summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--debian/vyatta-cfg-system.postinst.in9
1 files changed, 9 insertions, 0 deletions
diff --git a/debian/vyatta-cfg-system.postinst.in b/debian/vyatta-cfg-system.postinst.in
index 21d7ff32..498e431f 100644
--- a/debian/vyatta-cfg-system.postinst.in
+++ b/debian/vyatta-cfg-system.postinst.in
@@ -80,8 +80,17 @@ EOF
cp $sysconfdir/$f /etc/ssh/$f
fi
done
+
+ # block external rpc access
+ if ! grep -q "^portmap" /etc/hosts.deny
+ then cat <<-EOF >>/etc/hosts.deny
+ # Disable rpc access from other hosts
+ portmap: ALL
+ EOF
+ fi
fi
+
# update crontab for logrotate
grep -v logrotate /etc/crontab>/etc/crontab.$$
echo "*/10 * * * * root /usr/sbin/logrotate /etc/logrotate.conf" >> /etc/crontab.$$