On Fri, Dec 11, 1998, [EMAIL PROTECTED] wrote:

> This may be nothing, but recently an aggressive scan was issued 
> against my machines searching for ssl_gcache on port 12345. All
> IPs in a particular class C was scanned, but only that particular
> port.
> 
> A security audit on that particular daemon may be in order.

Although the ssl_gcache is secure against those attacks (it checks the sender
against the localhost) this program is already gone in the mod_ssl 2.1
version. Please upgrade to mod_ssl 2.1.

                                       Ralf S. Engelschall
                                       [EMAIL PROTECTED]
                                       www.engelschall.com

______________________________________________________________________
Apache Interface to SSLeay (mod_ssl)   www.engelschall.com/sw/mod_ssl/
Official Support Mailing List               [EMAIL PROTECTED]
Automated List Manager                       [EMAIL PROTECTED]

Reply via email to