Re: PerMsgStatus Util warnings

2015-05-15 Thread Dave Wreski
Hi, $self-{main}-{registryboundaries}-uri_to_domain($fubar); This appears to fix DecodeShortURLs.pm --- DecodeShortURLs.pm.orig 2015-05-15 11:51:44.688835663 -0400 +++ DecodeShortURLs.pm 2015-05-15 11:39:35.020499066 -0400 @@ -486,7 +486,8 @@

Re: Spamassassin not catching spam (Follow-up)

2015-03-25 Thread Dave Wreski
Hi, RH i don't know the UK laws but in germany it's for sure not allowed RH because it's legally classified identical to a postman says meh i don't RH walk to go upstairs today and throw the letter away RH if you pretend to provide relieable mailservices it should be logically RH that discard

Re: URLs with non-ASCII chars

2015-02-13 Thread Dave Wreski
On 02/13/2015 05:29 PM, Dave Pooser wrote: On 2/13/15, 4:27 PM, Dave Wreski dwre...@guardiandigital.com wrote: I thought I would send this on to you instead of broadcasting it. You thought wrong :-) Yeah, thanks One too many emails after reading spam for the last twelve hours dave

URLs with non-ASCII chars

2015-02-13 Thread Dave Wreski
Hi John, I thought I would send this on to you instead of broadcasting it. I just received an email with an odd URL. It contained what appears to be a non-ASCII character simulating a period, or at least one that is not part of the standard set. http://pastebin.com/x6TGNpD7 a

Re: spamassassin 3.4.0 spec file for rhel4 rhel5 rhel6 and compatible os's

2014-02-14 Thread Dave Wreski
21 || : /bin/systemctl try-restart spamassassin.service /dev/null 21 || : %endif %changelog * Wed Feb 12 2014 Dave Wreski dwre...@guardiandigital.com - 3.4.0-20 - Update to production release - Build for fedora-17 * Wed Jan 08 2014 Dave Wreski dwre...@guardiandigital.com - 3.4.0-19 - Update SVN

[Ntop] Compiling 5.0.1 on fc17

2013-01-15 Thread Dave Wreski
Hi all, During the normal compile process, I'm receiving the following errors: In file included from address.c:21:0: ntop.h:499:22: fatal error: ndpi_api.h: No such file or directory compilation terminated. In file included from hash.c:21:0: ntop.h:499:22: fatal error: ndpi_api.h: No such file

[Ntop] User/password info

2012-02-28 Thread Dave Wreski
Hi, I've tried to set the ntop password using: # ntop --set-admin-password= Tue Feb 28 22:15:43 2012 NOTE: Interface merge enabled by default Tue Feb 28 22:15:43 2012 Initializing gdbm databases Tue Feb 28 22:15:43 2012 Setting administrator password... Tue Feb 28 22:15:43 2012 Admin

[Ntop] Some graphs not being generated

2012-02-24 Thread Dave Wreski
Hi, I downloaded the latest SVN from yesterday and installed it on a fedora15 x86_64 box. It's currently running as a daemon, and seems to be reporting data properly. In the Application Protocols tab, the DNS, Mail, and SNMP rrd graphs aren't being displayed. The data that describes the

Re: SOLVED Re: malware.blocklist.cf : www.malware.com.br unavailable

2011-08-09 Thread Dave Wreski
Hi, I noticed that the site that provided the malware.blocklist.cf has been unavailable since at least the 8th of August. URL for the file was on http://www.malware.com.br/cgi/submit?action=list_sa The FQDN no longer resolves to an address. I have tried our local DNS, Level3 4.2.2.2

Re: SOLVED Re: malware.blocklist.cf : www.malware.com.br unavailable

2011-08-09 Thread Dave Wreski
Hi, Finally found that they changed their name a few months ago, and finally they turned off the .com.br site. http://www.malwarepatrol.net/ wget http://www.malwarepatrol.net//cgi/submit?action=list_sa; Aren't these the same rules that are already present in the sanesecurity clamav db?

Re: Lots of Chinese Spam with attachments

2011-08-05 Thread Dave Wreski
Hear is the typical hits I get on a message: X-Spam-Status: No, score=3.4 required=5.0 tests=BODY_8BITS,HTML_MESSAGE, MIME_HTML_ONLY,RCVD_IN_BRBL_LASTEXT,RP_MATCHES_RCVD,SPF_PASS autolearn=no version=3.3.1 ... X-Spam-Status: No, score=4.6 required=5.0

Re: Migrating bayes to mysql fails with parsing errors

2011-06-23 Thread Dave Wreski
Hi, since so many have problems i share my mysql shemas :=) `token` binary(5) NOT NULL, Yes, the binary or varbinary is the key to a solution here. Mucking with utf-8 vs latin-1 is just covering but not solving the most glaring problem here, namely that a token must not be associated with

Re: Migrating bayes to mysql fails with parsing errors

2011-06-23 Thread Dave Wreski
Hi, ENGINE=InnoDB DEFAULT CHARSET=utf8 COLLATE=utf8_bin; It's now working, but is excruciatingly slow. Is this also just covering the problem, or will this be a usable solution when it finally finishes? Just being curious: are you using bayes_store_module

Re: Migrating bayes to mysql fails with parsing errors

2011-06-23 Thread Dave Wreski
Hi, dbg: bayes: error inserting token for line: t 1 0 1308114254 4fd2b3f2f0 dbg: bayes: _put_token: Updated an unexpected number of rows. I have opened three bug entries, the first one is directly in response to this problem report and brings a fix: [Bug 6624] BayesStore/MySQL.pm fails to

Re: Migrating bayes to mysql fails with parsing errors

2011-06-21 Thread Dave Wreski
Hi, dbg: bayes: error inserting token for line: t 1 0 1308114254 4fd2b3f2f0 dbg: bayes: _put_token: Updated an unexpected number of rows. [repeats ...] Which version of MySQL? Did you remember to replace TYPE=MyISAM with TYPE=InnoDB in the schema (according to README.bayes) if you are

Re: Migrating bayes to mysql fails with parsing errors

2011-06-21 Thread Dave Wreski
Hi, It looks like that may be my problem too. This is the result with your patch: dbg: bayes: database connection established dbg: bayes: found bayes db version 3 dbg: bayes: Using userid: 2 dbg: bayes: database connection established dbg: bayes: found bayes db version 3 dbg: bayes: using

Re: Migrating bayes to mysql fails with parsing errors

2011-06-21 Thread Dave Wreski
Hi, since so many have problems i share my mysql shemas :=) please note that i expire som data not default done in current spamassassin Your schema did not work for me. I deleted the existing database and recreated it, then created the tables using your schema. When starting to restore, a

Migrating bayes to mysql fails with parsing errors

2011-06-20 Thread Dave Wreski
Hi, I have an existing v3.3.2 on fedora14 (perl v5.12.3) that I'm trying to convert bayes to use mysql. The restore process fails after a few minutes due to too many errors: dbg: bayes: error inserting token for line: t 1 0 1308114254 4fd2b3f2f0 dbg: bayes: _put_token: Updated an unexpected

Re: Migrating bayes to mysql fails with parsing errors

2011-06-20 Thread Dave Wreski
Hi, This one is the current SQL schema and works http://svn.apache.org/repos/asf/spamassassin/tags/spamassassin_current_release_3.3.x/sql/bayes_mysql.sql - Lawrence On 20/06/2011 7:34 PM, Dave Wreski wrote: Hi, I have an existing v3.3.2 on fedora14 (perl v5.12.3) that I'm trying

Re: Migrating bayes to mysql fails with parsing errors

2011-06-20 Thread Dave Wreski
Hi, I have an existing v3.3.2 on fedora14 (perl v5.12.3) that I'm trying to convert bayes to use mysql. The restore process fails after a few minutes due to too many errors: dbg: bayes: error inserting token for line: t 1 0 1308114254 4fd2b3f2f0 dbg: bayes: _put_token: Updated an unexpected

Re: Nearly 200.000 Spams today from coolserver.info and starsweet.info

2011-06-16 Thread Dave Wreski
Hi, since some days my servers are hit by 50.000-80.000 Spams a day and for some minutes they have spamed today 18 accounts out of 98.000 with MORE then 100.000 spams. All spams coming from the same network: xxx.root.static.coolserver.info xxx.root.static.starsweet.info where xxx

Re: MySQL bayes setup question

2011-06-14 Thread Dave Wreski
Marc, You can also find the readme for sql support there, or check out: http://svn.apache.org/repos/asf/spamassassin/branches/3.3/sql/README.bayes It's quite easy to setup and get running. I can't seem to find the bayes_mysql.sql file anywhere. Depending on your distribution it could be in

SO_RCVTIMEO proto not available?

2002-11-17 Thread Dave Wreski
it's waiting for a request. What can I do to troubleshoot this problem? Is it a problem with snmp or radius? How can I disable SNMP support for testing purposes to try and narrow down the possible problems? I've tried undefining the $INCLUDE in radiusd.conf to no avail. Thanks, Dave -- Dave

Re: Configuring without libltdl

2002-11-12 Thread Dave Wreski
the problem I was having there :-) The problem was that configure finds libltdl in its path, and utimately changes LIBLTDL to the local one (-lltdl). So by explicitly defining them and passing it to make it effectively forces make to compile/build the files in the libltdl directory. dave -- Dave

Re: Configuring without libltdl

2002-11-11 Thread Dave Wreski
are obviously *much* smarter than I am, because those tools like like a bunch of random crap to me...) Yeah, no doubt about the GNU people. You've been a great help too, thanks. Best, Dave -- Dave Wreski Corporate Manager Guardian Digital, Inc. (201) 934-9230

Re: Configuring without libltdl

2002-11-09 Thread Dave Wreski
in the directory you've specified, but rather, it's in ./libltdl/.libs/. dave -- Dave Wreski Corporate Manager Guardian Digital, Inc. (201) 934-9230Pioneering. Open Source. Security. [EMAIL PROTECTED]http://www.guardiandigital.com - List

Re: Configuring without libltdl

2002-11-09 Thread Dave Wreski
reason. Even once it's built, there is nothing in that file that explicitly specifies to look in ./libs/ for libltdl. Am I still misunderstanding something? Thanks, Dave -- Dave Wreski Corporate Manager Guardian Digital, Inc. (201) 934-9230Pioneering

Re: Configuring without libltdl

2002-11-09 Thread Dave Wreski
/freeradius-snapshot-20021108/libltdl/.libs/libltdl.a Alan, does this sound reasonable? ldd shows radiusd isn't linked against it, but shouldn't nm show 'ltdl' anywhere in it's output when run against radiusd? dave -- Dave Wreski Corporate Manager Guardian Digital, Inc

Re: Configuring without libltdl

2002-11-08 Thread Dave Wreski
. Do you have any further recommendations? IOW, it's not purely a linking problem, but 'configure' apparently finds libltdl in the LD_PATH and stops looking once it finds it, despite the options above that tell it not to. Thanks, Dave -- Dave Wreski Corporate Manager

Celeron and D845GBV problems

2002-07-21 Thread Dave Wreski
Hi all, Does anyone have RH73 successfully running on an Intel D845GBV motherboard? It has difficulty detecting the video controller. In fact, it basically can't detect it at all. Another problem I'm having is the cache according to /proc/cpuinfo shows as 20k, not 128k. Is it possibly a kernel

Re: Celeron and D845GBV problems

2002-07-21 Thread Dave Wreski
There have already been a lot of people complaining there are no drivers for the 845G chipset. Check the archives. The GBV has a 4x AGP slot though - stick a cheap card in for now. Hmm... Google'd for it and turned up nothing. Glad this thing isn't mine. The Duron's are faster and cheaper

Re: 80% packet loss

2002-02-19 Thread Dave Wreski
I recently installed RH 7.2 on an older laptop (P2-300, 160MB RAM, 6GB HD) w/ a broken screen for use as a headless server. The install goes ok, but when I configure the networking, I am having some problems when I try to ping by machine name vs ip address. If I use the ip address of

Re: Please confirm I'm SOL

2002-02-07 Thread Dave Wreski
If I'm running RedHat 6.2 AND I don't really want to upgrade this particular kernel BUT I want some cool new features in the new BIND 9 and DHCP 3 WHICH require GlibC 2.2 WHICH when trying to upgrade tells me the old libs are required by First,

Re: Apache, behind a firewall?

2002-01-18 Thread Dave Wreski
Now, however, the systems behind the firewall can't access the sites on the server...ie, workstation at 192.168.0.3 can't access any of the sites hosted on 192.168.0.1, because the DNS entries for those sites point them back outside the firewall...it would seem that, while the outside world

Re: security

2002-01-17 Thread Dave Wreski
I am looking for tips on how tos ecure a linux file and ftp server. Does anyone have any ideas, links? Start with the Linux Security HOWTO: http://www.linuxsecurity.com/docs Regards, Dave ___ Redhat-list mailing list [EMAIL PROTECTED]

Re: security update

2002-01-08 Thread Dave Wreski
On Tue, Jan 08, 2002 at 12:18:52PM -0500, Lewi wrote: i have subscribe to redhat security updates mailing list, but today i have know that there is new mutt package available for security update, but until know i have not receive any email yet. That list sometimes runs a day or two

Re: converting images to pdf

2001-12-27 Thread Dave Wreski
I'm trying to convert a JPEG image to PDF. I tried 'convert', but it appears that PDF is not a format that it can convert an image to. It's not likely you'll find a single program to convert from JPEG to PDF. Try something like this: # jpegtopnm file.jpg file.pnm # pnmtops file.pnm

Re: How to for Iptables

2001-12-12 Thread Dave Wreski
Ragnar Hi guys. Is there a howto doc for iptables. I can't find it. Does Ragnar it have another name or doesn't it exist? You might also be interested in the IP Tables Tutorial written by Oskar Andreasson on linuxsecurity.com:

Re: hundreds of error messages at 4:AM

2001-12-12 Thread Dave Wreski
Can anyone tell me if this is refering to the floppy and how to read what device/partition it is refering to? I am assuming that the dev 02:00 is a hint but I am clueless. Dec 12 04:13:19 compaq2 kernel: attempt to access beyond end of device Dec 12 04:13:19 compaq2 kernel: 02:00: rw=0,

streaming audio...

2001-12-11 Thread Dave Wreski
Hi all, I have a RH72 system that I'd like to play streaming audio on. Are my options only to wade thru the mounds of advertisements (including pop-under ads!), chicanery, and so-called Free Downloads at real.com or are there alternatives? It apparently isn't free at all any more, only a Free

Re: Newbie: Need to split 1 GB files to 630 MB

2001-12-09 Thread Dave Wreski
I need to split 1 GB tar.gz backup files into 630MB files so that I can burn them onto CD. What do I need to do to accomplish this? . Any ideas?. Something like the following should work: # split --bytes=`expr filesize / 2` prefix tarfile You should then end up with two (possibly three)

Re: FUD alert!

2001-12-06 Thread Dave Wreski
That's why I dropped my subscription long ago. CERT advisories invariably showed up so late as to be useless as security tools. Rely on Bugtraq instead. LinuxSecurity.com also issues a weekly vulnerability newsletter which specifically details all the Linux and open source exploits for

Re: command= and arbitrary keys...

2001-12-02 Thread Dave Wreski
If it's what I suspect, answer these questions: Are all the keys different? (You have to say yes here.) Yes, should have thought to make that clear initially. Are you using an ssh-agent at the calling end? (You want no here, and a -i keyfile in the ssh call.) Nope.

command= and arbitrary keys...

2001-11-30 Thread Dave Wreski
Hi all, I've asked this question before, but I was never able to fix the problem, and now it's back again and I'd like to try and resolve it. I have an authorized_keys file with about twenty keys, most of which are prefaced with command=/usr/bin/rsync If I put my host key at the top of the

Re: 2.4.7p1 protocol differences?

2001-10-29 Thread Dave Wreski
Try this patch, so far hanging does not happen anymore. http://www.clari.net/~wayne/rsync-nohang1.patch Applied the patch, upgraded both sides, and same thing. I'm not so sure it's an rsync thing anymore, but have no ideas what the problem could possibly be. Thanks, Dave

2.4.7p1 protocol differences?

2001-10-26 Thread Dave Wreski
Hi all, rsync-2.4.6 has been running for quite a while with no problems, until about a week ago when for some reason it blocked on the same host ever time. I use it to backup about thirty hosts to my backup server, but for some reason it's illiciting that blocking bug that some people

Re: rsync matches wrong ssh key

2001-07-22 Thread Dave Wreski
Oh. Can you send me an ssh -v transcript showing the behaviour? Cameron, I think I made a mistake. Not exactly sure yet, but I rearranged the order of the keys causing the incorrect matching, and it's working. I believe there may have been a 'z' on the sending side but not the rsync on the

Re: Stateful Inspection

2001-06-12 Thread Dave Wreski
Can anybody suggest anyl resource or links to resources about the stateful Inspection technology other than the Checkpoint site and Google search Here's an article I wrote for linuxsecurity.com that explains stateful inspection and the new features available in the Linux 2.4 packet mangling:

Re: This is a must read document. (MS response)

2001-06-07 Thread Dave Wreski
I wonder how this will fare against OpenBSD? Or EnGarde Secure Linux, for that matter. ESL also implements Mandatory Access Control, using LIDS, but is a complete distribution, not a series of patches and packages. It also includes several other kernel security changes, host and network

RE: Encryption vs. inspection.

2001-06-06 Thread Dave Wreski
i was digging around and came across a copy of these old magazines i have: #root, Sys Admin, Sun Expert are these publications still around? Sys Admin: http://www.samag.com Server/Workstation Expert: http://swexpert.com/ #root: http://www.nyhc.de/ Regards, Dave - [To unsubscribe,

Re: Telnet disabled by default

2001-05-01 Thread Dave Wreski
I like the idea of PuTTY on a floppy! We use Java SSH applets, which work well for extreme cases where folk can't install software. Forcing Our new EnGarde Secure Linux distribution includes mindterm on the CDROM and key generation routines that automatically download the private key through

Re: Upgrading 7.0 to 7.1

2001-05-01 Thread Dave Wreski
I purchased RH7.0 Deluxe a while back and I'm wondering if I want to upgrade that to 7.1, can I just download the ISO's and upgrade, or does the Deluxe version have things in it that the standard doesn't? Things that'll break, not stuff that comes on say the power tools and things -

Re: How to keep from logging a particular facility code

2001-04-30 Thread Dave Wreski
I want every thing except local7.* going into my one file. I tried the following statement (and others) and think it should work, but it doesn't. I'm still getting local4 stuff in messages. I also have local4 directed to another files altogether and it works fine. I just can't seem to keep

Re: Linux Firewalls (WAS: Looking for...)

2001-04-27 Thread Dave Wreski
, and more. Wouldn't you want more than default parameters for BIND? Oops, that should be interpreted as the default manner in which we ship BIND is as secure as we can make it... Regards, Dave -- Dave Wreski Corporate Manager Guardian Digital, Inc. (201) 934-9230

Re: Ftp server

2001-04-27 Thread Dave Wreski
Of the ftp servers , which ones are the most secure? I've installed NCFTPd here on my lan at home, even though Im behind a firewall for two reasons -- one it's easy to configure and two it's pretty Comparing ftp servers is like comparing hard drive manufacturers or tire manufacturers.

Re: partition list

2001-04-27 Thread Dave Wreski
Okay so I'm stupid! I installed RH and made several paritions named /data1 and /data2 but they do not mount. I do not see them in linuxconf's listing of partitions. Is there a tool to show all patitions on all HDs [or can I start up disk druid from the command line to do the same

Re: securing ftp

2001-04-26 Thread Dave Wreski
Nope...but I really do suggest NCFTPd... I concur. I chose it because we needed to provide ftp service to the public, and I simply don't have time for the buffer overflows and other nonsense in the other popular servers. It's straightforward to configure and has a great reputation. It

Re: Linux Firewalls (WAS: Looking for...)

2001-04-25 Thread Dave Wreski
Setting aside general Linux enthusiasm and advocacy, does anyone really think that there's a good reason to use Linux for a firewall? I (personally) like ipfilter on OpenBSD, both because ipfilter is Damn Fine Stuff and because OpenBSD is treated like a real OS in terms of releases,

Re: reiser on 7.1

2001-04-25 Thread Dave Wreski
We don't support or recommend it (as in disk and filesystem), but someone from Brazil made an update disk for it: Is reiserfs not yet production quality or is there some other interaction problem that causes you to not recommend it? dave ___

Re: RAID

2001-04-25 Thread Dave Wreski
I went to AMI's site, and they even provide a modified 2.2.16 kernel! It's directly support in 2.2.19 and no kernel patch necessary. This along with drivers in RPM format and instructions on how to use their stuff under RedHat. However, I didn't check in detail what level of support their

Re: IDS

2001-04-24 Thread Dave Wreski
Questions http://www.linuxsecurity.com/resource_files/firewalls/fwfaq/firewalls-faq.html Regards, Dave Wreski - [To unsubscribe, send mail to [EMAIL PROTECTED] with unsubscribe firewalls in the body of the message.]

Re: Any ideas why my DNS shutsdown

2001-04-24 Thread Dave Wreski
I'm using my server as DNS and after few hours named daemon shuts down. I'd like to have some clues on what to start looking for. Look for this: http://cr.yp.to/djbdns.html Oh, c'mon, you can do better than that. That response provides not a shred of useful information, other than a

Re: Packet Filtering Proxy Server

2001-04-17 Thread Dave Wreski
I am a newbie. Can anyone tell me what are the different between Packet Filter Proxy Server? There are a number of resources on the Internet that can explain to you these basics: # Marcus Ranum's Thinking About Firewalls

Re: Which sites are trusted Security sites for RedHat

2001-04-12 Thread Dave Wreski
I have been seeing reports from a few sites stating that there is a worm out there attacking linux. If I go to the RedHat site and search on the worm (lion, adore) I do not find anything. You might be interested in a few of the following resources on linuxsecurity.com that directly address

Re: linux-security

2001-04-12 Thread Dave Wreski
I get no mail at all on the linux-securiy list, though the signup page says I'm subscribed (and have been for a year or so). Is there something wrong on my end, or is that list dormant? The list is pretty much dead. We've picked up where they've left off, over at linuxsecurity.com: Linux

Re: security package

2001-04-11 Thread Dave Wreski
I know their is a package that checks for security breaches, port scans etc. But I have forgotton its name Can anyone help? Chances are you'll need more than one package to do all this. Some recommendations include: - tripwire - portsentry - nmap You can find all of these and more at

Accelraid 170 support in rh7?

2001-04-11 Thread Dave Wreski
Hi all. A friend recently purchased a Mylex Accelraid 170 for use with RH7. He says the installer doesn't detect the card and doesn't know what to do next. Is there an updated installer for use with this card, or is something else wrong? There is direct kernel support for it, so I'm wondering

Re: Attack of CRS...

2001-03-28 Thread Dave Wreski
OK. I admit it. I can't remember how to change the log-in banner for telnet and the standard, non-X login. Can someone point me to it? /etc/issue, /etc/issue.net and /etc/motd. ___ Redhat-list mailing list [EMAIL PROTECTED]

Re: Passwords

2001-03-02 Thread Dave Wreski
It's better if you can cut and paste teh relevant parts. And make sure there's a root logged in, in case the cut and paste goes wrong. Additionally, there may be MD5 password issues involved... dave On Fri, 2 Mar 2001, Ed - Linux List wrote: How does one covert 5.2 password files to

Re: login hangs - please help

2001-03-02 Thread Dave Wreski
I am having trouble with my red hat 6.0 server, and I hope you can help me. The server was working for a couple of months and I have not touched it for a while. Then I moved it to a different locatio, and booted it with some older monitor. I used cold boot just turning off and on machine.

Re: bind 8.2.3

2001-03-02 Thread Dave Wreski
/usr/include/bits/local_lim.h:27: linux/limits.h: No such file or directory [...] /usr/include/bits/socket.h:295: asm/socket.h: No such file or directory # cd /usr/include # ln -s ../src/linux/include . # ln -s ../src/linux/asm . dave ___

Linux 2.4: Next Generation Kernel Security

2001-03-01 Thread Dave Wreski
abilities in the new netfilter that might also be of interest: Linux Kernel 2.4 Firewalling Matures: netfilter http://www.linuxsecurity.com/feature_stories/kernel-netfilter.html Best, Dave Wreski - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of

Re: DNS transfer denied?

2001-03-01 Thread Dave Wreski
Why's this guy trying this? Are you responsible for the atfantasy.com domain? If so, you need to enable 'allow-query' in your named.conf. If not, then he thinks you are, and is trying to transfer the zone information from you for that zone. dave -Ed Mar 1 13:52:03 arcane

Re: DNS transfer denied?

2001-03-01 Thread Dave Wreski
Why's this guy trying this? Are you responsible for the atfantasy.com domain? If so, you need to enable 'allow-query' in your named.conf. If not, then he thinks you are, and is trying to transfer the zone information from you for that zone. Oops, I meant to write 'allow-transfer' not

Linux 2.4: Next Generation Kernel Security

2001-03-01 Thread Dave Wreski
abilities in the new netfilter that might also be of interest: Linux Kernel 2.4 Firewalling Matures: netfilter http://www.linuxsecurity.com/feature_stories/kernel-netfilter.html Best, Dave Wreski - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of

Re: Is there any /good/ security mailing list(s)? [can security ever be OT?]

2001-02-28 Thread Dave Wreski
I've been paying more and more attention to security lately, and I'm absolutely blown away by the continual flood of "incoming' information: new expoits, new virii, new bugs in software, new patches for bug new and old.. it's gotten to the point where I really don't have time to sift

online sysadmin book?

2001-02-20 Thread Dave Wreski
Hi all, Some time ago I recall a training company putting online one of their Linux sysadmin books, but now can't find it. IIRC, it was pretty comprehensive, contained a pretty thorough discussion of topics, was multiple (html?) files, and pretty large... Might anyone know where to find it?

Re: online sysadmin book?

2001-02-20 Thread Dave Wreski
Have you looked at the LDP's Linux System Administrator's Guide (SAG) http://www.linuxdoc.org/guides.html? It's not the most up-to-date document out there, but it is comprehensive and available in multiple formats. Yes, actually, I meant to mention that it's not (or at least wasn't) an LDP

Re: Uninstalling.

2001-02-20 Thread Dave Wreski
I'm looking to uninstall RH 7.0 , but I don't have a clue where to start! Any help would be appreciated. 1. Take disk out of machine 2. Walk outside with it 3. Drop on cement / nearby a large magnet Those would be my choices. The other alternative is to insert a Debian or SuSE CDROM, but

Re: Looping a script

2001-02-18 Thread Dave Wreski
However, this will play the files sequentially, in (sorted) order. I want it to be randomized, like the output of 'ls -AQU' while [ 1 ] do for mp3 in `/bin/ls -AQU *.mp3` do amp -p $mp3 done done ___

Re: Linux Kernel 2.4 Firewalling Matures: netfilter

2001-02-15 Thread Dave Wreski
-HOWTO/index.html Regards, Dave cheers, mouss At 22:59 14/02/01 -0500, Dave Wreski wrote: Hi there, I just finished an article for linuxsecurity.com on the security improvements available in the new 2.4 kernel packet mangling/filtering. "In yet another set of advancements to the k

Linux Kernel 2.4 Firewalling Matures: netfilter

2001-02-14 Thread Dave Wreski
acket filtering rules in the new 2.4 kernel. This document explains those changes and tips on how to get started." http://www.linuxsecurity.com/feature_stories/kernel-netfilter.html Best, Dave -- Dave Wreski Corporate Manager Guardian Digital, Inc. (201

Re: QPopper question

2001-02-14 Thread Dave Wreski
I have just upgraded my Red Hat 6.2 Box to RH 7.0. It has qpopper installed as its pop server, which worked faultlessly under 6.2, but has stopped working since the 7.0 upgrade. Can anybody point me in the right direction as to how this can be fixed. I am still a relative newbie to linux

Re: (no subject)

2001-02-14 Thread Dave Wreski
Although I am relatively new to Linux, I have done kernel upgrades in the past without a problem. I cannot figure out what is going wrong this time! My system is using mkinitrd from the mkintrd-2.6-1 RPM. Does anyone have any suggestions how to overcome this last hurdle in the kernel

Re: Apache Mailing List

2001-02-13 Thread Dave Wreski
Does anyone know of a good Apache mailing list that I might get on. I have a rather perplexing security question pertaining to samba and apache. Any help would be appreciated. Thanks Not directly an apache list, but we recently set up a general Linux security mailing list at

Re: libc.so.6

2001-02-13 Thread Dave Wreski
# locate libc.so.6 /lib/libc.so.6 That is a symlink. There are unfortunately multiple versions of libc that are incompatible with each other. Chances are the RPM that you are trying to install is looking for a different version. Specifically, the changes between RH62 and RH7 were significant

Re: Apache Mailing List

2001-02-13 Thread Dave Wreski
Visit http://www.linuxsecurity.com/mailinglists.html or send a message to [EMAIL PROTECTED] with "subscribe" in the subject. I subscribed to that a couple of weeks ago, but haven't seen a single posting. Have there been discussions? Yes, it has been ocassionally sporadic, but I

Re: Squid and Samba

2001-02-12 Thread Dave Wreski
their VPN to their remote network was secure. AES, on the other hand, developed by the best cryptographers in the world, was developed in an open form. Pretty much off-topic, but I really thought it was important to present the other side... Regards, Dave -- Dave Wreski Corpora

Re: security test of firewall

2001-02-07 Thread Dave Wreski
. A likely story ;) Regards, Dave -- Dave Wreski Corporate Manager Guardian Digital, Inc. (201) 934-9230Pioneering. Open Source. Security. [EMAIL PROTECTED]http://www.guardiandigital.com - [To unsubscribe, send mail to [EMAIL PROTECTED

Re: Out of office (Out of office)

2001-02-07 Thread Dave Wreski
Ok...I just spoke to one of the folks in the Turtle Wax IT department, and they're going to go shut off Mr. Marlovits' Out of Office setup. Kudos to you for doing that. I think that guy had some of his turtle wax between his ears... dave ___

Re: Evaluating SSH

2001-02-07 Thread Dave Wreski
IMO now that OpenSSH supports the SSH2 protocol, I don't see any reason to use the commercial version(s). I certainly haven't found any benefit that they provide. I don't either, but in case you were implementing it now, you should know that a vulnerability for ssh was just discovered:

Re: [OT] what's g mean? WAS: Re: Out of office (Out of office)

2001-02-07 Thread Dave Wreski
Ok, I can't help myself: what does g mean? It's probably in the Jargon file but I don't have time to go look right now a.k.a. *grin* http://www.arthappens.com/dictionary.htm dave ___ Redhat-list mailing list [EMAIL PROTECTED]

RE: Path Question

2001-02-07 Thread Dave Wreski
1) No, the su uses the PATH of the original user. Modify .bash_profile to include what you want for path. If you supply the hyphen character after the su command, it will source root's profile: dave@host# su - root Question Two: In my .bash_profile file in my home directory I can alter

Re: Redhat 6.2 strange behavior

2001-02-07 Thread Dave Wreski
I found the following lines in my logs, could anybody tell me what might cause them? Make sure you've got the latest wu-ftpd. It's someone trying to hack into your box. Sleep tight ;) Regards, Dave ___ Redhat-list mailing list [EMAIL

Re: IP-chains list of commands

2001-02-06 Thread Dave Wreski
f thousands of times... Regards, Dave Best regards Basti -- Sent through GMX FreeMail - http://www.gmx.net - [To unsubscribe, send mail to [EMAIL PROTECTED] with "unsubscribe firewalls" in the body of the message.] -- Dave Wreski Corporate Manager

Re: Routes

2001-02-04 Thread Dave Wreski
What's really fun is that if you *just* give it the IP address, it'll calculate the subnet, etc all for you. ;-) That's impossible. Perhaps using the standard class structure, but not with any variable length type of subnet. Dave ___

Re: SCSI probs with kernel 2.2.16-3

2001-02-04 Thread Dave Wreski
Still struggling with this one and I wondered if anyone could point me to some list, newsgroup that could help. One of the updates to the stock kernel in RH 6.2 (2.2.14-5 I think) was Updated SCSI error handling. Well after I updated my kernel with an smp 2.2.16-3 kernel rpm my machine is

Re: getting security notifications from redhat

2001-02-01 Thread Dave Wreski
what do i need to do to get security notices emailed to me. There are several ways: - subscribe to the [EMAIL PROTECTED] - subscribe to/visit http://www.linuxsecurity.com/mailinglists.html for the Linux Advisory Watch mailing list, among others - check out

Re: Netscape 4.76-1 flakiness [correction] - FIXED

2001-01-24 Thread Dave Wreski
Sadly Red Hat does not provide a search tool for the list archives. I do because I thought it was good idea, I wanted it for myself... and if I'm gonna do it for me I might as well let everybody else use it too! :-) Try google. Put something like: site:redhat.com mailing list keyword dave

Re: Openssh Walkthrough

2001-01-23 Thread Dave Wreski
So, does anyone know a place where I can get a good walkthrough on installing Openssh? I looked, and have found ssh1 stuff, but not Openssh... and I want to be able to offer ssh1 and ssh2 as I will (eventually) be expanding this to other (Non-Linux) Unix boxes (IRIX) and some of the folks

<    1   2   3   4   5   6   7   >