B.5 DaemonsWhen you are building your firewall, you may wish to replace your standard daemons with the daemons described below. B.5.1 wuarchive ftpd
The wuarchive FTP daemon offers many features and security enhancements, such as per-directory message files shown to any user who enters the directory, limits on number of simultaneous users, and improved logging and access control. These enhancements are specifically designed to support anonymous FTP . B.5.2 CERN httpdCERN is the European Laboratory for Particle Physics, in Switzerland, and is "the birthplace of the World-Wide Web." The CERN HTTP daemon is one of several common HTTP servers on the Internet. What makes it particularly interesting from a firewalls point of view are its proxying and caching capabilities. (We describe these in Chapter 7 .) B.5.3 portmapportmap , from Wietse Venema, is a portmapper replacement which offers access control in the style of the TCP Wrapper program, described in the next section. B.5.4 gatedgated is a routing daemon that allows you to specify the hosts from which you'll accept routing information. B.5.5 Andrew File System ( AFS )
AFS is a network filesystem that is more suitable for use across wide area networks such as the Internet than traditional LAN -oriented network filesystem protocols such as NFS . From the AFS document:
|
|