Re: [SLUG] X authorization

2008-09-07 Thread Chris Collins


On 06/09/2008, at 12:49 PM, jam wrote:


On Saturday 06 September 2008 09:44:12 [EMAIL PROTECTED] wrote:

I need to understand X authorization so if anybody can explain to a
bear of little brain :-)

Once-upon-a-time xhost + would allow anybody to write to your  
display.

That is no longer true


What makes you think that?  There have been some changes to X  
security

over the years, but the fundamental mechanisms are still in place...


saturn is a CentOS 5 machine:

[eeyore] /home/jam [53]% ssh -X saturn xhost +
access control disabled, clients can connect from any host
[eeyore] /home/jam [54]% export DISPLAY=saturn:0  xmessage hello  
world

Error: Can't open display: saturn:0


argh.  WRONG WRONG WRONG.

xhost also uses X protocol to modify the access control, so all your  
first command did was disable access control in your client's X server  
(on eeyore?, not on saturn).


The reason why xhost + doesn't seem to work on a lot of linux systems  
is that TCP sessions are disabled by default in most deployments  
(forcing you to use unix domain sockets), forcing you to use a X11  
protocol forwarder (such as ssh) to get to the Xserver.


If security is not a concern, start the X server on saturn with -ac so  
access control is disabled completely in that server rather than  
trying to xhost it.


C.

--
SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html


Re: Compromised Linux box stories (Re: [SLUG] upgrading complicated installs)

2008-06-02 Thread Chris Collins


On 02/06/2008, at 3:25 PM, Rev Simon Rumble wrote:


This one time, at band camp, Daniel Pittman wrote:


[2]  formmail.  I say no more.


Matt's Script Archive, anyone?


God... no.  make it stop!

I was a #perl op on Efnet back in 2000/2001.  The channel had  
officially disowned Matt and anything to do with him.  The standard  
recommendation being Don't.  Just... don't.


There was even an April Fools Day patch released at some point to  
prevent the execution of code written by Matt Wright based on the  
standard copyright message he used to put in everything.


I vaguely recall somebody hunting down that patch to apply it to a  
production Perl install.


C.
--
Chris Collins [EMAIL PROTECTED]




--
SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html


Re: [SLUG] Network Real-Time Hot Filesystem Replication?

2008-04-07 Thread Chris Collins

Adrian Chadd wrote:

I looked into it about a year ago and I couldn't find any simple way of
doing this using free software. There's CODA/AFS as possible solutions but
they still push the notion of master/slave rather than equal peers, which
Chris mentions he needs (ie, constant synchronisation between each member
rather than periodic pushback..)

Chris, try looking at CODA/AFS support?


OpenAFS was already considered.  R/O replication is a pain, as is the 
whole volume host death problem. (ie: write volume goes away if the host 
holding the volume dies).


I haven't looked at Coda recently.  They still seem to be active (I 
thought they'd all abandoned ship for Intermezzo - seems I was wrong). 
I'll check it out sometime soon.


C.
--
SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html


Re: [SLUG] bugtracking tool

2005-05-25 Thread Chris Collins
I'd have to recommend Mantis Bug Tracker (http://www.mantisbt.org/).

It's a web based bug tracking tool based on MySQL and PHP.

It's most prominent features include ease of use, email notifications,
audit trails etc. More details and a demo server are available at
the homepage above.

HTH

-ChrisOn 5/25/05, Gottfried Szing [EMAIL PROTECTED] wrote:
hi guys,does somebody know a nive OS-bugtracking tool for linux with anwebinterface that is not so bloated like bugzilla but more powerfullthan a spreadsheet? a spreadsheet cannot handle a history for a bug
and bugzilla is to powerful.it would be enough to submit a bug, to maintain a history of the bug(comments, ...) and to categorize a product into components to which abug can be assigned to. optionally attachments and notification of the
bugsumitter and coder would be nice.the users are technicians and developers.any ideas?thanks, gottfried--SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html-- Chris Collinsm: +353 87 4189477e: 
[EMAIL PROTECTED]aim: gosub3000icq: 203915294http://gosub3000.blogspot.com
-- 
SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html

[SLUG] Serial Laplink

2003-01-22 Thread Chris Collins
Hey Folks!

I got me a little problem!  See what you make of it.

I'm trying to set up a serial cable connection between a PC and a laptop
both running Mandrake 8.2.  I've followed all the advice in the
Serial-Laplink Howto, and everything seems ok.  I can create a
connection between the two boxes.  Trouble is, once I try to copy
information between them, one or both of them usually lock up.

Anybody got any ideas?

-Chris

-- 
Chris Collins

e: [EMAIL PROTECTED]
w: http://www.skynet.ie/~whiz
m: +61 422 677630
gpg key available from http://www.skynet.ie/~whiz/gpgkeys/skynet.asc



signature.asc
Description: This is a digitally signed message part