Re: TLS1.0 and 1.1 with Cyrus (Debian Buster)

2020-05-09 Thread Jonas Andradas
Hi Roman, Did you try with the following in imapd.conf? tls_prefer_server_ciphers: 1 Regards, Jonas. On Sat, 9 May 2020, 01:22 Roman Medina-Heigl Hernandez, wrote: > Gracias Alberto. Now it's solved (it has been a little bit tricky). > > My final config: > > * /etc/imapd.conf > tls_ciphers:

Re: Dual-Boot w/ encryption

2016-05-17 Thread Jonas Andradas
On May 17, 2016 22:54, "Ralph Sanchez" wrote: > > This doesn't make any sense to me. I'm in the graphical install for Jessie in manual mode and no matter what I do I can't create and encrypted volume containing any of the other lvm directories or groups. Only if I choose

Re: Vulnerable PHP version according to nessus

2011-12-28 Thread Jonas Andradas
2011/12/28 Moritz Mühlenhoff j...@debian.org Dave Henley dhenl...@live.com schrieb: --_08b89ad2-8af0-454c-bd3d-7274adf10707_ Content-Type: text/plain; charset=iso-8859-1 Content-Transfer-Encoding: quoted-printable I recently installed a Debian Squeeze system along with apache2 and

Re: Question related to FDE (Full Disk Encryption) solution under Linux Debian Lenny

2011-01-24 Thread Jonas Andradas
On Mon, Jan 24, 2011 at 09:51, Thomas Nguyen Van t.nguyen...@jumper.iewrote: Morning Jeroen, Thanks for your quick reply. I agree with you in general, Software FDE does not protect your datas. However, in this Seagate solution (ATA Security and/or Drive Trust), we have a hardware FDE which

Re: Question related to FDE (Full Disk Encryption) solution under Linux Debian Lenny

2011-01-24 Thread Jonas Andradas
On Mon, Jan 24, 2011 at 11:22, Jeroen van Dongen jer...@lbvd.nl wrote: Hello Thomas, as Jeroen already said, the problem with this is that if they steal only the hard-drive, the data should be safe. Instead, if they steal the whole server (which is somewhat harder, but not impossible),

Re: Question related to FDE (Full Disk Encryption) solution under Linux Debian Lenny

2011-01-24 Thread Jonas Andradas
On Mon, Jan 24, 2011 at 12:06, Andrew McGlashan andrew.mcglas...@affinityvision.com.au wrote: Jonas Andradas wrote: In particular, both mandos and mandos-client have Debian packages available. [1] http://www.fukt.bsnet.se/mandos That sounds interesting, but why not run the Mandos server

Re: Question related to FDE (Full Disk Encryption) solution under Linux Debian Lenny

2011-01-24 Thread Jonas Andradas
On Mon, Jan 24, 2011 at 17:47, Andrew McGlashan andrew.mcglas...@affinityvision.com.au wrote: Hi, Thomas Nguyen Van wrote: Correct me if I'm wrong but Mandos only works on a LAN according to the technical overview ( http://wiki.fukt.bsnet.se/wiki/Mandos#Architectural_Overview). Just a

Re: scans in my hosts. (Debian 5.0 and Apache 2.2.9)

2010-07-30 Thread Jonas Andradas
On Thu, Jul 29, 2010 at 16:49, Sjors Gielen mailingl...@dazjorz.com wrote: Op 29 jul 2010, om 16:34 heeft OLCESE, Marcelo Oscar. het volgende geschreven: Estimated: I am taking these scans in my hosts. (Debian 5.0 and Apache 2.2.9) This has been repeating since a weeks. Know what can

Re: Live Penetration Testing.

2009-10-21 Thread Jonas Andradas
On Wed, Oct 21, 2009 at 09:48, Mike Mestnik che...@visi.com wrote: Are there any applications or projects to provide this *badly needed service? I'm willing to assist in using or putting together an nmap type applications that scans for known vulnerabilities and attempts to make use of them

Re: Scalable Debian vulnerability tracking

2009-01-06 Thread Jonas Andradas
Hello Sheldon, On Tue, Jan 6, 2009 at 21:34, Sheldon Hearn sheld...@starjuice.net wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi folks, I work for an hosting provider, and am looking at how to improve visibility into vulnerability exposure. We have over 800 Debian hosts that

Re: Why not have firewall rules by default?

2008-01-27 Thread Jonas Andradas
Hello, As Javier says: See http://www.debian.org/doc/manuals/securing-debian-howto/ch-sec-services..en.html#s-firewall-setup : Just in case somebody doesn't notice, there is a typo in this URL (double-dot), so I will post it correctly

Re: large campus network ... sugestions

2007-12-15 Thread Jonas Andradas
(443). Hacker win, admin loose :-) I repeat it: I don't know of any solution able to defeat this and would like to know if you have some idea to detect these more-or-less advanced bypass cases. Kind regards. Jonas Andradas escribió: For Layer-7 filtering, you could check Application

Re: large campus network ... sugestions

2007-12-15 Thread Jonas Andradas
PROTECTED] wrote: How does Bluecoat deal with the fact that HTTPS connections are secured point-to-point? If Bluecoat (or whatever) does some kind of MITM, client browser would detect it and HTTPS would be broken. I still don't get the point... Cheers, -Roman Jonas Andradas escribió

Re: large campus network ... sugestions

2007-12-14 Thread Jonas Andradas
Corkscrew. Once SSH is tunneled, almost anything can be tunneled through SSH. Maybe others can shed some more light on this, or even propose more adequate ideas and/or solutions. Best regards, Jonas Andradas On Dec 14, 2007 12:04 PM, Tirla Adrian [EMAIL PROTECTED] wrote: Hello, I`m currently

Re: large campus network ... sugestions

2007-12-14 Thread Jonas Andradas
For Layer-7 filtering, you could check Application Layer Packet Classifier for Linux: http://l7-filter.sourceforge.net/ Kernel Iptables Layer 7: http://l7-filter.sourceforge.net/HOWTO-kernel Best regards, Jonas Andradas. On Dec 14, 2007 6:53 PM, Roman Medina-Heigl Hernandez [EMAIL PROTECTED

Re: large campus network ... sugestions

2007-12-14 Thread Jonas Andradas
... Or maybe I am wrong. Regards, Jonas Andradas On Dec 14, 2007 7:40 PM, Adrian Minta [EMAIL PROTECTED] wrote: Tirla Adrian wrote: Hello, I`m currently one of the network administrators of a 3000+ students and i have some issues maintaining security, authentication ... and quality

Re: large campus network ... sugestions

2007-12-14 Thread Jonas Andradas
Hello Tirla, Please, find my reply inline with your response. On Dec 14, 2007 5:19 PM, Tirla Adrian [EMAIL PROTECTED] wrote: hello Andradas, On Dec 14, 2007 1:31 PM, Jonas Andradas [EMAIL PROTECTED] wrote: Hello Adrian, I do not consider myself an expert, so maybe I shouldn't

Re: security.debian.org: MD5Sum mismatch

2007-08-17 Thread Jonas Andradas
Hello Lupe, how long have you noticed this mismatch? I mean, an update on the mirror could be taking place, and the Packages.bz2 file not yet been updated... Jonás. On 8/17/07, Lupe Christoph [EMAIL PROTECTED] wrote: Hi! I can't apt-get update testing/updates main: Failed to fetch