Re: ping22: can not kill this process

2008-01-05 Thread Paul Hink
Thomas Hochstein [EMAIL PROTECTED] wrote: Raphael Geissert schrieb: disable_functions = dl, phpinfo, system, mail, include, shell_exec, exec, include()? I don't want to imagine how many scripts will break. A script that doesn't run is a *very* secure script. That depends on the error

Re: Document the bug fix policy regarding PHP Safe Mode

2005-07-22 Thread Paul Hink
Florian Weimer [EMAIL PROTECTED] wrote: Multi-user servers where most users have shell access are a non-issue as far as PHP Safe Mode is concerned. The desire behind Safe Mode is that your users can upload arbitrary PHP scripts, and still don't get shell access to the box. No. PHP Safe Mode

Re: Bad press related to (missing) Debian security

2005-06-27 Thread Paul Hink
Adam Majer [EMAIL PROTECTED] wrote: Jan Lühr wrote: In it's last one to two years Woody was starving out of security updates. (Samba, Mozilla, Kernel, etc.). These are much less of a problem since they deal with either Intranet only applications (Samba), Intranet is not a synonym for

Re: [SECURITY] [DSA 667-1] New PostgreSQL packages fix arbitrary library loading

2005-02-04 Thread Paul Hink
Repasi Tibor [EMAIL PROTECTED] wrote: However, I'm missing DSA-665 on the DSA mailing list ... is it possible it wasn't posted? http://www.debian.org/security/faq#missing Paul -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Re: woody kernel image

2005-01-30 Thread Paul Hink
Michelle Konzack [EMAIL PROTECTED] wrote: Am 2005-01-29 22:56:39, schrieb [EMAIL PROTECTED]: This should be posted somewhere easy to find so that folks know. Definitely it should be! IMO debian-announce or debian-security-announce would be appropriate. Where is it posted that the dropped

Re: woody kernel image

2005-01-30 Thread Paul Hink
Paul Hink [EMAIL PROTECTED] wrote: Michelle Konzack [EMAIL PROTECTED] wrote: Am 2005-01-29 22:56:39, schrieb [EMAIL PROTECTED]: Where is it posted that the dropped support for 2.4.18? It was on debian-devel and debian-kernel Both of which are lists mainly intended for developers

security.debian.org stable/updates Release file outdated

2005-01-07 Thread Paul Hink
Hi! The Release file of stable/updates on security.debian.org and its OpenPGP signature seem to be missing an update after the latest security updates for Woody were released yesterday: | Release 06-Jan-2005 16:4318k | Release.gpg 06-Jan-2005 16:43 1k

Re: security.debian.org stable/updates Release file outdated

2005-01-07 Thread Paul Hink
Paul Hink [EMAIL PROTECTED] wrote: The Release file of stable/updates on security.debian.org and its OpenPGP signature seem to be missing an update after the latest security updates for Woody were released yesterday: [...] This probably is the reason for apt-check-sigs to complain about

Re: logcheck.ignore entries

2004-04-14 Thread Paul Hink
Russell Coker [EMAIL PROTECTED] wrote: Try this one: CRON\[.*\]:( )?\(pam_unix\) session (opened)|(closed) for user (root)|(mail) [...] For having two different words match you need to put each word in braces, (opened|closed) is the same as opene(d|c)losed. No! session (opened|closed)

Re: logcheck.ignore entries

2004-04-14 Thread Paul Hink
Jeff Coppock [EMAIL PROTECTED] wrote: On 14 Apr 2004 20:35:19 GMT Paul Hink [EMAIL PROTECTED] wrote: Russell Coker [EMAIL PROTECTED] wrote: Try this one: CRON\[.*\]:( )?\(pam_unix\) session (opened)|(closed) for user (root)|(mail) [...] session (opened|closed) for user matches

Re: port forwarding issues

2003-07-01 Thread Paul Hink
Peter A. Felvegi [EMAIL PROTECTED] wrote: i'm about to set up port forwarding on a firewall to be able to reach some hosts on the lan from the outside. i wish to use iptables prerouting rules. my question is, is there a way to detect the port forwarding, and/or get info about the host i

Re: port forwarding issues

2003-07-01 Thread Paul Hink
Peter A. Felvegi [EMAIL PROTECTED] wrote: i'm about to set up port forwarding on a firewall to be able to reach some hosts on the lan from the outside. i wish to use iptables prerouting rules. my question is, is there a way to detect the port forwarding, and/or get info about the host i

Re: Woody security updates

2003-04-25 Thread Paul Hink
Matthias Faulstich [EMAIL PROTECTED] wrote: Does this jigdo - file load the latest security updates or are there any other places to download / create CD-Images? AFAIK no. I think you'll have to apt-get update apt-get upgrade immediately after the installation because CDs can never be as