With the GNU implementation of inetd (possibly others), sysadmins can allow access to certain protocols on their system from outside hosts by using hosts.allow. Of course if hosts.deny isn't configured properly, any one can connect to the host any way.

Example hosts.allow:


