Your message dated Thu, 03 Nov 2011 12:53:48 +0800
with message-id <1320296028.2232.81.camel@chianamo>
and subject line Re: clamav-unofficial-sigs default si_update_hours?
has caused the Debian Bug report #635828,
regarding clamav-unofficial-sigs: Default si_update_hours leads to requesting 
host's IP being blacklisted
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
635828: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=635828
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: clamav-unofficial-sigs
Version: 3.6-1
Severity: important


The default update interval for the SecuriteInfo databases is every four hours.

Unfortunately, 
http://www.securiteinfo.com/services/clamav_unofficial_malwares_signatures.shtml
makes it clear that downloading these databases more than once per day will be 
considered
abusive and lead to your IP being blacklisted. This has happened to one of my 
servers.

Please consider changing the default si_update_hours to 24 or greater (it 
sounds like 48 or
even 72 hours would be plenty often enough).


-- System Information:
Debian Release: 6.0.2
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.32-5-xen-amd64 (SMP w/1 CPU core)
Locale: LANG=en_GB.UTF-8, LC_CTYPE=C (charmap=UTF-8) (ignored: LC_ALL set to 
en_GB.UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages clamav-unofficial-sigs depends on:
ii  bind9-host [host 1:9.7.3.dfsg-1~squeeze3 Version of 'host' bundled with BIN
ii  clamav           0.97.1+dfsg-1~squeeze1  anti-virus utility for Unix - comm
ii  clamav-daemon    0.97.1+dfsg-1~squeeze1  anti-virus utility for Unix - scan
ii  curl             7.21.0-2                Get a file from an HTTP, HTTPS or 
ii  dnsutils         1:9.7.3.dfsg-1~squeeze3 Clients provided with BIND
ii  gnupg            1.4.10-4                GNU privacy guard - a free PGP rep
ii  rsync            3.0.7-2                 fast remote file copy program (lik

clamav-unofficial-sigs recommends no packages.

clamav-unofficial-sigs suggests no packages.

-- no debconf information



--- End Message ---
--- Begin Message ---
On Thu, 2011-11-03 at 12:52 +0800, Bill Landry wrote:

> Paul, I can and probably will increase the time interval, but please 
> understand that the report is absolutely bogus. Arnaud Jacques 
> (SecuriteInfo admin) himself uses my script and said he has no problem 
> with even an hourly check as long as the signature files are only 
> downloaded when there are changes.

In light of that I am closing this bug report.

-- 
bye,
pabs

http://wiki.debian.org/PaulWise

Attachment: signature.asc
Description: This is a digitally signed message part


--- End Message ---
_______________________________________________
Pkg-clamav-devel mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-clamav-devel

Reply via email to