Disable whois queries from all IPs other than localhost. (Can be done through firewall or filtering. Socket filtering on host? All of the above?) This would mean that we can better hide the auth scheme information, such as the encrypted password.
Log in to post a comment.