VPN + Roadwarrior

2002-12-11 Thread Aaron Anderson
I'm planning to setup a VPN to bridge 2 networks over DSL as well as have the ability to have people connect to the network from home. I wanted to get an idea of what experiences that people had had and what packages they've used. I have looked at FreeSwan but haven't set it up yet. I have setup

Re: init.d startup sequence for shorewall

2002-12-11 Thread Yogesh Sharma
On Tue, 2002-12-10 at 22:05, Gene wrote: > can you elaborate on your question, since you're using the box as a > firewall, this particular service should be up first to ensure that your > perimeter is in check.. also, if this is your gateway host, how else > would you get your internal network

Re: how to identify the superuser in C

2002-12-11 Thread Matt Zimmerman
On Thu, Dec 12, 2002 at 08:38:27AM +0900, Oohara Yuuma wrote: > On Wed, 11 Dec 2002 14:13:15 -0500, > Matt Zimmerman <[EMAIL PROTECTED]> wrote: > > On Wed, Dec 11, 2002 at 11:07:11AM +0900, Oohara Yuuma wrote: > > > The problem is that there is fakeroot. getuid() == 0 or > > > geteuid() == 0 is no

VPN + Roadwarrior

2002-12-11 Thread Aaron Anderson
I'm planning to setup a VPN to bridge 2 networks over DSL as well as have the ability to have people connect to the network from home. I wanted to get an idea of what experiences that people had had and what packages they've used. I have looked at FreeSwan but haven't set it up yet. I have setup

Re: how to identify the superuser in C

2002-12-11 Thread Oohara Yuuma
On Wed, 11 Dec 2002 14:13:15 -0500, Matt Zimmerman <[EMAIL PROTECTED]> wrote: > On Wed, Dec 11, 2002 at 11:07:11AM +0900, Oohara Yuuma wrote: > > The problem is that there is fakeroot. getuid() == 0 or > > geteuid() == 0 is not enough. PAM is an overkill. > > I think seteuid(0) == 0 is the best ap

Re: init.d startup sequence for shorewall

2002-12-11 Thread Yogesh Sharma
On Tue, 2002-12-10 at 22:05, Gene wrote: > can you elaborate on your question, since you're using the box as a > firewall, this particular service should be up first to ensure that your > perimeter is in check.. also, if this is your gateway host, how else > would you get your internal network

Re: how to identify the superuser in C

2002-12-11 Thread Matt Zimmerman
On Thu, Dec 12, 2002 at 08:38:27AM +0900, Oohara Yuuma wrote: > On Wed, 11 Dec 2002 14:13:15 -0500, > Matt Zimmerman <[EMAIL PROTECTED]> wrote: > > On Wed, Dec 11, 2002 at 11:07:11AM +0900, Oohara Yuuma wrote: > > > The problem is that there is fakeroot. getuid() == 0 or > > > geteuid() == 0 is no

Re: how to identify the superuser in C

2002-12-11 Thread Oohara Yuuma
On Wed, 11 Dec 2002 14:13:15 -0500, Matt Zimmerman <[EMAIL PROTECTED]> wrote: > On Wed, Dec 11, 2002 at 11:07:11AM +0900, Oohara Yuuma wrote: > > The problem is that there is fakeroot. getuid() == 0 or > > geteuid() == 0 is not enough. PAM is an overkill. > > I think seteuid(0) == 0 is the best ap

Shorewall from stable to testing

2002-12-11 Thread Florent
Hi ! I am using the firewall shorewall from stable branch (version 2.1.12) and I want to migrate to testing branch (version 1.3.10 and 1.3.11). Has anybody tested the migration from stable to testing branch ? Are there any changes in the configuration files ? Is the package stable for a productio

网络营销已担任企业商务的重要角色

2002-12-11 Thread xiaowei
尊敬的阁下您好: 网络营销已担任企业商务的重要角色,大多数的国内 外企业已开始实施自己全面的网络营销计划,所以网络营 销工具成为企业通过互联网进行商务活动的必不可少部分。 大路网络营销全集汇集网络营销所具备的一切工具,真正 的帮助企业通过互联网全面开拓市场、寻求全球买家、 疯狂增加销售订单、树立企业形象、将企业广告投入缩减 为零。 详情请点击访问:http://www.yuefeng2000.com/index-e.htm 访问我们的站点:http://www.yuefeng2000.com 购买24小时咨询电话:025-2207744,2210862

Shorewall from stable to testing

2002-12-11 Thread Florent
Hi ! I am using the firewall shorewall from stable branch (version 2.1.12) and I want to migrate to testing branch (version 1.3.10 and 1.3.11). Has anybody tested the migration from stable to testing branch ? Are there any changes in the configuration files ? Is the package stable for a productio

网络营销已担任企业商务的重要角色

2002-12-11 Thread xiaowei
×𾴵ĸóÏÂÄúºÃ£º ÍøÂçÓªÏúÒѵ£ÈÎÆóÒµÉÌÎñµÄÖØÒª½ÇÉ«£¬´ó¶àÊýµÄ¹úÄÚ ÍâÆóÒµÒÑ¿ªÊ¼ÊµÊ©×Ô¼ºÈ«ÃæµÄÍøÂçÓªÏú¼Æ»®£¬ËùÒÔÍøÂçÓª Ïú¹¤¾ß³ÉΪÆóҵͨ¹ý»¥ÁªÍø½øÐÐÉÌÎñ»î¶¯µÄ±Ø²»¿ÉÉÙ²¿·Ö¡£ ´ó·ÍøÂçÓªÏúÈ«¼¯»ã¼¯ÍøÂçÓªÏúËù¾ß±¸µÄÒ»Çй¤¾ß£¬ÕæÕý µÄ°ïÖúÆóҵͨ¹ý»¥ÁªÍøÈ«Ã濪ÍØÊг¡¡¢Ñ°ÇóÈ«ÇòÂò¼Ò¡¢ ·è¿ñÔö¼ÓÏúÊÛ¶©µ¥¡¢Ê÷Á¢ÆóÒµ

Re: how to identify the superuser in C

2002-12-11 Thread Matt Zimmerman
On Wed, Dec 11, 2002 at 11:07:11AM +0900, Oohara Yuuma wrote: > The problem is that there is fakeroot. getuid() == 0 or > geteuid() == 0 is not enough. PAM is an overkill. > I think seteuid(0) == 0 is the best approach. fakeroot (or any other dynamic linker tricks) will not work on set[ug]id pro

Re: Updating Snort Signatures In Stable ?

2002-12-11 Thread Matt Zimmerman
On Wed, Dec 11, 2002 at 01:43:48AM +, Nick Boyce wrote: > On Tue, 10 Dec 2002 13:52:06 -0500, Matt Zimmerman wrote: > > [re: installing the snort binary from unstable] > > >... And I prefer not to install unstable glibc on my stable systems. > > Yeah - I thought there was a big problem with

Re: how to identify the superuser in C

2002-12-11 Thread Matt Zimmerman
On Wed, Dec 11, 2002 at 11:07:11AM +0900, Oohara Yuuma wrote: > The problem is that there is fakeroot. getuid() == 0 or > geteuid() == 0 is not enough. PAM is an overkill. > I think seteuid(0) == 0 is the best approach. fakeroot (or any other dynamic linker tricks) will not work on set[ug]id pro

Re: Updating Snort Signatures In Stable ?

2002-12-11 Thread Matt Zimmerman
On Wed, Dec 11, 2002 at 01:43:48AM +, Nick Boyce wrote: > On Tue, 10 Dec 2002 13:52:06 -0500, Matt Zimmerman wrote: > > [re: installing the snort binary from unstable] > > >... And I prefer not to install unstable glibc on my stable systems. > > Yeah - I thought there was a big problem with

Re: how to identify the superuser in C

2002-12-11 Thread Chris Shafer
Well what happened is I secrued up and sent it to just Oohara and not to the list. Well I tried but sent it to [EMAIL PROTECTED] So that not working I opened it out of my sent items and just forwarded it to the list but the singing got screwed up. Chirs On Wed, 2002-12-11 at 06:14, Adrian 'Dagura

Re: how to identify the superuser in C

2002-12-11 Thread Chris Shafer
Well what happened is I secrued up and sent it to just Oohara and not to the list. Well I tried but sent it to [EMAIL PROTECTED] So that not working I opened it out of my sent items and just forwarded it to the list but the singing got screwed up. Chirs On Wed, 2002-12-11 at 06:14, Adrian 'Dagura

Re: Updating Snort Signatures In Stable ?

2002-12-11 Thread Matt Zimmerman
On Wed, Dec 11, 2002 at 09:57:13AM -0200, Gustavo Franco wrote: > On Tue, 2002-12-10 at 16:52, Matt Zimmerman wrote: > > On Tue, Dec 10, 2002 at 04:36:08PM -0200, Gustavo Franco wrote: > > > > > No, you can't rebuild snort version from unstable. > > > > Who can't? You can't? I just did, and it

Re: Updating Snort Signatures In Stable ?

2002-12-11 Thread Gustavo Franco
On Tue, 2002-12-10 at 16:52, Matt Zimmerman wrote: > On Tue, Dec 10, 2002 at 04:36:08PM -0200, Gustavo Franco wrote: > > > No, you can't rebuild snort version from unstable. > > Who can't? You can't? I just did, and it was not only possible, but easy. Nick Boyce! > apt-get build-dep snort &&

Re: Updating Snort Signatures In Stable ?

2002-12-11 Thread Matt Zimmerman
On Wed, Dec 11, 2002 at 09:57:13AM -0200, Gustavo Franco wrote: > On Tue, 2002-12-10 at 16:52, Matt Zimmerman wrote: > > On Tue, Dec 10, 2002 at 04:36:08PM -0200, Gustavo Franco wrote: > > > > > No, you can't rebuild snort version from unstable. > > > > Who can't? You can't? I just did, and it

Re: how to identify the superuser in C

2002-12-11 Thread Adrian 'Dagurashibanipal' von Bidder
On Wed, 2002-12-11 at 03:58, Chris Shafer wrote: > Hello, > Some documentation I found helpful when I was doing something similar in [...] Just wondering... Content-Type: multipart/mixed instead of multipart/signed. Your mailer buggy? cheers -- vbi -- featured link: http://fortytwo.ch/smtp s

Re: Pine and mail folder permissions.

2002-12-11 Thread Santiago Vila
Martin Fluch: > I've recently compiled pine 4.5 on my woody system and when I use it, I > get every time the notification: > > "Folder vulnerable - directory /var/spool/mail must have 1777 protection" > > /var/spool/mail is a link to /var/mail, wich has the permissions: > >drwxrwsr-x2 root

Re: Updating Snort Signatures In Stable ?

2002-12-11 Thread Gustavo Franco
On Tue, 2002-12-10 at 16:52, Matt Zimmerman wrote: > On Tue, Dec 10, 2002 at 04:36:08PM -0200, Gustavo Franco wrote: > > > No, you can't rebuild snort version from unstable. > > Who can't? You can't? I just did, and it was not only possible, but easy. Nick Boyce! > apt-get build-dep snort &&

Re: how to identify the superuser in C

2002-12-11 Thread Will Aoki
On Wed, Dec 11, 2002 at 11:07:11AM +0900, Oohara Yuuma wrote: > I am working on adding a high score list to a game written in C. > (It's already packaged.) The high score list will be 664 root:games > and the game binary will be sgid games --- nothing special here. > I want to dump and undump the

Re: how to identify the superuser in C

2002-12-11 Thread Adrian 'Dagurashibanipal' von Bidder
On Wed, 2002-12-11 at 03:58, Chris Shafer wrote: > Hello, > Some documentation I found helpful when I was doing something similar in [...] Just wondering... Content-Type: multipart/mixed instead of multipart/signed. Your mailer buggy? cheers -- vbi -- featured link: http://fortytwo.ch/smtp

Re: Pine and mail folder permissions.

2002-12-11 Thread Santiago Vila
Martin Fluch: > I've recently compiled pine 4.5 on my woody system and when I use it, I > get every time the notification: > > "Folder vulnerable - directory /var/spool/mail must have 1777 protection" > > /var/spool/mail is a link to /var/mail, wich has the permissions: > >drwxrwsr-x2 root

Pine and mail folder permissions.

2002-12-11 Thread Martin Fluch
Hello! I've recently compiled pine 4.5 on my woody system and when I use it, I get every time the notification: "Folder vulnerable - directory /var/spool/mail must have 1777 protection" /var/spool/mail is a link to /var/mail, wich has the permissions: drwxrwsr-x2 root mail 1

Re: how to identify the superuser in C

2002-12-11 Thread Will Aoki
On Wed, Dec 11, 2002 at 11:07:11AM +0900, Oohara Yuuma wrote: > I am working on adding a high score list to a game written in C. > (It's already packaged.) The high score list will be 664 root:games > and the game binary will be sgid games --- nothing special here. > I want to dump and undump the

Re: init.d startup sequence for shorewall

2002-12-11 Thread Yogesh Sharma
On Tue, 2002-12-10 at 16:37, Kuba Jakubik wrote: > Yogesh Sharma wrote: > > In my opinion shorewall must be started as soon as network is up. > can't you just mv S90shorewall S35shorewall ? Yes, I can move this link but question is for security. In my opinion this should be fixed in package install