Re: [CentOS] haproxy + Apache + virtual hosts -> wrong host is displayed

2016-06-24 Thread Alexander Farber
Ok, I had to add ServerAlias for each server, didn't think of it because before I had a mod_rewrite rule to remove the "www." prefix... On Fri, Jun 24, 2016 at 9:58 PM, Alexander Farber < alexander.far...@gmail.com> wrote: > > On CentOS 7.2.1511 I have installed: > haproxy-1.5.14-3.el7.x86_64 > h

[CentOS] haproxy + Apache + virtual hosts -> wrong host is displayed

2016-06-24 Thread Alexander Farber
Hello, I hope my question is not off-topic here. On CentOS 7.2.1511 I have installed: haproxy-1.5.14-3.el7.x86_64 httpd-2.4.6-40.el7.centos.1.x86_64 The /etc/haproxy/haproxy.cfg binds HAProxy to ports 80 and 443 and accepts HTTPS to slova.de: defaults modehttp option

Re: [CentOS] UDP Constant IP Identification Field Fingerprinting Vulnerability

2016-06-24 Thread John R Pierce
On 6/24/2016 9:20 AM, James B. Byrne wrote: We received a notice from our pci-dss auditors respecting this: CVE-2002-0510 The UDP implementation in Linux 2.4.x kernels keeps the IP Identification field at 0 for all non-fragmented packets, which could allow remote attackers to determine that a ta

[CentOS] UDP Constant IP Identification Field Fingerprinting Vulnerability

2016-06-24 Thread James B. Byrne
We received a notice from our pci-dss auditors respecting this: CVE-2002-0510 The UDP implementation in Linux 2.4.x kernels keeps the IP Identification field at 0 for all non-fragmented packets, which could allow remote attackers to determine that a target system is running Linux. The NVD entry f