안녕하세요? 요즘 열심히 서버 세팅을 하고 있는 넘입니다.
이 서버는 웹서버, 메일서버,그리고 ftp 서버로 사용할 것이며 그 외의
의도로는 아직 고려하지 않고 있습니다.
서버를 관리하면서 보안이라는 문제를 생각하지 않을 수 없는데요...
저는 기본적으로 '잘 모르면 아예 막아버리자'파입니다.
제가 제 서버에 NMAP 라는 프로그램으로 스캔한 결과를 보여드릴께요..
혹시 이걸 보시고 제가 취할 수 있는 것이 뭔지 말씀해 주세요...
nmap 옵션으론 '-sS -O -v' 를 줬고, IP는 숨겼습니다.^^
그럼, 고맙습니다.
-----------------------------------------
Starting nmap V. 2.53 by fyodor at insecure.org ( www.insecure.org/nmap/ )
Host (xxx.xxx.xxx.xxx) appears to be up ... good.
Initiating SYN half-open stealth scan against (xxx.xxx.xxx.xxx)
Adding TCP port 1024 (state open).
Adding TCP port 110 (state open).
Adding TCP port 113 (state open).
Adding TCP port 1032 (state open).
Adding TCP port 80 (state open).
Adding TCP port 3306 (state open).
Adding TCP port 111 (state open).
Adding TCP port 25 (state open).
Adding TCP port 1030 (state open).
Adding TCP port 587 (state open).
Adding TCP port 1017 (state open).
Adding TCP port 21 (state open).
Adding TCP port 6000 (state open).
Adding TCP port 98 (state open).
Adding TCP port 143 (state open).
Adding TCP port 109 (state open).
The SYN scan took 0 seconds to scan 1523 ports.
For OSScan assuming that port 21 is open and port 1 is closed and neither are firewalled
Interesting ports on (xxx.xxx.xxx.xxx):
(The 1507 ports scanned but not shown below are in state: closed)
Port State Service
21/tcp open ftp
25/tcp open smtp
80/tcp open http
98/tcp open linuxconf
109/tcp open pop-2
110/tcp open pop-3
111/tcp open sunrpc
113/tcp open auth
143/tcp open imap2
587/tcp open submission
1017/tcp open unknown
1024/tcp open kdm
1030/tcp open iad1
1032/tcp open iad3
3306/tcp open mysql
6000/tcp open X11
TCP Sequence Prediction: Class=random positive increments
Difficulty=1559643 (Good luck!)
Sequence numbers: E48843B5 E459DE8F E436C6E1 E4497C89 E4A350C3 E4DB300A
Remote operating system guess: Linux 2.1.122 - 2.2.14
Nmap run completed -- 1 IP address (1 host up) scanned in 3 seconds--멋진 .......