
- Subject: [cobalt-security] Just a query
- From: Alan MacDonald <webmaster@xxxxxxxxxxxxxxx>
- Date: Wed, 10 Jul 2002 13:31:22 +0100
- List-id: Mailing list for users to address network security on Cobalt products. <cobalt-security.list.cobalt.com>
Hi,
On my regular run through the server, while logged in as root, I got this,
should I be worried? I mean, I am logged in as root, and it says it won't
show all processes, unless I'm root?
[root root]# netstat -anp
(Not all processes could be identified, non-owned process info
will not be shown, you would have to be root to see it all.)
Active Internet connections (servers and established)
Proto Recv-Q Send-Q Local Address Foreign
Address State PID/Program name
tcp 0 0
217.199.174.216:80 159.134.148.245:2544 ESTABLISHED
631/httpd
tcp 0 0
217.199.174.216:80 159.134.148.245:2543 ESTABLISHED
630/httpd
tcp 0 464
217.199.174.216:22 159.134.148.245:2542 ESTABLISHED
743/sshd
tcp 0 340
217.199.174.216:80 159.134.148.245:2541 CLOSE -
tcp 0 0
217.199.174.216:80 159.134.148.245:2539 CLOSE -
tcp 0 0
217.199.174.216:80 213.120.56.41:43081 TIME_WAIT -
tcp 0 0
0.0.0.0:3306 0.0.0.0:* LISTEN 551/mysqld
tcp 0 1
217.199.174.216:1027 209.67.50.203:25 SYN_SENT
472/g6623JR27152 ap
tcp 0 1
217.199.174.216:1026 66.106.197.180:25 SYN_SENT
475/g6852mW31301 ma
tcp 0 0
0.0.0.0:25 0.0.0.0:* LISTEN 469/sendmail:
accep
tcp 0 0
0.0.0.0:80 0.0.0.0:* LISTEN 436/httpd
tcp 0 0
217.199.174.216:443 0.0.0.0:* LISTEN 436/httpd
tcp 0 0
0.0.0.0:81 0.0.0.0:* LISTEN
407/httpd.admsrv
tcp 0 0
0.0.0.0:444 0.0.0.0:* LISTEN
407/httpd.admsrv
tcp 0 0
0.0.0.0:22 0.0.0.0:* LISTEN 395/sshd
tcp 0 0
217.199.174.217:53 0.0.0.0:* LISTEN 390/named
tcp 0 0
217.199.174.216:53 0.0.0.0:* LISTEN 390/named
tcp 0 0
127.0.0.1:53 0.0.0.0:* LISTEN 390/named
tcp 0 0
0.0.0.0:143 0.0.0.0:* LISTEN 361/inetd
tcp 0 0
0.0.0.0:110 0.0.0.0:* LISTEN 361/inetd
tcp 0 0
0.0.0.0:21 0.0.0.0:* LISTEN 361/inetd
udp 0 0
0.0.0.0:1024 0.0.0.0:* 390/named
udp 0 0
217.199.174.217:53 0.0.0.0:* 390/named
udp 0 0
217.199.174.216:53 0.0.0.0:* 390/named
udp 0 0
127.0.0.1:53 0.0.0.0:* 390/named
raw 0 0
0.0.0.0:1 0.0.0.0:* 7 -
raw 0 0
0.0.0.0:6 0.0.0.0:* 7 -
Active UNIX domain sockets (servers and established)
Proto RefCnt Flags Type State I-Node PID/Program
name Path
unix 3 [
] DGRAM 64 123/syslogd /dev/log
unix 0 [ ACC
] STREAM LISTENING 266 390/named /var/run/ndc
unix 0 [ ACC
] STREAM LISTENING 420 507/postmaster /tmp/.s.PGSQL.5432
unix 0 [ ACC
] STREAM LISTENING 469 551/mysqld
/var/lib/mysql/mysql.sock
unix 0 [ ACC
] STREAM LISTENING 808 753/sshd
/tmp/ssh-MfLZu753/agent.753
unix 1 [ W ] STREAM CONNECTED 805 743/sshd
unix 1 [ ] STREAM CONNECTED 804 753/sshd
unix 0 [ ] DGRAM 364 469/sendmail: accep
unix 0 [ ] DGRAM 264 390/named
unix 0 [ ] DGRAM 74 132/klogd
Any ideas?
rgds
Alan MacDonald
--
Webmaster - aceposition.com
webmaster@xxxxxxxxxxxxxxx
+353 51 855 939