Re: Upgrading Multiple Servers?

2004-05-10 Thread Kenneth E. Lussier
On Sun, 2004-05-09 at 21:16, Kurth Bemis wrote: We have several servers, (OK lots of servers) that we use for hosting websites, mail servers, firewalls, and billing and provisioning. It's a real pain to ssh to each of the boxen and repeat the same process again and again to upgrade

Re: Upgrading Multiple Servers?

2004-05-10 Thread Tom Buskey
On Sun, 2004-05-09 at 21:16, Kurth Bemis wrote: We have several servers, (OK lots of servers) that we use for hosting websites, mail servers, firewalls, and billing and provisioning. It's a real pain to ssh to each of the boxen and repeat the same process again and again to upgrade

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Mark Komarinski
On Mon, May 10, 2004 at 06:47:42AM -0400, Travis Roy wrote: This isn't about Comcast blocking port 25 to prevent you from running a server.. Recently my parents (that use Comcast) can no longer connect to port 25 of my server.. one that is legit, has correct reverse and MX records. Has

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Travis Roy
Mark Komarinski wrote: On Mon, May 10, 2004 at 06:47:42AM -0400, Travis Roy wrote: This isn't about Comcast blocking port 25 to prevent you from running a server.. Recently my parents (that use Comcast) can no longer connect to port 25 of my server.. one that is legit, has correct reverse and

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Tom Buskey
This isn't about Comcast blocking port 25 to prevent you from running a server.. Recently my parents (that use Comcast) can no longer connect to port 25 of my server.. one that is legit, has correct reverse and MX records. Has anybody else seen this? Damn, looks like mine is blocked too.

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Dan Jenkins
Travis Roy wrote: This isn't about Comcast blocking port 25 to prevent you from running a server.. Recently my parents (that use Comcast) can no longer connect to port 25 of my server.. one that is legit, has correct reverse and MX records. Has anybody else seen this? I've heard rumors of

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Tom Buskey
Can anybody suggest a workaround. Run the mail server on a different port redirect. *sigh* There are some services that will do this. i'm looking them up right now. http://www.dyndns.org/services/mailhop/relay.html is one ___ gnhlug-discuss

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Jeff Kinz
On Mon, May 10, 2004 at 09:45:05AM -0400, Travis Roy wrote: My parents use outlook and connect to my server. I allow the connection. They don't run a server. I just had another friend try to connect and he got thru also. Might be a local thing. I had a friend that got his port 80 blocked

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Travis Roy
They might be blocked by an outgoing filter too. I just found that my work does that. zonedit.com has an smtp test that gets to my server Yah, but it would have to be comcast's filter. Since my parents don't have any filter. You could try tricks with netcat or iptables to redirect on your

Re: Upgrading Multiple Servers?

2004-05-10 Thread Kurth Bemis
This looks like the ideal solution. I like the fact that I can see each machine, and the build status. After looking around his site, I found a lot of useful tools, so I wget'ed a local copy for myself! Thank you for suggesting this tool. Chris Brenton wrote: On Sun, 2004-05-09 at 21:16,

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread bscott
On Mon, 10 May 2004, at 6:47am, [EMAIL PROTECTED] wrote: Recently my parents (that use Comcast) can no longer connect to port 25 of my server.. one that is legit, has correct reverse and MX records. Has anybody else seen this? More and more ISPs are blocking port 25 outbound on consumer

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread bscott
On Mon, 10 May 2004, at 10:25am, [EMAIL PROTECTED] wrote: Yah, that's what I'm going to have to do.. BLAH.. stupid comcast. Get used to it. More and more ISPs are adding this. And I cannot say I entirely disagree with the policy. -- Ben Scott [EMAIL PROTECTED] | The opinions expressed in

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Steven W. Orr
On Monday, May 10th 2004 at 06:47 -0400, quoth Travis Roy: =This isn't about Comcast blocking port 25 to prevent you from running a =server.. = =Recently my parents (that use Comcast) can no longer connect to port 25 =of my server.. one that is legit, has correct reverse and MX records. = =Has

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Travis Roy
Steven W. Orr wrote: On Monday, May 10th 2004 at 06:47 -0400, quoth Travis Roy: =This isn't about Comcast blocking port 25 to prevent you from running a =server.. = =Recently my parents (that use Comcast) can no longer connect to port 25 =of my server.. one that is legit, has correct reverse

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Travis Roy
[EMAIL PROTECTED] wrote: On Mon, 10 May 2004, at 10:25am, [EMAIL PROTECTED] wrote: Yah, that's what I'm going to have to do.. BLAH.. stupid comcast. Get used to it. More and more ISPs are adding this. And I cannot say I entirely disagree with the policy. Why? They are blocking access to an

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread David Roberts
Hmmm - seems like every month or so my wife complains about my speakeasy.net account... Why do we have to pay 60+ dollars for DSL when Mary down the street has ComCast and gets higher speed internet access for less money...? My response to her follows to the tune of: Because I want my (2)

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Steven W. Orr
On Monday, May 10th 2004 at 10:52 -0400, quoth Travis Roy: =Steven W. Orr wrote: = =I just find it stupid that they would do something like this. It's one =thing to block port 80 since running a webserver is against the AUP/TOS, =but to block access to an outside mail server smells of crushing

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread bscott
On Mon, 10 May 2004, at 10:53am, [EMAIL PROTECTED] wrote: Yah, that's what I'm going to have to do.. BLAH.. stupid comcast. Get used to it. More and more ISPs are adding this. And I cannot say I entirely disagree with the policy. Why? Mail abuse. A great deal of spam and other

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Bruce Dawson
On Mon, 2004-05-10 at 10:52, Travis Roy wrote: I just find it stupid that they would do something like this. It's one thing to block port 80 since running a webserver is against the AUP/TOS, but to block access to an outside mail server smells of crushing the competition and limiting

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread bscott
On Mon, 10 May 2004, at 11:04am, [EMAIL PROTECTED] wrote: The solution is to add yet more and more entries into my mailertable file in sendmail. Why don't you just relay everything through your ISP? -- Ben Scott [EMAIL PROTECTED] | The opinions expressed in this message are those of the

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Travis Roy
Bruce Dawson wrote: On Mon, 2004-05-10 at 10:52, Travis Roy wrote: I just find it stupid that they would do something like this. It's one thing to block port 80 since running a webserver is against the AUP/TOS, but to block access to an outside mail server smells of crushing the competition

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Travis Roy
[EMAIL PROTECTED] wrote: On Mon, 10 May 2004, at 10:53am, [EMAIL PROTECTED] wrote: Yah, that's what I'm going to have to do.. BLAH.. stupid comcast. Get used to it. More and more ISPs are adding this. And I cannot say I entirely disagree with the policy. Why? Mail abuse. A great deal

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Brian
On Mon, 2004-05-10 at 10:35, Steven W. Orr wrote: And I'm guaranteed that my IP address won't change. Ever. Until, of course, it changes... I wouldn't give their guarantee too much faith... ___ gnhlug-discuss mailing list [EMAIL PROTECTED]

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Brian
On Mon, 2004-05-10 at 11:20, Travis Roy wrote: Okay.. for the -LAST TIME- my parents are -NOT- I repeat are -NOT- running any kind of sever at all, NONE! They are trying to connect to MY server that is NOT on the comcast network to send mail. (maybe it's already bee covered?) Why don't they

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Bruce Dawson
On Mon, 2004-05-10 at 11:20, Travis Roy wrote: Bruce Dawson wrote: On Mon, 2004-05-10 at 10:52, Travis Roy wrote: I just find it stupid that they would do something like this. It's one thing to block port 80 since running a webserver is against the AUP/TOS, but to block access to an

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Travis Roy
Brian wrote: On Mon, 2004-05-10 at 11:20, Travis Roy wrote: Okay.. for the -LAST TIME- my parents are -NOT- I repeat are -NOT- running any kind of sever at all, NONE! They are trying to connect to MY server that is NOT on the comcast network to send mail. (maybe it's already bee covered?)

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Bob Bell
On Mon, May 10, 2004 at 06:47:42AM -0400, Travis Roy [EMAIL PROTECTED] wrote: This isn't about Comcast blocking port 25 to prevent you from running a server.. Recently my parents (that use Comcast) can no longer connect to port 25 of my server.. one that is legit, has correct reverse and MX

SLUG meeting Monday 5/10 7pm Morse 301 on GPS software.

2004-05-10 Thread Robert E. Anderson
The Topic is: Global Positioning System (GPS) software for Linux. The next meeting is Monday 5/10/2004 at 7pm in Morse Hall room 301. We will go over some of the software available under Linux to plot your position on a map. What commercial software currently does, and how close the available

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Mark Komarinski
On Mon, May 10, 2004 at 11:42:56AM -0400, Travis Roy wrote: Brian wrote: Why don't they just use Comcasts provided SMTP server? What is the real benefit of having them send through your server? It's always been setup that way.. And I think the comcast server requires some kind of auth,

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Bill Mullen
On Mon, 10 May 2004, Travis Roy wrote: I just find it stupid that they would do something like this. It's one thing to block port 80 since running a webserver is against the AUP/TOS, but to block access to an outside mail server smells of crushing the competition and limiting choice. I

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Bill Mullen
On Mon, 10 May 2004, Mark Komarinski wrote: On Mon, May 10, 2004 at 11:42:56AM -0400, Travis Roy wrote: Brian wrote: Why don't they just use Comcasts provided SMTP server? What is the real benefit of having them send through your server? It's always been setup that way.. And I think

Re: Upgrading Multiple Servers?

2004-05-10 Thread Chris Brenton
On Mon, 2004-05-10 at 10:29, Kurth Bemis wrote: After looking around his site, I found a lot of useful tools, so I wget'ed a local copy for myself! Ya its pretty amazing the wealth of Linux tools that Bill has come up with. Its one of the few sites I pull down to my cellphone every day (just

Re: Nagios Question

2004-05-10 Thread Brian Chabot
Cole Tuininga wrote: On Sun, 2004-05-09 at 04:48, Brian Chabot wrote: I tried using ping as su - nagios I'm assuming from this that nagios has a valid shell. From a security perspective, you may want to change that. Just a suggestion. 8) Good point, but will changing the shell to /dev/null

Re: Nagios Question

2004-05-10 Thread Cole Tuininga
On Mon, 2004-05-10 at 13:22, Brian Chabot wrote: Good point, but will changing the shell to /dev/null or /dev/false screw up any of the services checks? ...or should I just try it and find out? I have it set up to use /bin/false and haven't run into any problems yet. While our use is fairly

Anti-spam methods (was: Re: Comcast blocking port 25? (not what you think))

2004-05-10 Thread Paul Iadonisi
On Mon, 2004-05-10 at 11:44, Bob Bell wrote: However, recently I was reading about SPF and discovered MSA. Although MSA may optionally do more sophisticated things, in a limited format you can run a normal SMTP server implementing authentication on the MSA port (TCP port 587), and non-MSA

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread Ken D'Ambrosio
What you can do -- which is what we did -- is set up SMTP to occur on an arbitrarily high port (that won't be blocked), and tie that port to SMTP on the server. NOTE: I'm talking about a situation where complete control is had on a server, and outbound port 25 is blocked for a client. Not

Re: Upgrading Multiple Servers?

2004-05-10 Thread William Stearns
Good afternoon, Kurth, Chris, all, On Mon, 10 May 2004, Chris Brenton wrote: On Mon, 2004-05-10 at 10:29, Kurth Bemis wrote: After looking around his site, I found a lot of useful tools, so I wget'ed a local copy for myself! It's obviously available. I might suggest that since

Re: Comcast blocking port 25? (not what you think)

2004-05-10 Thread bscott
On Mon, 10 May 2004, at 11:23am, [EMAIL PROTECTED] wrote: Mail abuse. A great deal of spam and other mail abuse comes from computers on consumer feeds that are incorrectly configured as a mail relay (don't ask me how, but it happens more often then you would think), or have been compromised

Re: Anti-spam methods (was: Re: Comcast blocking port 25? (not what you think))

2004-05-10 Thread Bob Bell
On Mon, May 10, 2004 at 02:21:02PM -0400, Paul Iadonisi [EMAIL PROTECTED] wrote: I was going to bring up MSA, too. It should be noted, however, that MSA doesn't *require* authentication. Check out RFC 2476 for details. The RFC does lists authentication as an optional feature, however. I

Re: Anti-spam methods (was: Re: Comcast blocking port 25? (not what you think))

2004-05-10 Thread bscott
On Mon, 10 May 2004, at 2:21pm, [EMAIL PROTECTED] wrote: I'm basically on the side of individual freedoms and don't like that port 25 egress filtering is being implemented by broadband vendors. Geeks (I include myself in this category) like to romanticize this idea of the big, happy Internet,

Re: Anti-spam methods (was: Re: Comcast blocking port 25? (not what you think))

2004-05-10 Thread bscott
On Mon, 10 May 2004, at 6:00pm, [EMAIL PROTECTED] wrote: I do predict that spammers will adapt to this new authenticated email world rather quickly. Namely, they will modify their spam-cannon-laden viruses ... That seems likely, but how much email is send from virus-attacked computers?

Re: Upgrading Multiple Servers?

2004-05-10 Thread Cole Tuininga
Never used it, but is: http://www.systemimager.org/ What you're looking for? In any case, whatever you end up using would probably make for a good LUG presentation ... *poke poke* 8) -- So, make a real effort to avoid getting sucked into all the expensive lifestyle habits of typical

Re: Nagios Question

2004-05-10 Thread Cole Tuininga
On Sun, 2004-05-09 at 04:48, Brian Chabot wrote: I tried using ping as su - nagios I'm assuming from this that nagios has a valid shell. From a security perspective, you may want to change that. Just a suggestion. 8) -- So, make a real effort to avoid getting sucked into all the expensive