Bug#520819: egroupware-calendar: XML-RPC interface posts as admin when normal user is logged in

2009-03-22 Thread Kjetil Kjernsmo
Package: egroupware-calendar Version: 1.4.004-2.dfsg-4.1 Severity: important Tags: lenny, security All, I've been working to get the KDE PIM suite Kontact to work with eGroupWare Calendar. I ran into some problems, where the symptom was that allthough the data was entered into the database it

Re: Serious bug in security update for Crypt::CBC

2006-03-15 Thread Kjetil Kjernsmo
and instead suggest the workaround. Best, Kjetil -- Kjetil Kjernsmo Information Systems Developer Opera Software ASA pgpQXF0ABTsYf.pgp Description: PGP signature

Re: Unusual spam recently - hummm

2004-06-05 Thread Kjetil Kjernsmo
becomes as widespread as personal homepages, it could be really useful. So, let me also plug another bug report of mine, let KAddressbook export FOAF: http://bugs.kde.org/show_bug.cgi?id=72653 If I only had time to write the code... :-) Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist

Re: Unusual spam recently - hummm

2004-06-05 Thread Kjetil Kjernsmo
becomes as widespread as personal homepages, it could be really useful. So, let me also plug another bug report of mine, let KAddressbook export FOAF: http://bugs.kde.org/show_bug.cgi?id=72653 If I only had time to write the code... :-) Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist

Re: Unusual spam recently - hummm

2004-06-03 Thread Kjetil Kjernsmo
spammy thing about the message, a few hammy things can let it pass through nevertheless. It is straightforward to set this up using the Exim4 backports and SA. Vennlig Tiddeli-bom, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED

Re: Unusual spam recently - hummm

2004-06-03 Thread Kjetil Kjernsmo
On torsdag 3. juni 2004, 20:53, Alvin Oga wrote: you have to post process your emails after you already received it.   ...and then it is a bit late to bounce, isn't it...? Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL

Re: Unusual spam recently - hummm

2004-06-03 Thread Kjetil Kjernsmo
spammy thing about the message, a few hammy things can let it pass through nevertheless. It is straightforward to set this up using the Exim4 backports and SA. Vennlig Tiddeli-bom, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED

Re: Unusual spam recently - hummm

2004-06-03 Thread Kjetil Kjernsmo
On torsdag 3. juni 2004, 20:53, Alvin Oga wrote: you have to post process your emails after you already received it.   ...and then it is a bit late to bounce, isn't it...? Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL

Re: Large, constant incoming traffic

2004-05-18 Thread Kjetil Kjernsmo
On tirsdag 18. mai 2004, 14:17, Javier Fernández-Sanguino Peña wrote: On Thu, May 13, 2004 at 09:02:45PM +0200, Kjetil Kjernsmo wrote: Hm, chkrootkit says that eth0 is not promiscuous... And as I said, I don't think I ever got Snort to work right... :-) Are you sure that's not a bug

Re: Large, constant incoming traffic

2004-05-18 Thread Kjetil Kjernsmo
On tirsdag 18. mai 2004, 14:17, Javier Fernández-Sanguino Peña wrote: On Thu, May 13, 2004 at 09:02:45PM +0200, Kjetil Kjernsmo wrote: Hm, chkrootkit says that eth0 is not promiscuous... And as I said, I don't think I ever got Snort to work right... :-) Are you sure that's not a bug

Re: Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
a lot for the help! Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC -- To UNSUBSCRIBE, email to [EMAIL PROTECTED

Re: Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
I've been wasting, I spent almost two full days, in a very critical period... But I do not expect to be charged for the bandwidth, no... Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED

Re: Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
On torsdag 13. mai 2004, 20:37, Gian Piero Carrubba wrote: Il gio, 2004-05-13 alle 19:53, Kjetil Kjernsmo ha scritto: [...] 19:41:32.083993 217.77.34.162.2090 226.58.55.41.1434: udp 376 [ttl 1] 19:41:32.192344 217.77.34.162.2090 234.247.236.46.1434: udp 376 [ttl 1] A switched lan

Re: Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
On torsdag 13. mai 2004, 22:10, Florian Weimer wrote: * Kjetil Kjernsmo: Oh, I see. But one thing I do not understand, it doesn't seem like this traffic is directed at me, since it's not my address that's the destination...? Are they routing their traffic through me or something? It's

Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
, but it is very slow... Thanks for reading this far, and, well, your ideas on what I can do would be much appreciated. Best, Kjetil - -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage

Re: Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
a lot for the help! Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
I've been wasting, I spent almost two full days, in a very critical period... But I do not expect to be charged for the bandwidth, no... Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED

Re: Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
On torsdag 13. mai 2004, 20:37, Gian Piero Carrubba wrote: Il gio, 2004-05-13 alle 19:53, Kjetil Kjernsmo ha scritto: [...] 19:41:32.083993 217.77.34.162.2090 226.58.55.41.1434: udp 376 [ttl 1] 19:41:32.192344 217.77.34.162.2090 234.247.236.46.1434: udp 376 [ttl 1] A switched lan

Re: Large, constant incoming traffic

2004-05-13 Thread Kjetil Kjernsmo
On torsdag 13. mai 2004, 22:10, Florian Weimer wrote: * Kjetil Kjernsmo: Oh, I see. But one thing I do not understand, it doesn't seem like this traffic is directed at me, since it's not my address that's the destination...? Are they routing their traffic through me or something? It's

Re: Update of security-critical outdated packages

2004-01-16 Thread Kjetil Kjernsmo
so often, an occasional fuse is just one-in-many... Oh well...: On Thursday 15 January 2004 19:51, Rich Puhek wrote: Kjetil Kjernsmo wrote: Again, that's not how I read DSA-297. They advise using newer versions of snort because it recognizes newer attacks. Any security holes in snort

Re: Update of security-critical outdated packages

2004-01-16 Thread Kjetil Kjernsmo
so often, an occasional fuse is just one-in-many... Oh well...: On Thursday 15 January 2004 19:51, Rich Puhek wrote: Kjetil Kjernsmo wrote: Again, that's not how I read DSA-297. They advise using newer versions of snort because it recognizes newer attacks. Any security holes in snort

Update of security-critical outdated packages

2004-01-15 Thread Kjetil Kjernsmo
the small number of critical security-related packages that I feel needs some discussion. Best, Kjetil - -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net

Re: Update of security-critical outdated packages

2004-01-15 Thread Kjetil Kjernsmo
. Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Update of security-critical outdated packages

2004-01-15 Thread Kjetil Kjernsmo
the small number of critical security-related packages that I feel needs some discussion. Best, Kjetil - -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net

Re: Update of security-critical outdated packages

2004-01-15 Thread Kjetil Kjernsmo
. Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: another kernel vulnerability

2004-01-05 Thread Kjetil Kjernsmo
-2.4.24 package? Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC -- To UNSUBSCRIBE, email to [EMAIL PROTECTED

Re: another kernel vulnerability

2004-01-05 Thread Kjetil Kjernsmo
-2.4.24 package? Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: 2.4.18-bf2.4 version confusion, patches?

2004-01-04 Thread Kjetil Kjernsmo
this, at least not in boldface as it should be... :-) Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: 2.4.18-bf2.4 version confusion, patches?

2004-01-04 Thread Kjetil Kjernsmo
this, at least not in boldface as it should be... :-) Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: Attempts to poison bayesian systems

2003-12-29 Thread Kjetil Kjernsmo
with BAYES_99. However, it seems like SA has no other rules that match these spams, so they seldom get above my reject-at-smtp threshold. Is it possible to make a rule to match this practice? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer

Re: Attempts to poison bayesian systems

2003-12-29 Thread Kjetil Kjernsmo
with BAYES_99. However, it seems like SA has no other rules that match these spams, so they seldom get above my reject-at-smtp threshold. Is it possible to make a rule to match this practice? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer

Re: have the compromized debian servers been cleaned?

2003-12-05 Thread Kjetil Kjernsmo
On Friday 05 December 2003 08:22, Mo Zhen Guang wrote: Hi, I am going to install a few new debian servers, but I worry about the integratity of the packages because of the incident of compromised debian servers some days ago. Can anybody confirm me if these servers are clean now? The

Re: Upgrading Kernels...

2003-12-05 Thread Kjetil Kjernsmo
On Thursday 04 December 2003 18:48, Eric D Nielsen wrote: I'm a little confused as to how/when I should upgrade my kernel. I'm not subscribed to this list a present, so please include me in the cc. OK. I'm a rather new user myself, but to ease the workload on the security team, who allready

Re: have the compromized debian servers been cleaned?

2003-12-05 Thread Kjetil Kjernsmo
On Friday 05 December 2003 08:22, Mo Zhen Guang wrote: Hi, I am going to install a few new debian servers, but I worry about the integratity of the packages because of the incident of compromised debian servers some days ago. Can anybody confirm me if these servers are clean now? The

Re: Upgrading Kernels...

2003-12-05 Thread Kjetil Kjernsmo
On Thursday 04 December 2003 18:48, Eric D Nielsen wrote: I'm a little confused as to how/when I should upgrade my kernel. I'm not subscribed to this list a present, so please include me in the cc. OK. I'm a rather new user myself, but to ease the workload on the security team, who allready

Re: When will kernel-image-2.4.23 be available ?

2003-12-03 Thread Kjetil Kjernsmo
On Wednesday 03 December 2003 20:57, Phillip Hofmeister wrote: You may wish to look at the make-kpkg(kernel-package) package. It takes your stock 2.4.23 source and makes it into a nice .deb file for you. Note: This option is for those who have a working .config file. Experience in making

Re: Improved Debian Project Emergency Communications (was Re: communication structures crumbled)

2003-11-28 Thread Kjetil Kjernsmo
, to what extent I would myself be vulnerable. Also, I'm not a regular IRC user, so it didn't occur to me at the time that it was an alternative for gathering information. Besides, how is it with signatures on IRC? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski

Re: Improved Debian Project Emergency Communications (was Re: communication structures crumbled)

2003-11-28 Thread Kjetil Kjernsmo
, to what extent I would myself be vulnerable. Also, I'm not a regular IRC user, so it didn't occur to me at the time that it was an alternative for gathering information. Besides, how is it with signatures on IRC? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski

Re: Uhm, so, what happened...?

2003-11-26 Thread Kjetil Kjernsmo
On Tuesday 25 November 2003 13:29, Alan James wrote: On Tue, 25 Nov 2003 12:09:11 +0100, Kjetil Kjernsmo [EMAIL PROTECTED] wrote: I bet there are a lot of users running around scared, not knowing what to do really... Any advices for us?? Keep your eye on http://www.wiggy.net/debian/status

Re: Uhm, so, what happened...?

2003-11-26 Thread Kjetil Kjernsmo
On Tuesday 25 November 2003 13:29, Alan James wrote: On Tue, 25 Nov 2003 12:09:11 +0100, Kjetil Kjernsmo [EMAIL PROTECTED] wrote: I bet there are a lot of users running around scared, not knowing what to do really... Any advices for us?? Keep your eye on http://www.wiggy.net/debian/status

Uhm, so, what happened...?

2003-11-25 Thread Kjetil Kjernsmo
on how you see it.., But I mean, /.! :-) I bet there are a lot of users running around scared, not knowing what to do really... Any advices for us?? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED

Uhm, so, what happened...?

2003-11-25 Thread Kjetil Kjernsmo
on how you see it.., But I mean, /.! :-) I bet there are a lot of users running around scared, not knowing what to do really... Any advices for us?? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED

unsubscribe

2003-09-07 Thread Kjetil Kjernsmo
Vennlig Tiddeli-bom, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC -- To UNSUBSCRIBE, email to [EMAIL

Re: unsubscribe

2003-09-07 Thread Kjetil Kjernsmo
On Sunday 07 September 2003 18:59, Kjetil Kjernsmo wrote: To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Damn, damn, damn! I can't believe I actually did this Me, who get so irritated by people who don't manage to read the final couple of lines... Oh well

unsubscribe

2003-09-07 Thread Kjetil Kjernsmo
Vennlig Tiddeli-bom, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: unsubscribe

2003-09-07 Thread Kjetil Kjernsmo
On Sunday 07 September 2003 18:59, Kjetil Kjernsmo wrote: To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Damn, damn, damn! I can't believe I actually did this Me, who get so irritated by people who don't manage to read the final couple of lines... Oh well

Re: Simple e-mail virus scanner

2003-08-20 Thread Kjetil Kjernsmo
anyone else with bounces that go to the wrong person... Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: Simple e-mail virus scanner

2003-08-20 Thread Kjetil Kjernsmo
not clear to me who gets the bounce, it would be the the sender on the envelope, but that's [EMAIL PROTECTED] in this case, right? And that's something I wouldn't want to happen... Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer

Re: Simple e-mail virus scanner

2003-08-20 Thread Kjetil Kjernsmo
anyone else with bounces that go to the wrong person... Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: Simple e-mail virus scanner

2003-08-20 Thread Kjetil Kjernsmo
not clear to me who gets the bounce, it would be the the sender on the envelope, but that's [EMAIL PROTECTED] in this case, right? And that's something I wouldn't want to happen... Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer

Simple e-mail virus scanner

2003-08-19 Thread Kjetil Kjernsmo
, does anybody know about any such approach? Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Simple e-mail virus scanner

2003-08-19 Thread Kjetil Kjernsmo
, does anybody know about any such approach? Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Passwordless Authentication (was Re: How to reduce sid security)

2003-08-01 Thread Kjetil Kjernsmo
failed... Is there a Very Verbose Guide to Passwordless Authentication with SSH somewhere...? :-) Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net

Re: XP box inside the firewall

2003-08-01 Thread Kjetil Kjernsmo
it upon myself to make sure that the box will not hurt the internal network or the rest of the Internet. Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http

Passwordless Authentication (was Re: How to reduce sid security)

2003-08-01 Thread Kjetil Kjernsmo
failed... Is there a Very Verbose Guide to Passwordless Authentication with SSH somewhere...? :-) Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net

Re: XP box inside the firewall

2003-08-01 Thread Kjetil Kjernsmo
it upon myself to make sure that the box will not hurt the internal network or the rest of the Internet. Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http

XP box inside the firewall

2003-07-30 Thread Kjetil Kjernsmo
-- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

XP box inside the firewall

2003-07-30 Thread Kjetil Kjernsmo
-- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC

Re: Removing invalid keys from keyring

2003-03-29 Thread Kjetil Kjernsmo
On Thursday 27 March 2003 08:53, Lars Ellenberg wrote: On Wed, Mar 26, 2003 at 05:28:35PM +0100, Kjetil Kjernsmo wrote: Is there a way to remove revoked/expired and otherwise invalid or useless keys from a GPG keyring, in batch? well, I do not know how to automatically list only invalid

Re: Removing invalid keys from keyring

2003-03-29 Thread Kjetil Kjernsmo
On Thursday 27 March 2003 08:53, Lars Ellenberg wrote: On Wed, Mar 26, 2003 at 05:28:35PM +0100, Kjetil Kjernsmo wrote: Is there a way to remove revoked/expired and otherwise invalid or useless keys from a GPG keyring, in batch? well, I do not know how to automatically list only invalid

Removing invalid keys from keyring

2003-03-26 Thread Kjetil Kjernsmo
or useless keys from a GPG keyring, in batch? I once downloaded the 4500 keys that were closest to me, but many of them are invalid now, and I'd like to remove those in a quick way? Are there possibly any scripts lying around? Cheers, Kjetil - -- Kjetil Kjernsmo Astrophysicist/IT Consultant

Removing invalid keys from keyring

2003-03-26 Thread Kjetil Kjernsmo
or useless keys from a GPG keyring, in batch? I once downloaded the 4500 keys that were closest to me, but many of them are invalid now, and I'd like to remove those in a quick way? Are there possibly any scripts lying around? Cheers, Kjetil - -- Kjetil Kjernsmo Astrophysicist/IT Consultant

Re: is iptables enough?

2003-03-19 Thread Kjetil Kjernsmo
, if that is what you've got. Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/OpenPGP KeyID: 6A6A0BBC -- To UNSUBSCRIBE, email

Re: is iptables enough?

2003-03-19 Thread Kjetil Kjernsmo
in the network, but couldn't make too much sense of it... [1] http://www.coyotelinux.com/ [2] http://people.freebsd.org/~picobsd/picobsd.html Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL

Re: is iptables enough?

2003-03-19 Thread Kjetil Kjernsmo
in the network, but couldn't make too much sense of it... [1] http://www.coyotelinux.com/ [2] http://people.freebsd.org/~picobsd/picobsd.html Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL

Re: security.debian.org down?

2003-03-10 Thread Kjetil Kjernsmo
On Monday 10 March 2003 21:41, Jeremy Drake wrote: I can ping security.debian.org, but cannot use http or ftp. It just hangs. non-us.debian.org is the same box, and having the same troubles. Is this just me? AOL... No response on port 80. I'm in Oslo, Norway. Best, Kjetil -- Kjetil

Re: security.debian.org down?

2003-03-10 Thread Kjetil Kjernsmo
On Monday 10 March 2003 21:41, Jeremy Drake wrote: I can ping security.debian.org, but cannot use http or ftp. It just hangs. non-us.debian.org is the same box, and having the same troubles. Is this just me? AOL... No response on port 80. I'm in Oslo, Norway. Best, Kjetil -- Kjetil

Re: Bug #173254 Submitted: Snort In Stable Unusable

2002-12-17 Thread Kjetil Kjernsmo
is made available in a separate archive, and people can apt-get them from there as they do with security updates. Just a thought. Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED

Re: Bug #173254 Submitted: Snort In Stable Unusable

2002-12-17 Thread Kjetil Kjernsmo
is made available in a separate archive, and people can apt-get them from there as they do with security updates. Just a thought. Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED

Re: Where to install the firewall scripts

2002-12-14 Thread Kjetil Kjernsmo
http://www.debian.org/doc/manuals/securing-debian-howto/ch-sec-services.en.html#s-firewall-setup (wow, that has been updated since I did this... :-) ) Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED

Re: Where to install the firewall scripts

2002-12-14 Thread Kjetil Kjernsmo
http://www.debian.org/doc/manuals/securing-debian-howto/ch-sec-services.en.html#s-firewall-setup (wow, that has been updated since I did this... :-) ) Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED

Re: test of non-subscribed user

2002-12-02 Thread Kjetil Kjernsmo
in a arms-race with the spammers that requires the spam-tools to updated more frequently than the normal release-cycle would accomodate for, but that's another story. Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED

Re: test of non-subscribed user

2002-12-02 Thread Kjetil Kjernsmo
? If this is true, it could also account for the obvious lack of intelligence... :-) Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/

Re: test of non-subscribed user

2002-12-02 Thread Kjetil Kjernsmo
in a arms-race with the spammers that requires the spam-tools to updated more frequently than the normal release-cycle would accomodate for, but that's another story. Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL

Spammers using a non-existant address as return-path

2002-11-25 Thread Kjetil Kjernsmo
as I can. But, is there something I _should_ do in this situation, like including some text in the bounce saying that this address has never existed, and is being abused by spammers? If yes, _how_ should I do it? I hope this is the right forum to ask... Cheers, Kjetil -- Kjetil Kjernsmo

Re: Spammers using a non-existant address as return-path

2002-11-25 Thread Kjetil Kjernsmo
getting some trouble with it. Thanks for the reply anyway! Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/ -- To UNSUBSCRIBE, email to [EMAIL

Spammers using a non-existant address as return-path

2002-11-25 Thread Kjetil Kjernsmo
as I can. But, is there something I _should_ do in this situation, like including some text in the bounce saying that this address has never existed, and is being abused by spammers? If yes, _how_ should I do it? I hope this is the right forum to ask... Cheers, Kjetil -- Kjetil Kjernsmo

Re: Spammers using a non-existant address as return-path

2002-11-25 Thread Kjetil Kjernsmo
getting some trouble with it. Thanks for the reply anyway! Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/

Re: Debian kernel update?

2002-11-20 Thread Kjetil Kjernsmo
it in this release. Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe

Re: Debian kernel update?

2002-11-20 Thread Kjetil Kjernsmo
it in this release. Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/

AIDE output after unclean shutdown

2002-11-14 Thread Kjetil Kjernsmo
unelegantly shut down, so I assume that it has something to do with that, and not actually an intrusion attempt, but just to be sure: Are these modules known to change if a computer is shut down like this? (BTW, I'm hardly using any of them). Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist

AIDE output after unclean shutdown

2002-11-14 Thread Kjetil Kjernsmo
unelegantly shut down, so I assume that it has something to do with that, and not actually an intrusion attempt, but just to be sure: Are these modules known to change if a computer is shut down like this? (BTW, I'm hardly using any of them). Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist

Re: spam

2002-11-12 Thread Kjetil Kjernsmo
for this with exim? :) Isn't this just about what Marc does with Exim and Spamassassin...? http://marc.merlins.org/linux/exim/sa.html He's even got Exim-4 debs with this stuff there. Or was it something else you had in mind? Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic

Re: spam

2002-11-12 Thread Kjetil Kjernsmo
for this with exim? :) Isn't this just about what Marc does with Exim and Spamassassin...? http://marc.merlins.org/linux/exim/sa.html He's even got Exim-4 debs with this stuff there. Or was it something else you had in mind? Cheers, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic

AIDE Information Overload

2002-10-22 Thread Kjetil Kjernsmo
with the old, but then, I should keep the old, because there are too many changes for me to keep up and be certain that nothing Bad[tm] as slipped in But if I do, the problem just keeps growing... So I hope the kind folks here can offer some advice... :-) Best, Kjetil - -- Kjetil Kjernsmo

AIDE Information Overload

2002-10-22 Thread Kjetil Kjernsmo
with the old, but then, I should keep the old, because there are too many changes for me to keep up and be certain that nothing Bad[tm] as slipped in But if I do, the problem just keeps growing... So I hope the kind folks here can offer some advice... :-) Best, Kjetil - -- Kjetil Kjernsmo

Re: Vulnerabilities found by Nessus

2002-10-15 Thread Kjetil Kjernsmo
On Tuesday 15 October 2002 13:56, Yven Leist wrote: On Tuesday 15 October 2002 13:33, Kjetil Kjernsmo wrote: And I haven't been able to downgrade (hints are welcome! :-) ), but I do not have any testing or unstable Just put the following in lines in /etc/apt/preferences Package: * Pin

Re: Vulnerabilities found by Nessus

2002-10-15 Thread Kjetil Kjernsmo
in the plugin: report to the nessus development team. Uh-oh, slowly now, I'm a complete newbie in these things... :-) How do I see if it breaks? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED

Re: Vulnerabilities found by Nessus

2002-10-15 Thread Kjetil Kjernsmo
On Tuesday 15 October 2002 14:59, Javier Fernández-Sanguino Peña wrote: jOn Tue, Oct 15, 2002 at 02:11:51PM +0200, Kjetil Kjernsmo wrote: On Tuesday 15 October 2002 13:59, Javier Fernández-Sanguino Peña wrote: Try to reproduce this behavior. You can launch the attacks manually

Vulnerabilities found by Nessus

2002-10-15 Thread Kjetil Kjernsmo
to be real (as opposed to a Qpopper hole it also reported, but that was based on the version number only, and I guess the patch there hsa been backported), so I'm seeking advice on what to do with this Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer

Re: Vulnerabilities found by Nessus

2002-10-15 Thread Kjetil Kjernsmo
On Tuesday 15 October 2002 13:56, Yven Leist wrote: On Tuesday 15 October 2002 13:33, Kjetil Kjernsmo wrote: And I haven't been able to downgrade (hints are welcome! :-) ), but I do not have any testing or unstable Just put the following in lines in /etc/apt/preferences Package: * Pin

Re: Vulnerabilities found by Nessus

2002-10-15 Thread Kjetil Kjernsmo
in the plugin: report to the nessus development team. Uh-oh, slowly now, I'm a complete newbie in these things... :-) How do I see if it breaks? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL

Re: Vulnerabilities found by Nessus

2002-10-15 Thread Kjetil Kjernsmo
On Tuesday 15 October 2002 14:59, Javier Fernández-Sanguino Peña wrote: jOn Tue, Oct 15, 2002 at 02:11:51PM +0200, Kjetil Kjernsmo wrote: On Tuesday 15 October 2002 13:59, Javier Fernández-Sanguino Peña wrote: Try to reproduce this behavior. You can launch the attacks manually

Re: harden-clients idea

2002-10-08 Thread Kjetil Kjernsmo
careless with other packages. How would the admin be warned? Oh, wasn't that the point with the harden-clients package? If you attempt to install a Bad[tm] client, you will be told, because it conflicts with harden-clients? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski

harden-clients idea

2002-10-08 Thread Kjetil Kjernsmo
to this list, please keep me on the CC) Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski-orienteer/Orienteer/Mountaineer [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Homepage: http://www.kjetil.kjernsmo.net/

Re: harden-clients idea

2002-10-08 Thread Kjetil Kjernsmo
careless with other packages. How would the admin be warned? Oh, wasn't that the point with the harden-clients package? If you attempt to install a Bad[tm] client, you will be told, because it conflicts with harden-clients? Best, Kjetil -- Kjetil Kjernsmo Astrophysicist/IT Consultant/Skeptic/Ski

Re: Uh-oh. Cracked allready. I think...

2002-05-27 Thread Kjetil Kjernsmo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! Back after the weekend. I've done a bit of reading though. On Fri, 24 May 2002, Reagan Blundell wrote: On Fri, May 24, 2002 at 02:23:38PM +0200, Kjetil Kjernsmo wrote: 6346/tcp filteredgnutella filtered means there's no reply coming

Re: Uh-oh. Cracked allready. I think...

2002-05-24 Thread Kjetil Kjernsmo
burden on the rest of the net. That is, except for you guys... :-) Your help is greatly appreciated! On 23 May 2002, Tim Haynes wrote: Kjetil Kjernsmo [EMAIL PROTECTED] writes: To address this first: It is the gnutella server that causes alarm, so is there anything I could have done that would

Re: Uh-oh. Cracked allready. I think...

2002-05-24 Thread Kjetil Kjernsmo
it is limited what kind of damage intruders can do through that port. Best, Kjetil - -- Kjetil Kjernsmo Recent astrophysics graduate Problems worthy of attack University of Oslo, NorwayProve their worth by hitting back E-mail: [EMAIL PROTECTED

Re: Uh-oh. Cracked allready. I think...

2002-05-24 Thread Kjetil Kjernsmo
on the rest of the net. That is, except for you guys... :-) Your help is greatly appreciated! On 23 May 2002, Tim Haynes wrote: Kjetil Kjernsmo [EMAIL PROTECTED] writes: To address this first: It is the gnutella server that causes alarm, so is there anything I could have done that would

  1   2   >