The Community Forums

Interact with an entire community of cPanel & WHM users!
  1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Which services to disable/delete

Discussion in 'Security' started by fcmgadmin, Mar 14, 2010.

  1. fcmgadmin

    fcmgadmin Member

    Joined:
    May 1, 2009
    Messages:
    7
    Likes Received:
    0
    Trophy Points:
    1
    Which services to disable/delete help please

    This is for a production/shared server and I was just wondering if the services that are turned off are best removed as well or is it OK to just leave them off. Also is there any that I have running that should be off. many thanks.

    Code:
    NetworkManager  0:off   1:off   2:off   3:off   4:off   5:off   6:off
    acpid           0:off   1:off   2:on    3:on    4:on    5:on    6:off
    auditd          0:off   1:off   2:on    3:on    4:on    5:on    6:off
    autofs          0:off   1:off   2:off   3:on    4:on    5:on    6:off
    avahi-daemon    0:off   1:off   2:off   3:off   4:off   5:off   6:off
    avahi-dnsconfd  0:off   1:off   2:off   3:off   4:off   5:off   6:off
    bandmin         0:off   1:off   2:on    3:on    4:on    5:on    6:off
    conman          0:off   1:off   2:off   3:off   4:off   5:off   6:off
    cpanel          0:off   1:off   2:off   3:on    4:on    5:on    6:off
    cpuspeed        0:off   1:on    2:on    3:on    4:on    5:on    6:off
    crond           0:off   1:off   2:on    3:on    4:on    5:on    6:off
    csf             0:off   1:off   2:on    3:on    4:on    5:on    6:off
    dnsmasq         0:off   1:off   2:off   3:off   4:off   5:off   6:off
    dovecot         0:off   1:off   2:on    3:on    4:on    5:on    6:off
    dund            0:off   1:off   2:off   3:off   4:off   5:off   6:off
    exim            0:off   1:off   2:on    3:on    4:on    5:on    6:off
    fastmail        0:off   1:off   2:on    3:on    4:on    5:on    6:off
    filelimits      0:off   1:off   2:on    3:on    4:on    5:on    6:off
    firstboot       0:off   1:off   2:off   3:on    4:off   5:on    6:off
    haldaemon       0:off   1:off   2:off   3:on    4:on    5:on    6:off
    hidd            0:off   1:off   2:off   3:off   4:off   5:off   6:off
    httpd           0:off   1:off   2:off   3:on    4:off   5:on    6:off
    ibmasm          0:off   1:off   2:off   3:off   4:off   5:off   6:off
    ip6tables       0:off   1:off   2:off   3:off   4:off   5:off   6:off
    ipaliases       0:off   1:off   2:on    3:on    4:on    5:on    6:off
    ipmi            0:off   1:off   2:off   3:off   4:off   5:off   6:off
    iptables        0:off   1:off   2:on    3:on    4:on    5:on    6:off
    irda            0:off   1:off   2:off   3:off   4:off   5:off   6:off
    irqbalance      0:off   1:off   2:on    3:on    4:on    5:on    6:off
    kdump           0:off   1:off   2:off   3:off   4:off   5:off   6:off
    kudzu           0:off   1:off   2:off   3:on    4:on    5:on    6:off
    lfd             0:off   1:off   2:on    3:on    4:on    5:on    6:off
    lvm2-monitor    0:off   1:on    2:on    3:on    4:on    5:on    6:off
    mcstrans        0:off   1:off   2:on    3:on    4:on    5:on    6:off
    mdmonitor       0:off   1:off   2:on    3:on    4:on    5:on    6:off
    mdmpd           0:off   1:off   2:off   3:off   4:off   5:off   6:off
    messagebus      0:off   1:off   2:off   3:on    4:on    5:on    6:off
    microcode_ctl   0:off   1:off   2:on    3:on    4:on    5:on    6:off
    multipathd      0:off   1:off   2:off   3:off   4:off   5:off   6:off
    munin-node      0:off   1:off   2:on    3:on    4:on    5:on    6:off
    mysql           0:off   1:off   2:on    3:on    4:on    5:on    6:off
    named           0:off   1:off   2:on    3:on    4:on    5:on    6:off
    netconsole      0:off   1:off   2:off   3:off   4:off   5:off   6:off
    netfs           0:off   1:off   2:off   3:on    4:on    5:on    6:off
    netplugd        0:off   1:off   2:off   3:off   4:off   5:off   6:off
    network         0:off   1:off   2:on    3:on    4:on    5:on    6:off
    nfs             0:off   1:off   2:off   3:off   4:off   5:off   6:off
    ntpd            0:off   1:off   2:on    3:on    4:on    5:on    6:off
    oddjobd         0:off   1:off   2:off   3:off   4:off   5:off   6:off
    pand            0:off   1:off   2:off   3:off   4:off   5:off   6:off
    pcscd           0:off   1:off   2:off   3:off   4:off   5:off   6:off
    proftpd         0:off   1:off   2:on    3:on    4:on    5:on    6:off
    psacct          0:off   1:off   2:off   3:off   4:off   5:off   6:off
    rawdevices      0:off   1:off   2:off   3:on    4:on    5:on    6:off
    rdisc           0:off   1:off   2:off   3:off   4:off   5:off   6:off
    readahead_early 0:off   1:off   2:on    3:on    4:on    5:on    6:off
    readahead_later 0:off   1:off   2:off   3:off   4:off   5:on    6:off
    restorecond     0:off   1:off   2:on    3:on    4:on    5:on    6:off
    ror             0:off   1:off   2:on    3:on    4:on    5:on    6:off
    rpcgssd         0:off   1:off   2:off   3:on    4:on    5:on    6:off
    rpcsvcgssd      0:off   1:off   2:off   3:off   4:off   5:off   6:off
    saslauthd       0:off   1:off   2:off   3:off   4:off   5:off   6:off
    securetmp       0:off   1:off   2:on    3:on    4:on    5:on    6:off
    setroubleshoot  0:off   1:off   2:off   3:on    4:on    5:on    6:off
    smartd          0:off   1:off   2:on    3:on    4:on    5:on    6:off
    sshd            0:off   1:off   2:on    3:on    4:on    5:on    6:off
    syslog          0:off   1:off   2:on    3:on    4:on    5:on    6:off
    sysstat         0:off   1:off   2:on    3:on    4:off   5:on    6:off
    tcsd            0:off   1:off   2:off   3:off   4:off   5:off   6:off
    winbind         0:off   1:off   2:off   3:off   4:off   5:off   6:off
    wpa_supplicant  0:off   1:off   2:off   3:off   4:off   5:off   6:off
    xinetd          0:off   1:off   2:off   3:on    4:on    5:on    6:off
    yum-updatesd    0:off   1:off   2:on    3:on    4:on    5:on    6:off
     
    #1 fcmgadmin, Mar 14, 2010
    Last edited: Mar 14, 2010
  2. Spiral

    Spiral BANNED

    Joined:
    Jun 24, 2005
    Messages:
    2,023
    Likes Received:
    7
    Trophy Points:
    0
    I see "CSF" among your list of services .....

    In that case, just go into the "Check Server Security" screen in your CSF Firewall and that will give you a pretty good list of services to disable on towards the bottom of that screen.
     
  3. B12Org

    B12Org Well-Known Member

    Joined:
    Jul 15, 2003
    Messages:
    692
    Likes Received:
    1
    Trophy Points:
    18
    Location:
    Seattle Washington
    cPanel Access Level:
    Root Administrator
    I usually do this before installing Cpanel

    chkconfig anacron off >/dev/null 2>&1
    chkconfig apmd off >/dev/null 2>&1
    chkconfig atd off >/dev/null 2>&1
    chkconfig autofs off >/dev/null 2>&1
    chkconfig cups off >/dev/null 2>&1
    chkconfig gpm off >/dev/null 2>&1
    chkconfig irda off >/dev/null 2>&1
    chkconfig isdn off >/dev/null 2>&1
    chkconfig kudzu off >/dev/null 2>&1
    chkconfig lpd off >/dev/null 2>&1
    chkconfig netfs off >/dev/null 2>&1
    chkconfig nfs off >/dev/null 2>&1
    chkconfig nfslock off >/dev/null 2>&1
    chkconfig pcmcia off >/dev/null 2>&1
    chkconfig portmap off >/dev/null 2>&1
    chkconfig rawdevices off >/dev/null 2>&1
    chkconfig winbind off >/dev/null 2>&1
    chkconfig xfs off >/dev/null 2>&1
    chkconfig ypbind off >/dev/null 2>&1


    and then after httpd and cpanel et all is installed
    chkconfig syslog on >/dev/null 2>&1
    chkconfig crond on >/dev/null 2>&1
    chkconfig snmpd on >/dev/null 2>&1
    chkconfig csf on >/dev/null 2>&1
    chkconfig clamd on >/dev/null 2>&1
    chkconfig sshd on >/dev/null 2>&1
    chkconfig iptables on >/dev/null 2>&1
    chkconfig httpd on >/dev/null 2>&1
    chkconfig named on >/dev/null 2>&1
    chkconfig cpanel on >/dev/null 2>&1
    chkconfig proftpd on >/dev/null 2>&1
     
Loading...

Share This Page