Re: [CentOS] CENTOS 5 incoming SFTP

2013-10-05 Thread Earl Ramirez
On Sat, 2013-10-05 at 18:04 -0400, John McKelvey wrote: > Hello... > > OK, I have been checking... NSLOOKUP ... sees the linux box... Linux box > can ping all other boxes on the LAN (they are all windows) as well as > internet. > I was thinking that it can be a DNS issue, however you are able

Re: [CentOS] Is Java insecure ?

2013-10-05 Thread Mark LaPierre
On 10/05/2013 10:21 AM, Patrick wrote: > Hi Everyone > > I am considering learning Java. There have been well publicized Java > security incidents recently that make me not want to learn it. > > However it's in Centos and I trust Centos, are the concerns in the media > blown out of proportion ?

Re: [CentOS] CENTOS 5 incoming SFTP

2013-10-05 Thread John McKelvey
Hello... OK, I have been checking... NSLOOKUP ... sees the linux box... Linux box can ping all other boxes on the LAN (they are all windows) as well as internet. With firewalls off on both any windows box as well as firewall off on linux box it can not be pinged, much less move files or log on

Re: [CentOS] Samba problem

2013-10-05 Thread Les Mikesell
On Sat, Oct 5, 2013 at 2:01 PM, John R Pierce wrote: > On 10/5/2013 7:31 AM, Joseph Hesse wrote: >> My real home network consists of my wife's Windows computer and multiple >> Linux desktops. I backup my computers using rsync. For the windows >> computer I looked at Cygwin which has the rsync pro

Re: [CentOS] Is Java insecure ?

2013-10-05 Thread Les Mikesell
On Sat, Oct 5, 2013 at 2:04 PM, John R Pierce wrote: > On 10/5/2013 7:59 AM, Fernando Cassia wrote: >> 5. Applets are on the way out, most of the action these days is on >> server-side Java, and on client-side Java, not browser java. > > I suspect you meant to say... > > 5. Applets are on the way

Re: [CentOS] Is Java insecure ?

2013-10-05 Thread Fernando Cassia
On Sat, Oct 5, 2013 at 3:04 PM, John R Pierce wrote: > I suspect you meant to say... > > 5. Applets are on the way out, most of the action these days is on > server-side Java, and on client-side JavaSCRIPT, not browser java. > > client side javascript programming is sometimes called AJAX. Note t

[CentOS] Sound Volume Setting At Login

2013-10-05 Thread Mark LaPierre
Hey all, When I log on my sound level is set at about 35%. I have to use the sound preferences to turn the sound level up every time I log in. Other users on this same system do not have this issue. When they log in their volume is set at 100%. This leads me to believe that there must be somet

Re: [CentOS] SMTP Auth Spam Mail Attack

2013-10-05 Thread John R Pierce
On 10/5/2013 9:19 AM, Paul Shuttleworth wrote: > I have changed the password on the domain in question and they are still > getting in. > I have tried changing the password and sending mail with the old password, > this gets .. relying denied, so SMTP auth is working ok. > I have been through the s

Re: [CentOS] SMTP Auth Spam Mail Attack

2013-10-05 Thread Paul Shuttleworth
> Baseline is, there is or has been a user "jon" usable for SMTP AUTH as > you have shown by the log entry: > > Oct 5 15:17:53 www sendmail[6972]: AUTH=server, > relay=pppoe9.net109-120-27.se1.omkc.ru [109.120.27.9] (may be forged), > authid=jon, mech=LOGIN, bits=0 > > Alexander > Hi Alexander

Re: [CentOS] Unattended install of CentOS in a VM with given login/password?

2013-10-05 Thread Fernando Cassia
On Sat, Oct 5, 2013 at 3:06 PM, John R Pierce wrote: > > pxe boot and provide a kickstart file as part of that pxe > installation. Thanks John! Kickstart seems to be the right solution for this job. FC -- During times of Universal Deceit, telling the truth becomes a revolutionary act - George

Re: [CentOS] SMTP Auth Spam Mail Attack

2013-10-05 Thread Alexander Dalloz
Am 05.10.2013 18:19, schrieb Paul Shuttleworth: > Has anyone any idea how they can be authenticating against SMTP auth with > a username that does not exist on the server ? > > Any pointers towards next steps appreciated, as I am running out of ideas > to try and lock this server down. > > > Che

Re: [CentOS] Unattended install of CentOS in a VM with given login/password?

2013-10-05 Thread John R Pierce
On 10/5/2013 9:37 AM, Fernando Cassia wrote: > Is there a way to make CentOS install unattended, right from the boot > until I can SSH into it?. pxe boot and provide a kickstart file as part of that pxe installation. totally hands free installation if the kickstart answers all the right questi

Re: [CentOS] Is Java insecure ?

2013-10-05 Thread John R Pierce
On 10/5/2013 7:59 AM, Fernando Cassia wrote: > 5. Applets are on the way out, most of the action these days is on > server-side Java, and on client-side Java, not browser java. I suspect you meant to say... 5. Applets are on the way out, most of the action these days is on server-side Java, and o

Re: [CentOS] Samba problem

2013-10-05 Thread John R Pierce
On 10/5/2013 7:31 AM, Joseph Hesse wrote: > My real home network consists of my wife's Windows computer and multiple > Linux desktops. I backup my computers using rsync. For the windows > computer I looked at Cygwin which has the rsync program but decided > instead to map a drive letter on her com

Re: [CentOS] Email access via Android device

2013-10-05 Thread M. Fioretti
On Sat, Oct 05, 2013 10:43:34 AM -0600, Frank Cox wrote: > What is the best way to approach this? the one you already mentioned: > set up fetchmail (or something) to do the pop downloads of incoming > mail, and have some kind of a local imap server running though which > I access the actual mail

Re: [CentOS] Email access via Android device

2013-10-05 Thread Paul Shuttleworth
> I'm pretty sure that this is possible, but I don't currently know enough > about > email to know where to start. > > My main desktop computer runs Centos 6 and my preferred email client is > Sylpheed, which supports both POP and IMAP email, and my "internal > network" has > a static IP address, s

[CentOS] Email access via Android device

2013-10-05 Thread Frank Cox
I'm pretty sure that this is possible, but I don't currently know enough about email to know where to start. My main desktop computer runs Centos 6 and my preferred email client is Sylpheed, which supports both POP and IMAP email, and my "internal network" has a static IP address, so getting acces

[CentOS] Unattended install of CentOS in a VM with given login/password?

2013-10-05 Thread Fernando Cassia
Is there a way to make CentOS install unattended, right from the boot until I can SSH into it?. I'd like being able to boot a new Virtualbox virtual machine right from the CentOS ISO, and then from the Virtualbox host, ssh into the brand new VM client and customize it using SSH shell scripts (SU, y

Re: [CentOS] Is Java insecure ?

2013-10-05 Thread Patrick
On 10/05/2013 12:27 PM, Mihamina RKTMB wrote: > On 10/05/2013 05:21 PM, Patrick wrote: >> Hi Everyone >> >> I am considering learning Java. There have been well publicized Java >> security incidents recently that make me not want to learn it. >> >> However it's in Centos and I trust Centos, are the

Re: [CentOS] Is Java insecure ?

2013-10-05 Thread Mihamina RKTMB
On 10/05/2013 05:21 PM, Patrick wrote: > Hi Everyone > > I am considering learning Java. There have been well publicized Java > security incidents recently that make me not want to learn it. > > However it's in Centos and I trust Centos, are the concerns in the media > blown out of proportion ? A

[CentOS] SMTP Auth Spam Mail Attack

2013-10-05 Thread Paul Shuttleworth
Hi All I have a server which seems to be getting spam relayed through it. The story is this. User reported loads of undeliverables being received so I had a trawl through the logs. So the attacker connects to our server using SMTP AUTH Oct 5 15:17:53 www sendmail[6972]: AUTH=serve

Re: [CentOS] Is Java insecure ?

2013-10-05 Thread Fernando Cassia
On Sat, Oct 5, 2013 at 11:21 AM, Patrick wrote: > However it's in Centos and I trust Centos, are the concerns in the media > blown out of proportion ? 1. In short: Yes, they were blown out of proportion with a high dose of FUD. Read the following analysis specially the last few paragraphs. http:

Re: [CentOS] Is Java insecure ?

2013-10-05 Thread Les Mikesell
On Sat, Oct 5, 2013 at 9:21 AM, Patrick wrote: > Hi Everyone > > I am considering learning Java. There have been well publicized Java > security incidents recently that make me not want to learn it. > > However it's in Centos and I trust Centos, are the concerns in the media > blown out of proport

Re: [CentOS] Samba problem

2013-10-05 Thread Joseph Hesse
On 10/05/2013 03:49 AM, Marios Zindilis wrote: > This intrigued me enough, to fire up two VMs in VirtualBox, one Win7, one > CentOS, bridged network, and copied your Samba configuration, used it as > you pasted it in the original message. > > There are some questionable options in your smb.conf. Fo

[CentOS] Is Java insecure ?

2013-10-05 Thread Patrick
Hi Everyone I am considering learning Java. There have been well publicized Java security incidents recently that make me not want to learn it. However it's in Centos and I trust Centos, are the concerns in the media blown out of proportion ? -Patrick __

Re: [CentOS] Samba problem

2013-10-05 Thread Anthony K
On 05/10/13 05:11, Joseph Hesse wrote: > Hello, > > I am trying to learn how to use Samba. I first just want to get it to > work, then I'll make it better. > I am not concerned about security since everything is on a private network. > I am following the material in "CentOS 6 Linux Server Cookbook

Re: [CentOS] Samba problem

2013-10-05 Thread Marios Zindilis
This intrigued me enough, to fire up two VMs in VirtualBox, one Win7, one CentOS, bridged network, and copied your Samba configuration, used it as you pasted it in the original message. There are some questionable options in your smb.conf. For example, there is an "interfaces" option, which is mea