Re: HELP, my Debian Server was hacked!

2003-04-24 Thread Mathias Gygax
On Don, Apr 24, 2003 at 11:19:34 +0200, Mauro Chiarugi wrote: Il Tue, 22 Apr 2003 17:48:23 -0500 (CDT) David Ehle sì che favelando sibillò: nightly apt-get update apt-get upgrade But if it asks human interaction?? How can i do?? from the apt-get manual page: [...] -y

Re: Root is God? (was: Mutt tmp files)

2001-11-18 Thread Mathias Gygax
On Son, Nov 18, 2001 at 05:08:14 +0100, martin f krafft wrote: excellent. you know what i did: i just remove the root:0:... line from /etc/passwd and /etc/shadow. now i can't be root. that must be perfect security. yeah! before you shout, think twice. this is READ-only on my system. you

Re: Root is God? (was: Mutt tmp files)

2001-11-18 Thread Mathias Gygax
On Son, Nov 18, 2001 at 05:08:14 +0100, martin f krafft wrote: excellent. you know what i did: i just remove the root:0:... line from /etc/passwd and /etc/shadow. now i can't be root. that must be perfect security. yeah! before you shout, think twice. this is READ-only on my system. you don't

Re: Root is God? (was: Mutt tmp files)

2001-11-18 Thread Mathias Gygax
On Son, Nov 18, 2001 at 05:06:21 +0100, martin f krafft wrote: thanks, you just made me laugh! you set lamer detector to orange.

Re: Root is God? (was: Mutt tmp files)

2001-11-16 Thread Mathias Gygax
On Fre, Nov 16, 2001 at 04:13:16AM -0900, Ethan Benson wrote: Root is God. Anything you do on the system is potentially visible to root. this is, with the right patches applied, not true. What's about rsbac? Are there other strategies against root available? root usually has

Re: Root is God? (was: Mutt tmp files)

2001-11-16 Thread Mathias Gygax
On Fre, Nov 16, 2001 at 02:58:48PM +0100, Ralf Dreibrodt wrote: Hi, hi there, Root is God. Anything you do on the system is potentially visible to root. this is, with the right patches applied, not true. well, i thought this is the definition of root. no. with LIDS you can

Re: Root is God? (was: Mutt tmp files)

2001-11-16 Thread Mathias Gygax
On Fre, Nov 16, 2001 at 08:23:27AM -0800, Micah Anderson wrote: No, you can't. No matter how you cut it, root can install a new kernel, sans LIDS and write to his/her home dir. how? replace /boot? this is DENY in my setup. access lilo.conf oder lilo binary? DENY. how do you wanna replace

Re: Root is God? (was: Mutt tmp files)

2001-11-16 Thread Mathias Gygax
On Fre, Nov 16, 2001 at 05:48:11PM +0100, Ralf Dreibrodt wrote: you have just another definition of root. no. we don't have any user concept there. you mean the user with the id 0. this user is really not able to do this. but root after my definition can hit the reset-button, put in a

Re: Root is God? (was: Mutt tmp files)

2001-11-16 Thread Mathias Gygax
On Fre, Nov 16, 2001 at 04:13:16AM -0900, Ethan Benson wrote: Root is God. Anything you do on the system is potentially visible to root. this is, with the right patches applied, not true. What's about rsbac? Are there other strategies against root available? root usually has physical

Re: Root is God? (was: Mutt tmp files)

2001-11-16 Thread Mathias Gygax
On Fre, Nov 16, 2001 at 02:58:48PM +0100, Ralf Dreibrodt wrote: Hi, hi there, Root is God. Anything you do on the system is potentially visible to root. this is, with the right patches applied, not true. well, i thought this is the definition of root. no. with LIDS you can

Re: Root is God? (was: Mutt tmp files)

2001-11-16 Thread Mathias Gygax
On Fre, Nov 16, 2001 at 08:23:27AM -0800, Micah Anderson wrote: No, you can't. No matter how you cut it, root can install a new kernel, sans LIDS and write to his/her home dir. how? replace /boot? this is DENY in my setup. access lilo.conf oder lilo binary? DENY. how do you wanna replace

Re: Root is God? (was: Mutt tmp files)

2001-11-16 Thread Mathias Gygax
On Fre, Nov 16, 2001 at 05:48:11PM +0100, Ralf Dreibrodt wrote: you have just another definition of root. no. we don't have any user concept there. you mean the user with the id 0. this user is really not able to do this. but root after my definition can hit the reset-button, put in a

Re: IDS

2001-11-06 Thread Mathias Gygax
On Die, Nov 06, 2001 at 07:52:08 +0100, Administrator wrote: Hi, re, does anybody can tell me where can I get a Instrusion Detection System's base? I need the signatures of attack... Try this: http://www.lids.org/ LIDS is not a NIDS as it sounds. LIDS is capability and mandatory ACLs

Re: IDS

2001-02-09 Thread Mathias Gygax
On Fre, Feb 09, 2001 at 03:59:02 +0100, NDSoftware wrote: Where i can find a good IDS for Debian ? take a look at snort and the corresponding homepage. NFR isn't yet packaged. -- "Mine! Mine! It's all mine!" -- Daffy Duck -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a

Re: IDS

2001-02-09 Thread Mathias Gygax
On Fre, Feb 09, 2001 at 03:59:02 +0100, NDSoftware wrote: Where i can find a good IDS for Debian ? take a look at snort and the corresponding homepage. NFR isn't yet packaged. -- Mine! Mine! It's all mine! -- Daffy Duck