Difference between revisions of "Host Computer Configuration"

From New IAC Wiki
Jump to navigation Jump to search
Line 86: Line 86:
  
 
== Security/Firewall ==
 
== Security/Firewall ==
=== Turn off iptables
+
=== Turn off iptables===
  
 
  /sbin/service iptables stop
 
  /sbin/service iptables stop
  
 
[http://www.iac.isu.edu/mediawiki/index.php/Data_Acquisition return to DAQ page]
 
[http://www.iac.isu.edu/mediawiki/index.php/Data_Acquisition return to DAQ page]

Revision as of 23:55, 22 October 2007

Install CentOs

Install tftp onto the Linux host computer

For CentOS I used yum

yum install tftp
yum install tftp-server

then I looked in the file

/etc/xinitd.d/tftp
  1. default: off
  2. description: The tftp server serves files using the trivial file transfer \
  3. protocol. The tftp protocol is often used to boot diskless \
  4. workstations, download configuration files to network-aware printers, \
  5. and to start the installation process for some operating systems.
service tftp

{

       socket_type             = dgram
       protocol                = udp
       wait                    = yes
       user                    = root
       server                  = /usr/sbin/in.tftpd
       server_args             = -s /tftpboot
       disable                 = yes
       per_source              = 11
       cps                     = 100 2
       flags                   = IPv4

}

to see how tftp was configured by default. The file tell me that the tftp files should be located in the subdirectory

/tftpboot


turn the server on

/sbin/chkconfig tftp on

Set up rsh

turn on rsh

use yum to install the rsh server.

yum install rsh-server

edit /etc/xinitd.d/rlogin and rsh to allow server

# default: on
# description: rlogind is the server for the rlogin(1) program.  The server \
#       provides a remote login facility with authentication based on \
#       privileged port numbers from trusted hosts.
service login
{
       socket_type             = stream
       wait                    = no
       user                    = root
       log_on_success          += USERID
       log_on_failure          += USERID
       server                  = /usr/sbin/in.rlogind
       disable                 = no
}

Now reload xinitd

/etc/init.d/xinetd reload


then add a file called ".rshosts" to the daq account with the IP addresses and usernames

~ >less .rhosts
134.50.3.216 roc1
134.50.3.216 daq
134.50.3.210 daq

You Must set the .rhosts permissions exaclty as below otherwise rsh will not work

chmod 644 .rhosts

test to see if rsh is running

rsh -l daq daq1 ls


Security/Firewall

Turn off iptables

/sbin/service iptables stop

return to DAQ page