in one of our (lazy infrequent) security scans we stumbled upon a running rpcbind. it seems that it was installed around 8.0.4.
trying to remove it tells us that pve depends on it:
what is the use case for rpc in this context ?
can we block it via iptables and/or hosts.allow ?
do we need access to rpc from other nodes in the cluster ?
tia,tja...
trying to remove it tells us that pve depends on it:
Code:
The following packages will be REMOVED:
libpve-guest-common-perl* libpve-storage-perl* nfs-common* proxmox-ve* pve-container* pve-ha-manager* pve-manager* qemu-server* rpcbind*
what is the use case for rpc in this context ?
can we block it via iptables and/or hosts.allow ?
do we need access to rpc from other nodes in the cluster ?
tia,tja...