Re: Timeliness of Debian Security Announceness? (DSA 756-1 Squirrelmail)

2005-07-15 Thread Andreas Barth
* Herwig Wittmann ([EMAIL PROTECTED]) [050714 17:58]: I do not want to rude in any way- please try to excuse my way of putting things, but does anybody have a prediction how probable it is for such a thing to happen again? Is there a role/function in debian that is responsible for reviewing

How to get all security fixes ?

2005-07-15 Thread Jarosław Tabor
Hi all! I've some private network, not connected to internet. The only way to install something is to bring software on CD. Is there any way to download all security updates into CD, so I'will be able to apt-get them ? thanks in advance Jarek -- To UNSUBSCRIBE, email to [EMAIL

Re: How to get all security fixes ?

2005-07-15 Thread Francois Bayart
Jarosław Tabor wrote: Hi all! I've some private network, not connected to internet. The only way to install something is to bring software on CD. Is there any way to download all security updates into CD, so I'will be able to apt-get them ? thanks in advance Jarek You can create

Re: New squid packages 2.4.6-2woody9 restarts very often.

2005-07-15 Thread Holger Schletz
Hi, I installed the reported package on a Woody box and wasn't able to reproduce it either. The problem on my SuSE Box seems to be of a different nature (BTW: I found that the crash is triggered by every numeric IP - I will work around with a redirector that tries to resolve the IP Address to a

Re: How to get all security fixes ?

2005-07-15 Thread Goswin von Brederlow
Jaros³aw Tabor [EMAIL PROTECTED] writes: Hi all! I've some private network, not connected to internet. The only way to install something is to bring software on CD. Is there any way to download all security updates into CD, so I'will be able to apt-get them ? thanks in advance

Versions of shared libraries

2005-07-15 Thread Jarosław Tabor
Hi all! This is probably not the best list, but it may also be important from security point of view. I've tried to check the version of some lib from my program, and it looks, that the only way is to check it by dpkg. As this is not the best way, I think, that it would be a good

Security updates fro non-US

2005-07-15 Thread Jarosław Tabor
Hi all! First of all thank you for help with debian security mirroring. Now I have aditional question: where are security updates for non-US ? I can't find them on security.debian.org. Is this part so perfect that don't require any updates ;-) ? regards Jarek -- To

Re: Security updates fro non-US

2005-07-15 Thread Florian Weimer
* Jarosław Tabor: First of all thank you for help with debian security mirroring. Now I have aditional question: where are security updates for non-US ? non-US should be (mostly) empty by now. Could you tell us which package you are interested in?

Re: Security updates for non-US

2005-07-15 Thread Jarek
Dnia 15-07-2005, pią o godzinie 13:00 +0200, Florian Weimer napisał(a): non-US should be (mostly) empty by now. Could you tell us which package you are interested in? There is no specific package. I'm just testing possible ways for installation of security updates on system which is not

Than you cannot even imagine what it is like to be a real man in bed!

2005-07-15 Thread Timothy
Back To Happy And Healthy Life . . . http://Lancelot.mustajek.info/?aggrievingxtvuyCameroonzctaloft Silence is the most perfect expression of scorn. If we had less statemanship we could get along with fewer battleships. Life imitates art more than art imitates life. The two most

Re: Versions of shared libraries

2005-07-15 Thread Daniel Pittman
On 15 Jul 2005, Jarosław Tabor wrote: Hi all! This is probably not the best list, but it may also be important from security point of view. You were right - this isn't the best list. :/ I've tried to check the version of some lib from my program, and it looks, that the only way is to

Re: Security updates for non-US

2005-07-15 Thread Florian Weimer
Can confirm, that if there will be something in non-US, I will find it on security.debian.org ? non-US has been discontinued in sarge: http://www.debian.org/releases/stable/i386/release-notes/ch-whats-new.en.html#s-non-us Therefore, security updates for packages in non-US are not necessary.

Re: Versions of shared libraries

2005-07-15 Thread Jarosław Tabor
Dnia 15-07-2005, pią o godzinie 21:38 +1000, Daniel Pittman napisał(a): ] ldd -v -r /path/to/my/binary This does not solve the problem. I'm talking about full version number (dpkg -s packagename...). The issue is to know i.e. when library may have security holes. I've checked ldd for few

Re: Light weight IDSes and then some

2005-07-15 Thread Thomas Hochstein
George P Boutwell schrieb: 3) I'd like to provide some limited SFTP (SSH FTP) mechanisms for select individuals, for these I would really like to do away with the shell, but I haven't found away, how can I provide an shell-less SFTP or severely restricted SFTP service for these people? I

Re: Light weight IDSes and then some

2005-07-15 Thread George P Boutwell
On 7/15/05, Alec Berryman [EMAIL PROTECTED] wrote: OpenBSD places all of the user's public_html directories under the Apache chroot. I've found it no hassle to put a symlink in the user's directory, but then again I wasn't doing quotas. Alec, Thanks for the suggestion. I had thought of this,

Re: Light weight IDSes and then some

2005-07-15 Thread Alec Berryman
George P Boutwell on 2005-07-15 10:56:48 -0500: On 7/15/05, Alec Berryman [EMAIL PROTECTED] wrote: OpenBSD places all of the user's public_html directories under the Apache chroot. I've found it no hassle to put a symlink in the user's directory, but then again I wasn't doing quotas.

Re: Light weight IDSes and then some

2005-07-15 Thread George P Boutwell
On 7/15/05, Alec Berryman [EMAIL PROTECTED] wrote: Let me clarify what I said: the directory which holds the content accessible under http://www.example.com/~user/ is physically locate under the chroot, and a symlink to that directory is placed in the user's home directory. Neither the user's

Re: Light weight IDSes and then some

2005-07-15 Thread George P Boutwell
On 7/14/05, DI Peter Burgstaller [EMAIL PROTECTED] wrote: 1) What are some projects/software for light IDS, specifically file checksome/change control. I plan on doing the MD5 checksum floppy as described in the Secuirng How-To, but then I want an software that does that and e-mails my

Affordable - the way medications should be

2005-07-15 Thread Emily
Our service is user-friendly, discreet and completely confidential http://qlfp.41px85mfje4c85m.sottedbbfhm.com Springtime is the land awakening. The March winds are the morning yawn. The course of true love was never easy. If you want the rainbow, you gotta put up with the rain. --

Re: Light weight IDSes and then some

2005-07-15 Thread Steve Kemp
On Fri, Jul 15, 2005 at 11:58:26AM -0500, George P Boutwell wrote: The Security Debian How-To mentions Tripwire. Looking at AIDE and Tripwire in the debian packages repositories it's hard to tell the difference. I'm sure they both do the job, anyone with experience with both these packages

hiii

2005-07-15 Thread sarah
hey, i'm sarah :) Checked your profile Here's site with my pics, my email is on second page http://jwdykcsicdk.WAYNEBRADIE.COM/sa8/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Presenting Home Loans for Americans

2005-07-15 Thread Dustin Chatman
Good day [EMAIL PROTECTED], Did you realize that you don't need to be paying high ratees on your current Mor|gage? If fact ratees are at the lowest they have been at in 50 Years! We are extending refi-nance opportuni.ties unheard of in the industry. How would you feel savving hundreds monthly

Largest collection of Dowlnoadable P0rn D\/D Movies - X480

2005-07-15 Thread Linda Boggs
We have the hottest Pornostars pics and videos inside. Thousands of new photo and clips, including Pornostars movies. See hot Pornostars videos now! Click here for http://aseptic.net.wallkbaby.info/ cool photos and video clips and dvd movies -- ares caretaker cowmen

GET CD AND DOWNLOADS, all software under $99-$15

2005-07-15 Thread Charles
Welcome to VIP Quality Software. http://bgvt.d2haguvoa5v2aed.recoolhhkld.info We think in generalities, but we live in detail. The most profound statements are often said in silence. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact

Re: Light weight IDSes and then some

2005-07-15 Thread Rick Moen
Quoting George P Boutwell ([EMAIL PROTECTED]): The Security Debian How-To mentions Tripwire. Looking at AIDE and Tripwire in the debian packages repositories it's hard to tell the difference. I'm sure they both do the job, anyone with experience with both these packages can describe some of

Old security bugs tagged woody

2005-07-15 Thread Florian Weimer
Many developers close security bugs which are tagged woody only, even though security support for oldstable has not been discontinued officially. How shall we bridge the apparent gap between documented policy and existing practice? Given our resources, I'd say fix the policy. Any objections?

No more penis enlarge ripoffs!

2005-07-15 Thread Bridget
Read this before purchasing penis enlarge products! http://www.xunepa.com/ss/ Only a scientific people can survive in a scientific future. You can change an outfit, you can outfit change, or both. Fine art and pizza delivery, what we do falls neatly in between! The remarkable thing