Re: How do I disable (close) ports?

2001-12-04 Thread chris
nothing to do whether it is mentioned in /etc/services or not. Hope this helps and fit your needs regards chris -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: How do I disable (close) ports?

2001-12-04 Thread chris
nothing to do whether it is mentioned in /etc/services or not. Hope this helps and fit your needs regards chris

Problems using the grsecurity kernel source patch package in woody.

2002-08-07 Thread Chris
-kpkg buildpackage fails with the errors included at the end of this email, near what looks like the end of the process. Neither google nor the mailing list archives yielded any useful information. Has anyone seen this behavior before? -- --Chris Practice allows me to receive information like

Re: Debian mirrors and MITM

2014-05-30 Thread Chris
On 30/05/2014 8:52 PM, Michael Stone wrote: On Fri, May 30, 2014 at 10:43:56PM +1000, Alfie John wrote: What's stopping the attacker from serving a compromised apt? https://www.debian.org/CD/verify That will cover the installer, for the packages see: https://wiki.debian.org/SecureApt

Patch / update for znc to disable weak ciphers and SSLv2/SSLv3 protocols

2014-10-27 Thread Chris
Hi, the ZNC IRC Bouncer (https://packages.debian.org/wheezy/znc) finally allows to choose own ciphers and to disable SSLv2/SSLv3 protocols with this pull requests: https://github.com/znc/znc/pull/716 https://github.com/znc/znc/pull/717 Not sure if those are easy to apply to the older version

Re: Patch / update for znc to disable weak ciphers and SSLv2/SSLv3 protocols

2014-10-27 Thread Chris
Hi, Would you be so kind to file this as a bug against the znc package? and thanks for the hint. Just created a new bugreport against the znc package: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=766957 -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of

Re: /dev/fb* permissions, local DoS

2000-12-17 Thread Chris Leishman
tnt2, XF4) - but does put pretty colors over the top 1/3 of the screen before cat exits with "write error: No space left on device". Chris -- -- Knuth: premature optimization is the root o

testing distribution security updates?

2001-01-25 Thread Chris Ruvolo
packed be backported or otherwise pushed into testing? How soon? Would you recommend keeping a line in /etc/apt/sources.list for the security server's stable collection if the box is running on testing or unstable packages? Thanks for the info, -Chris PS: Please cc me in responses as I am

Re: OpenSSH and CVS

2001-02-20 Thread Chris Matta
This is easy: as the user that runs the CVS scripts: run ssh-keygen it will run thru and ask where you want the file (~/.ssh/identity will be fine) when prompted for a password just hit return, and again on the next line now copy the contents of ~/.ssh/identity.pub to the

Re: Logging practices (and why does it suck in Debian?)

2001-04-18 Thread Chris Boyle
to /etc/init.d/sysklogd just before the exit 0 at the end seems to have fixed it: /etc/init.d/console-log $1 /dev/null 21 - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ For my PGP key visit: http://archives.wincoll.ac.uk/finger.php?q=chrisb -BEGIN PGP SIGNATURE- Version

Re: Problem with logging firewall packets

2001-05-25 Thread Chris Boyle
an exception to that rule. You can probably put a filter in syslog.conf that will just exclude firewall logs from the console by some characteristic like their (presumably) low priority, but I don't know how. Commenting out the lines is a workaround. - -- Chris Boyle - Winchester College - http

Re: wdm security

2001-05-25 Thread Chris Boyle
of the relevant line if it isn't there already. AFAIK you can do it for all servers in /etc/X11/xinit/xserverrc, but as has been said, it should be there by default. - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ For my PGP key visit: http://archives.wincoll.ac.uk/finger.php?q

Re: X tcp listening

2001-05-26 Thread Chris Boyle
used when a display manager (kdm, gdm, xdm, ...) is used, and hence whether that xserverrc file will apply to them. Best put the option in /etc/X11/*dm/Xservers as well to make sure. - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ For my PGP key visit: http

Re: Snort

2001-07-10 Thread Chris Stewart
should see a file named '5snort' or something. That is the shell script that mails the report out. Just put it in your crontab to run whenever... --Chris Stewart-- -- Algebraic symbols are used when you do not know what you are talking about. -- Philippe Schnoebelen

Re: Is ident secure?

2001-09-01 Thread Chris Lawrence
first six years on the net replying to every email I got with racist, hompohobic, and idiotic comments, but now I'm generally considered a good developer. /sarcasm In all seriousness, I passed on my thoughts to [EMAIL PROTECTED] and hope they act accordingly. Chris -- Chris Lawrence [EMAIL PROTECTED

Re: setuid changes

2001-09-22 Thread Chris Boyle
otherwise marked (by another list of regexps) as active system attacks, though it wasn't difficult to add that feature. Hmm, I'll file a wishlist bug on that when I get around to it. - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ ICQ: 24151961 - PGP: http

GPG questions

2001-10-04 Thread Chris Flipse
-05-31 Chris Flipse [EMAIL PROTECTED] uidChris Flipse [EMAIL PROTECTED] uidChris Flipse [EMAIL PROTECTED] sub 1024g/10EFF6DA 2001-05-31 [expires: 2001-10-06] sub 1024g/6B45DAD7 2001-10-04 [expires: 2002-04-02

Re: question about something, but don't know if it exists...

2001-11-06 Thread Chris Zubrzycki
On Tuesday, November 6, 2001, at 06:23 AM, Bryan Andersen wrote: [EMAIL PROTECTED] wrote: Hallo there, I really don't know if it should be asked there or somewhere else, but my problem is followin I live in untrusted enviroment which is running 50 computers (it is school

Re: /dev/log

2001-10-09 Thread Chris Matta
The very nature of syslog allows any system to log to it from a machine that set it is a loghost, so while there may be a DOS to fill up /var/log, its also a feature of syslogd. -- Chrismailto:[EMAIL PROTECTED] Friday, October 05, 2001, 1:41:48 PM, you wrote: S

RE: Squid security

2001-12-04 Thread Chris Massam
the tcp_incoming_address and tcp_outgoing_address - this means squid won't actually listen on the external address, but will use it for external connections. Hope this is off assistance. Regards Chris -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Wednesday, 5 December 2001 17:21

Re: Re: How do I disable (close) ports?

2002-01-16 Thread Chris Hilts
out of /etc/services? Try /etc/inetd.conf or /etc/xinetd.conf /etc/services just maps ports to service names. Chris -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: root's home world readable

2002-01-21 Thread Chris Francy
be no problems with denying access. I have changed /root to 0700 on all my installations because I am running mysql server. It hasn't broken anything. Chris -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: scp and sftp

2002-04-01 Thread Chris Reeves
they don't own it (and not in their group) should take care of that problem. They can read it all they want, just not change it. Why not change the users' shell to /usr/bin/menu? Bye, Chris -- http://www.tuxedo.org/~esr/faqs/smart-questions.html __ _ -o

security updates for hppa

2002-04-10 Thread Chris Gray
? I think I installed 'woody' from the 0.9.3 CD. I am also using the 32bit kernel. TIA, Chris. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: Allow root to telnet

2002-04-18 Thread Chris Hilts
, is having telnet listen to, for example, an option? I hope this helps. Chris Hilts [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

GPG subkeys and keyservers

2002-05-09 Thread Chris Flipse
/public.asc meteu:~ 4% gpg --list-key flip pub 1024D/17984F07 2001-10-06 Chris Flipse [EMAIL PROTECTED] uidChris Flipse [EMAIL PROTECTED] uidChris Flipse [EMAIL PROTECTED] sub 1024g/B03178DE 2001-10-06 [expires: 2002-04-04] sub

apache access log

2002-09-25 Thread Chris Martin
/Sep/2002:11:05:44 +0200] \xe3D 302 0 - - 80.142.57.69 - - [25/Sep/2002:11:23:00 +0200] \xe3N 302 0 - - i'm no pro when it comes to apache, but is this something i should worry about? or just another script-kid? thx, .chris -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Re: Debian (Unstable) problem with SSH and PAM

2002-10-03 Thread Chris Halls
the latest version from sarge (it'll install on Woody), which contains a full apt-proxy.conf with lots of examples. Or go to the CVS link at http://apt-proxy.sf.net and look at apt-proxy.conf there. Chris msg07196/pgp0.pgp Description: PGP signature

Re: export problems on security updates?

2002-10-09 Thread Chris Caldwell
regarding the use/import of cryptography. In any case, security updates are usually bug-fixes, not security software, per se. Chris Caldwell Information Systems Coordinator, Enterprise Systems Information Systems and Services, The George Washington University [EMAIL PROTECTED] | +1 202.994.4674 (w

Re: AW: export problems on security updates?

2002-10-10 Thread Chris Caldwell
to the EU urging citizens to use cryptography because of ECHELON? Chris Caldwell Information Systems Coordinator, Enterprise Systems Information Systems and Services, The George Washington University [EMAIL PROTECTED] | +1 202.994.4674 (w) | +1 202.409.0878 (c) http://hippocrates.tops.gwu.edu | GPG key

[OT] secure, minimal Debian installation for linux-based thin clients?

2002-10-18 Thread Chris Majewski
alpha software might not be for us. Any other comments (relevant to Debian on thin clients / X terminals) welcome. -chris -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: [OT] secure, minimal Debian installation for linux-based thin clients?

2002-10-18 Thread Chris Majewski
OK, thanks. BTW, how does that differ from running tasksel and not selecting any tasks? Or is that even possible? -chris Noah L. Meyerhans [EMAIL PROTECTED] writes: On Fri, Oct 18, 2002 at 12:41:37PM -0700, Chris Majewski wrote: Now, we're looking to upgrade the Linux on these thin

Re: how to identify the superuser in C

2002-12-10 Thread Chris Shafer
Hello, Some documentation I found helpful when I was doing something similar in a little game I was making. http://www.cs.utah.edu/dept/old/texinfo/glibc-manual-0.02/library_25.html#SEC429 Chris Shafer Live Slow. Sail Fast On Tue, 2002-12-10 at 21:07, Oohara Yuuma wrote: I am working

Re: how to identify the superuser in C

2002-12-11 Thread Chris Shafer
'Dagurashibanipal' von Bidder wrote: On Wed, 2002-12-11 at 03:58, Chris Shafer wrote: Hello, Some documentation I found helpful when I was doing something similar in [...] Just wondering... Content-Type: multipart/mixed instead of multipart/signed. Your mailer buggy? cheers -- vbi

Re: Report to Recipient(s)

2003-02-25 Thread Chris Shafer
, Chris pgp0.pgp Description: PGP signature

Re: OT: Consensus

2003-03-11 Thread Chris Spencer
better than ignoring it and just posting any old topic. It's also better than having a moderated list. I dislike filtering on OT: because I think some real messages might get filtered. -Chris -- They that can give up essential liberty to obtain a little temporary safety deserve neither liberty nor

Re: Why PHP is parsing not only .php

2003-04-03 Thread Chris Francy
them to have a .txt extension. Chris --- Yoss [EMAIL PROTECTED] wrote: Hello. Please, take a look at this: http://www.milc.com.pl/aa.php.txt Why PHP is parsing file with .php.txt extension? I think that is a security hole, because in easy way we can imagine that thereis php script

Re: VPN gateway

2003-05-29 Thread Chris Caldwell
me know. :) DK Haven't had time to try this out with our VPN concentrator yet, but I did find this: http://www.cloudchaser.net/linux/Freeswan_Cisco_howto.txt -- Chris Caldwell Information Systems Coordinator, Enterprise Systems Information Systems and Services, The George Washington University

Re: nautilus and portmapper port 111

2003-06-10 Thread Chris Caldwell
some of the Nautilus extras or vfs extrase are causing the dependency. - -- Chris Caldwell Information Systems Coordinator, Enterprise Systems Information Systems and Services, The George Washington University caldwell @ gwu . edu | +1 202.994.4674 (w) | +1 202.409.0878 (c) http

Re: recommendations for FTP server

2003-06-20 Thread Chris Caldwell
, I never use FTP except to make anonymous downloads available. There have been too many problems with many FTP servers in the past. Adding SSL to a standard FTP session also presents the problem that many standard FTP clients (at least on Windows) do not support this configuration. -- Chris

Bug#198560: uw-imapd: uw-imapd operates on any file in the filesytem, not just mailboxes

2003-06-23 Thread Chris Ruvolo
://www.washington.edu/imap/IMAP-FAQs/index.html#5.1 Please change this option for uw-imapd and uw-imapd-ssl. Thank you, -Chris -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: crontab failure for daylight savings

2003-10-07 Thread Chris Niekel
other people take a look at their systems? Same here, doing a TZ=GMT hwclock gives the hardwareclock in GMT. Apparently, hwclock looks at your timezone and displays the clock in your timezone. Greetings, Chris Niekel -- I've been down so long, if I'd cheer up, I'd still be depressed

Re: (php?) bug exploit report

2004-01-20 Thread Chris Morris
database/etc passwords used by the exploited website, possibly, depending on file system permissions, at most files belonging to the same user, even with safe mode on. This might then have let them find another way of attacking. -- Chris Those who do not remember the past are condemned to repeat

Re: name based virtual host and apache-ssl - thanx

2004-03-25 Thread Chris Morris
and definitely not www.sales.mycompany.com So I have a feeling that * would match 'com' or 'org' but nothing more useful. Though it may vary from browser to browser. -- Chris No candidate achieved quota: | Candidates elected: Action: Eliminate 150 students and| Yes transfer

subscribe

2004-07-19 Thread Chris James
-- Chris James http://www.chrisjames.me.uk -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Apache-SSL and DSA-532

2004-07-26 Thread Chris Morris
DSA-532 contained: Package: libapache-mod-ssl Vulnerability : several Problem-Type : remote Debian-specific: no CVE Ids: CAN-2004-0488 CAN-2004-0700 Is apache-ssl also vulnerable to these? Thanks -- Chris No candidate achieved quota: | Candidates elected: Action

Re: Darn skiddies (ssh login attempts)

2005-04-01 Thread Chris Adams
from many locations this is an excellent way to sleep a little easier. Given that many utilities exist to simplify ssh-agent use it's starting to be feasible to switch user-visible machines over to this configuration in many environments - ease of use is a big carrot. Chris smime.p7s

Re: Darn skiddies (ssh login attempts)

2005-04-04 Thread Chris Adams
it in a configuration file or storing it in some app's weak password store. Chris -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: Dial-in mgetty line security

1999-11-15 Thread Chris Wagner
At 05:47 PM 11/14/99 -0800, Michael W. Shaffer wrote: Is this adequate to protect from random dialers who might stumble on the modem tone and try logging in to this machine? I think war dialers are a thing of the past really. Are there any other routine actions like this I should take to

[lamagra@DIGIBEL.ORG: proftp advisory]

2000-07-05 Thread Chris Hanlon
- Forwarded message from lamagra [EMAIL PROTECTED] - Delivered-To: [EMAIL PROTECTED] Approved-By: [EMAIL PROTECTED] Delivered-To: [EMAIL PROTECTED] Delivered-To: bugtraq@securityfocus.com X-Mailer: Spruce 0.6.2 for X11 w/smtpio 0.7.6 Date: Mon, 3 Jul 2000 12:40:54 CEST Reply-To:

Re: /dev/fb* permissions, local DoS

2000-12-17 Thread Chris Leishman
, XF4) - but does put pretty colors over the top 1/3 of the screen before cat exits with write error: No space left on device. Chris -- -- Knuth: premature optimization is the root of all evil

Re: /dev/fb* permissions, local DoS

2000-12-17 Thread Chris Leishman
a problem without the crash since any local user can overwrite the console screen with garbage. Regards, Chris -- -- Knuth: premature optimization is the root of all evil

testing distribution security updates?

2001-01-25 Thread Chris Ruvolo
packed be backported or otherwise pushed into testing? How soon? Would you recommend keeping a line in /etc/apt/sources.list for the security server's stable collection if the box is running on testing or unstable packages? Thanks for the info, -Chris PS: Please cc me in responses as I am

Re: OpenSSH and CVS

2001-02-20 Thread Chris Matta
This is easy: as the user that runs the CVS scripts: run ssh-keygen it will run thru and ask where you want the file (~/.ssh/identity will be fine) when prompted for a password just hit return, and again on the next line now copy the contents of ~/.ssh/identity.pub to the

Re: commandlogging

2001-03-05 Thread Chris Niekel
, are in the debian 'acct' package. Greetings, Chris Niekel

Re: Logging practices (and why does it suck in Debian?)

2001-04-18 Thread Chris Boyle
/init.d/sysklogd just before the exit 0 at the end seems to have fixed it: /etc/init.d/console-log $1 /dev/null 21 - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ For my PGP key visit: http://archives.wincoll.ac.uk/finger.php?q=chrisb -BEGIN PGP SIGNATURE- Version

Re: Logging packets from iptables

2001-05-22 Thread Chris Boyle
lines stop that from happening. Hope this helps... - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ For my PGP key visit: http://archives.wincoll.ac.uk/finger.php?q=chrisb -BEGIN PGP SIGNATURE- Version: GnuPG v1.0.4 (GNU/Linux) Comment: For info see http://www.gnupg.org

Re: Problem with logging firewall packets

2001-05-25 Thread Chris Boyle
an exception to that rule. You can probably put a filter in syslog.conf that will just exclude firewall logs from the console by some characteristic like their (presumably) low priority, but I don't know how. Commenting out the lines is a workaround. - -- Chris Boyle - Winchester College - http

Re: wdm security

2001-05-25 Thread Chris Boyle
of the relevant line if it isn't there already. AFAIK you can do it for all servers in /etc/X11/xinit/xserverrc, but as has been said, it should be there by default. - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ For my PGP key visit: http://archives.wincoll.ac.uk/finger.php?q=chrisb

Re: X tcp listening

2001-05-26 Thread Chris Boyle
used when a display manager (kdm, gdm, xdm, ...) is used, and hence whether that xserverrc file will apply to them. Best put the option in /etc/X11/*dm/Xservers as well to make sure. - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ For my PGP key visit: http

Re: Snort

2001-07-10 Thread Chris Stewart
should see a file named '5snort' or something. That is the shell script that mails the report out. Just put it in your crontab to run whenever... --Chris Stewart-- -- Algebraic symbols are used when you do not know what you are talking about. -- Philippe Schnoebelen

Re: Is ident secure?

2001-09-01 Thread Chris Lawrence
six years on the net replying to every email I got with racist, hompohobic, and idiotic comments, but now I'm generally considered a good developer. /sarcasm In all seriousness, I passed on my thoughts to [EMAIL PROTECTED] and hope they act accordingly. Chris -- Chris Lawrence [EMAIL PROTECTED

Re: setuid changes

2001-09-22 Thread Chris Boyle
otherwise marked (by another list of regexps) as active system attacks, though it wasn't difficult to add that feature. Hmm, I'll file a wishlist bug on that when I get around to it. - -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/ ICQ: 24151961 - PGP: http

Re: /dev/log

2001-10-09 Thread Chris Matta
The very nature of syslog allows any system to log to it from a machine that set it is a loghost, so while there may be a DOS to fill up /var/log, its also a feature of syslogd. -- Chrismailto:[EMAIL PROTECTED] Friday, October 05, 2001, 1:41:48 PM, you wrote: S hi

Re: question about something, but don't know if it exists...

2001-11-06 Thread Chris Zubrzycki
On Tuesday, November 6, 2001, at 06:23 AM, Bryan Andersen wrote: [EMAIL PROTECTED] wrote: Hallo there, I really don't know if it should be asked there or somewhere else, but my problem is followin I live in untrusted enviroment which is running 50 computers (it is school and

Re: rogue Chinese crawler

2001-11-23 Thread Chris Wagner
The best way would be to block it at your router with an access list. Blocking it at the box is ok too but that takes a little bit of your resources. And you have to do it on each box on your network you want protected. The router block will protect your entire network in one fell swoop and cost

RE: Squid security

2001-12-04 Thread Chris Massam
the tcp_incoming_address and tcp_outgoing_address - this means squid won't actually listen on the external address, but will use it for external connections. Hope this is off assistance. Regards Chris -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Wednesday, 5 December 2001 17:21

Re: Re: How do I disable (close) ports?

2002-01-16 Thread Chris Hilts
of /etc/services? Try /etc/inetd.conf or /etc/xinetd.conf /etc/services just maps ports to service names. Chris

Re: Re: How do I disable (close) ports?

2002-01-16 Thread Chris Hilts
of /etc/services? Try /etc/inetd.conf or /etc/xinetd.conf /etc/services just maps ports to service names. Chris

Re: root's home world readable

2002-01-21 Thread Chris Francy
be no problems with denying access. I have changed /root to 0700 on all my installations because I am running mysql server. It hasn't broken anything. Chris

Re: scp and sftp

2002-04-01 Thread Chris Reeves
they don't own it (and not in their group) should take care of that problem. They can read it all they want, just not change it. Why not change the users' shell to /usr/bin/menu? Bye, Chris -- http://www.tuxedo.org/~esr/faqs/smart-questions.html __ _ -o

security updates for hppa

2002-04-10 Thread Chris Gray
? I think I installed 'woody' from the 0.9.3 CD. I am also using the 32bit kernel. TIA, Chris. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: Allow root to telnet

2002-04-18 Thread Chris Hilts
, is having telnet listen to, for example, an option? I hope this helps. Chris Hilts [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

GPG subkeys and keyservers

2002-05-09 Thread Chris Flipse
/public.asc meteu:~ 4% gpg --list-key flip pub 1024D/17984F07 2001-10-06 Chris Flipse [EMAIL PROTECTED] uidChris Flipse [EMAIL PROTECTED] uidChris Flipse [EMAIL PROTECTED] sub 1024g/B03178DE 2001-10-06 [expires: 2002-04-04] sub

Re: ROUTEUR ET IDENTD

2002-06-08 Thread Chris Lewis
it could be spoken. If you know that this already exists I would love to know what the number is. :-{} Chris Lewis - Original Message - From: Gerd Koslowski [EMAIL PROTECTED] To: 'Risto Jouhki' [EMAIL PROTECTED]; 'VERBEEK, Francois' [EMAIL PROTECTED] Cc: debian-security@lists.debian.org; 'suardi

Re: ROUTEUR ET IDENTD

2002-06-08 Thread Chris Lewis
as the standard. I have noticed recently that language is more deeply bound to thought than I had realized. ... sorry sounds a little too much like 1984. There is a part of me that likes to invent new words -- currently they are only my words because no one else knows what they mean. Chris Lewis

[translation] NIS and propagation of groups

2002-06-20 Thread Chris Boyle
to any and all who reply. Have a nice evening :-) -- Chris Boyle - Winchester College - http://archives.wincoll.ac.uk/~chrisb/ GPG: B7D86E0F, MSN: [EMAIL PROTECTED], ICQ: 24151961, AIM: kerneloops, Yahoo: kerneloops, IRC: cmb on openprojects.net -- To UNSUBSCRIBE, email to [EMAIL PROTECTED

Re: [translation] NIS and propagation of groups

2002-06-20 Thread Chris Boyle
is the # lowest uid that will be included in the password maps. # MINGID is the lowest gid that will be included in the group maps. MINUID=1000 MINGID=1000 it was 100 in potato. -- Chris Boyle - Debian Developer - aewm++, sapphire, xmmsarts GPG: B7D86E0F, MSN: [EMAIL PROTECTED], ICQ: 24151961, AIM

apache access log

2002-09-25 Thread Chris Martin
/Sep/2002:11:05:44 +0200] \xe3D 302 0 - - 80.142.57.69 - - [25/Sep/2002:11:23:00 +0200] \xe3N 302 0 - - i'm no pro when it comes to apache, but is this something i should worry about? or just another script-kid? thx, .chris

Re: Debian (Unstable) problem with SSH and PAM

2002-10-04 Thread Chris Halls
the latest version from sarge (it'll install on Woody), which contains a full apt-proxy.conf with lots of examples. Or go to the CVS link at http://apt-proxy.sf.net and look at apt-proxy.conf there. Chris pgpPD4uEHtI0M.pgp Description: PGP signature

Re: export problems on security updates?

2002-10-09 Thread Chris Caldwell
regarding the use/import of cryptography. In any case, security updates are usually bug-fixes, not security software, per se. Chris Caldwell Information Systems Coordinator, Enterprise Systems Information Systems and Services, The George Washington University [EMAIL PROTECTED] | +1 202.994.4674 (w

Re: AW: export problems on security updates?

2002-10-10 Thread Chris Caldwell
urging citizens to use cryptography because of ECHELON? Chris Caldwell Information Systems Coordinator, Enterprise Systems Information Systems and Services, The George Washington University [EMAIL PROTECTED] | +1 202.994.4674 (w) | +1 202.409.0878 (c) http://hippocrates.tops.gwu.edu | GPG key ID

[OT] secure, minimal Debian installation for linux-based thin clients?

2002-10-18 Thread Chris Majewski
alpha software might not be for us. Any other comments (relevant to Debian on thin clients / X terminals) welcome. -chris

Re: [OT] secure, minimal Debian installation for linux-based thin clients?

2002-10-18 Thread Chris Majewski
OK, thanks. BTW, how does that differ from running tasksel and not selecting any tasks? Or is that even possible? -chris Noah L. Meyerhans [EMAIL PROTECTED] writes: On Fri, Oct 18, 2002 at 12:41:37PM -0700, Chris Majewski wrote: Now, we're looking to upgrade the Linux on these thin

Re: how to identify the superuser in C

2002-12-10 Thread Chris Shafer
Hello, Some documentation I found helpful when I was doing something similar in a little game I was making. http://www.cs.utah.edu/dept/old/texinfo/glibc-manual-0.02/library_25.html#SEC429 Chris Shafer Live Slow. Sail Fast On Tue, 2002-12-10 at 21:07, Oohara Yuuma wrote: I am working

Re: how to identify the superuser in C

2002-12-11 Thread Chris Shafer
'Dagurashibanipal' von Bidder wrote: On Wed, 2002-12-11 at 03:58, Chris Shafer wrote: Hello, Some documentation I found helpful when I was doing something similar in [...] Just wondering... Content-Type: multipart/mixed instead of multipart/signed. Your mailer buggy? cheers -- vbi

Re: Report to Recipient(s)

2003-02-26 Thread Chris Shafer
, Chris pgpq4t99Uy6Y8.pgp Description: PGP signature

Re: OT: Consensus

2003-03-11 Thread Chris Spencer
better than ignoring it and just posting any old topic. It's also better than having a moderated list. I dislike filtering on OT: because I think some real messages might get filtered. -Chris -- They that can give up essential liberty to obtain a little temporary safety deserve neither liberty nor

Re: Why PHP is parsing not only .php

2003-04-03 Thread Chris Francy
them to have a .txt extension. Chris --- Yoss [EMAIL PROTECTED] wrote: Hello. Please, take a look at this: http://www.milc.com.pl/aa.php.txt Why PHP is parsing file with .php.txt extension? I think that is a security hole, because in easy way we can imagine that thereis php script

Re: VPN gateway

2003-05-28 Thread Chris Caldwell
me know. :) DK Haven't had time to try this out with our VPN concentrator yet, but I did find this: http://www.cloudchaser.net/linux/Freeswan_Cisco_howto.txt -- Chris Caldwell Information Systems Coordinator, Enterprise Systems Information Systems and Services, The George Washington University

Bug#198560: uw-imapd: uw-imapd operates on any file in the filesytem, not just mailboxes

2003-06-23 Thread Chris Ruvolo
://www.washington.edu/imap/IMAP-FAQs/index.html#5.1 Please change this option for uw-imapd and uw-imapd-ssl. Thank you, -Chris

Re: crontab failure for daylight savings

2003-10-07 Thread Chris Niekel
other people take a look at their systems? Same here, doing a TZ=GMT hwclock gives the hardwareclock in GMT. Apparently, hwclock looks at your timezone and displays the clock in your timezone. Greetings, Chris Niekel -- I've been down so long, if I'd cheer up, I'd still be depressed

Re: (php?) bug exploit report

2004-01-20 Thread Chris Morris
database/etc passwords used by the exploited website, possibly, depending on file system permissions, at most files belonging to the same user, even with safe mode on. This might then have let them find another way of attacking. -- Chris Those who do not remember the past are condemned to repeat

Re: name based virtual host and apache-ssl - thanx

2004-03-25 Thread Chris Morris
and definitely not www.sales.mycompany.com So I have a feeling that * would match 'com' or 'org' but nothing more useful. Though it may vary from browser to browser. -- Chris No candidate achieved quota: | Candidates elected: Action: Eliminate 150 students and| Yes transfer

Chris Luton/CBR/IPAustralia is out of the office.

2004-06-10 Thread Chris . Luton
I will be out of the office starting 09/06/2004 and will not return until 27/06/2004. I will respond to your message when I return.

Re: On Mozilla-* updates

2005-07-30 Thread Chris Adams
a backwards-compatibility bug - not a decision I'm entirely happy about but it's definitely proven to be the better course so far. Chris smime.p7s Description: S/MIME cryptographic signature

Re: Using multicast for security updates

2006-02-23 Thread Chris Evans
On Feb 23, 2006, at 4:22 PM, Edward Faulkner wrote: On Fri, Feb 24, 2006 at 11:13:35AM +1100, Geoff Crompton wrote: When you say The server runs a tracker, are you explaining bittorrent, or do the security.debian.org servers actually run a tracker at the moment? I was just explaining

Re: Problems after sendmail security upgrade

2006-03-24 Thread Chris Hilts
. - -- Chris Hilts [EMAIL PROTECTED] Say it with flowers -- Send them a triffid! -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.2.2 (MingW32) iD8DBQFEJC6g98ixrK2vMtARAoQzAKCJppzEOmLupmqX5UPhlU+b93EXAwCgk25D dZWT1UyV8F/OVYomGj51m7M= =JayI -END PGP SIGNATURE- -- To UNSUBSCRIBE, email

Re: spooky windows script

2007-05-08 Thread Chris Adams
exploits. Chris smime.p7s Description: S/MIME cryptographic signature

Re: Why not have firewall rules by default?

2008-01-30 Thread Chris Ferguson
Am 2008-01-23 09:19:01, schrieb William Twomey: It's my understanding (and experience) that a Debian system by default is vulnerable to SYN flooding (at least when running services) and other such mischeif. I was curious as to why tcp_syncookies (and similar things) are not enabled by

  1   2   >