On Fridayen den 3 May 2002 14.30, Florin wrote:
> --=-=-=
> Name : shorewall Relocations: (not relocateable)
> Version : 1.2.12 Vendor: MandrakeSoft
> Release : 1mdk Build Date: Fri May 3 15:15:45
Nice!
While you're at it, could you please fix Bastille with attached patch thanks.
--
Regards // Oden Eriksson
diff -naur Bastille/Bastille/API.pm Bastille.oden/Bastille/API.pm
--- Bastille/Bastille/API.pm Wed Feb 13 19:53:50 2002
+++ Bastille.oden/Bastille/API.pm Fri May 3 16:11:12 2002
@@ -436,7 +436,7 @@
# Die if this distribution is unsupported
my $supported=0;
- foreach $supported_distro ( "DB2.2", "RH6.0","RH6.1","RH6.2","RH7.0","RH7.1","RH7.2","MN6.0","MN6.1","MN7.0","MN7.1","MN7.2","MN8.0","MN8.1","HP-UX11.00","HP-UX11.11","SE7.2","TB7.0" ) {
+ foreach $supported_distro ( "DB2.2", "RH6.0","RH6.1","RH6.2","RH7.0","RH7.1","RH7.2","MN6.0","MN6.1","MN7.0","MN7.1","MN7.2","MN8.0","MN8.1","MN8.2","MN8.3","HP-UX11.00","HP-UX11.11","SE7.2","TB7.0" ) {
if ( $supported_distro eq $distro ) {
$supported=1;
}
diff -naur Bastille/InteractiveBastille Bastille.oden/InteractiveBastille
--- Bastille/InteractiveBastille Thu Feb 14 04:53:45 2002
+++ Bastille.oden/InteractiveBastille Fri May 3 16:08:03 2002
@@ -555,7 +555,7 @@
$data =~ s/\bRH\b/$supported_versions/;
}
if ($data =~ /\bMN\b/) {
- my $supported_versions = 'MN6.0 MN6.1 MN6.2 MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2';
+ my $supported_versions = 'MN6.0 MN6.1 MN6.2 MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2 MN8.3';
$data =~ s/\bMN\b/$supported_versions/;
}
if ($data =~ /\bDB\b/) {
diff -naur Bastille/Questions.txt Bastille.oden/Questions.txt
--- Bastille/Questions.txt Tue Mar 5 00:56:59 2002
+++ Bastille.oden/Questions.txt Fri May 3 16:10:19 2002
@@ -247,7 +247,7 @@
number here."
QUESTION: "What security level should we set? [3]"
DEFAULT_ANSWER: 3
-REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1
+REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2 MN8.3
YN_TOGGLE: 0
YES_CHILD: generalperms_1_2_mandrake
NO_CHILD: generalperms_1_2_mandrake
@@ -273,7 +273,7 @@
have a need to access. This option will increase your system security, but
there's a chance it will inconvenience your users."
QUESTION: "Would you like us to modify your file permissions?"
-REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1
+REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2 MN8.3
YN_TOGGLE: 1
YES_EXP:
NO_EXP:
@@ -660,7 +660,7 @@
077 - No one on the system can read or write your files."
QUESTION: "What umask would you like to set for users on the system? [077]"
DEFAULT_ANSWER: 077
-REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 HP-UX DB SE TB
+REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2 MN8.3 HP-UX DB SE TB
YN_TOGGLE: 0
YES_EXP:
NO_EXP:
@@ -711,7 +711,7 @@
We recommend that you answer No to this question."
QUESTION: "Should we prevent the PATH from including the current directory? [Y]"
DEFAULT_ANSWER: Y
-REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1
+REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2 MN8.3
YN_TOGGLE: 1
YES_EXP:
NO_EXP:
@@ -964,7 +964,7 @@
We'd suggest that you deactivate this feature."
QUESTION: "May we disable Autologin? [Y]"
DEFAULT_ANSWER: Y
-REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1
+REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2 MN8.3
YN_TOGGLE: 1
YES_EXP:
NO_EXP:
@@ -1321,7 +1321,7 @@
Bastille can configure these to provide the first warning when a cracker
has compromised your system."
QUESTION: "Would you like to set up nightly security checks? [N]"
-REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1
+REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2 MN8.3
YN_TOGGLE: 1
REQUIRE_FILE_EXISTS: /usr/share/msec/diff_check.sh /usr/share/msec/security.sh /usr/share/msec/security_check.sh /usr/share/msec/promisc_check.sh /usr/bin/promisc_check /usr/bin/msec_find
DEFAULT_ANSWER: Y
@@ -1580,7 +1580,7 @@
This is pretty minimalist and should only be undertaken if you understand
how and when to turn the remaining services on."
QUESTION: "Should we disable most chkconfig'd services?"
-REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1
+REQUIRE_DISTRO: MN7.0 MN7.1 MN7.2 MN8.0 MN8.1 MN8.2 MN8.3
YN_TOGGLE: 1
DEFAULT_ANSWER: N
YES_EXP: