Re: [open...@openssl.org: OpenSSL Security Advisory]

2023-02-14 Thread Fabian Wenk
Hello On 13.02.2023 22:31, Hugo Koji Kobayashi wrote: On Mon, Feb 13, 2023 at 06:02:56PM +0100, Dag-Erling Smørgrav wrote: Natalino Picone writes: > Is there an ETA for this OpenSSL update to reach the base? Last Tuesday. Are there any plans of applying these patches to releng/12.3,

Re: portscans and blackhole

2014-01-29 Thread Fabian Wenk
Hello On 20.01.14 12:31, sa9k063 wrote: can someone please explain: one of my boxes gets portscanned often by some likely infected laptops. While having set net.inet.tcp.blackhole=1 there are still messages like +Limiting closed port RST response from 348 to 200 packets/sec According to

Re: UNS: Re: NTP security hole CVE-2013-5211?

2014-01-16 Thread Fabian Wenk
Hello Dag-Erling On 14.01.2014 14:11, Dag-Erling Smørgrav wrote: Garrett Wollman woll...@bimajority.org writes: For a pure client, I would suggest restrict default ignore ought to be the norm. (Followed by entries to unrestrict localhost over v4 and v6.) Pure clients shouldn't use ntpd(8).

Re: NTP security hole CVE-2013-5211?

2014-01-16 Thread Fabian Wenk
Hello Dag-Erling On 14.01.2014 14:06, Dag-Erling Smørgrav wrote: Cristiano Deana cristiano.de...@gmail.com writes: I tried several workaround with config and policy, and ended up you MUST have 4.2.7 to stop these kind of attacks. Doesn't restrict noquery block monlist in 4.2.6? It does at

Re: UNS: Re: NTP security hole CVE-2013-5211?

2014-01-12 Thread Fabian Wenk
Hello Xin On 10.01.2014 06:16, Xin Li wrote: On 1/9/14, 7:14 PM, Garrett Wollman wrote: On Thu, 09 Jan 2014 21:08:41 +0700, Eugene Grosbein eu...@grosbein.net said: Other than updating ntpd, you can filter out requests to 'monlist' command with 'restrict ... noquery' option that disables

Full-Disclosure posting FreeBSD 9.1 ftpd Remote Denial of Service

2013-02-04 Thread Fabian Wenk
Hello A few days ago there was the posting FreeBSD 9.1 ftpd Remote Denial of Service [1] on the Full-Disclosure mailing list. Is this a known issue to the FreeBSD community? [1] http://lists.grok.org.uk/pipermail/full-disclosure/2013-February/089583.html There are also many

Re: Single user mode

2012-05-16 Thread Fabian Wenk
Hello On 16.05.2012 11:06, Tom Evans wrote: You can fix boot order in the BIOS, but a BIOS can be reset simply by removing the BIOS battery briefly. In addition to that, many BIOS will also offer a boot menu option - which cannot be disabled - allowing the user to choose which device to boot

Re: FreeBSD Security Advisory FreeBSD-SA-11:09.pam_ssh

2011-12-30 Thread Fabian Wenk
Hello Patrick On 29.12.2011 21:06, Patrick Proniewski wrote: No updates needed to update system to 8.1-RELEASE-p7. # uname -r 8.1-RELEASE-p5 I have rebooted (twice). That's strange. The -pX will only be updated when the kernel has been rebuilt. It is in /usr/src/sys/conf/newvers.sh (on

Re: Which algorithm is used for IP fragmentation ID?

2011-09-06 Thread Fabian Wenk
Hello Just for your information. On 04.09.2011 23:00, Fabian Wenk wrote: Do you see some other e-mail address (or hostname / IP address) in the header lines of the e-mail? Or do you see the URL where the click here is pointing to (better do not click on them)? Ian had answered privately

Re: Which algorithm is used for IP fragmentation ID?

2011-09-06 Thread Fabian Wenk
Hello On 06.09.2011 12:57, Fabian Wenk wrote: I have sent an e-mail with all the details to the admins of the mailing list, as I suspect we have a rouge subscriber in the list. Is is a bad idea only to trust the spell correction for a foreign language, obviously it should be rogue instead

Re: Which algorithm is used for IP fragmentation ID?

2011-09-04 Thread Fabian Wenk
Hello Ian Sorry, that I can not help on your initial question, but something with the e-mail you got is very strange. On 04.09.2011 19:19, RW wrote: On Sun, 4 Sep 2011 18:04:37 +0200 ian ivy wrote: Hello, Sorry, but link and images are unreached for me, so I do not have chance to review

Re: Intermediate doc hacker project: Document security releases on the web site

2010-12-25 Thread Fabian Wenk
Hello Doug On 24.12.10 21:16, Doug Barton wrote: Currently (unless I'm really missing something) there is no listing of security release on the web site. The closest we get is looking up What about the Security Advisories at [1]? It is linked from the main page. [1]

Re: Anti-virus software for 7.0

2008-04-30 Thread Fabian Wenk
Hello Anthony On 30.04.08 17:49, Anthony J. Palik wrote: Does anyone know where I can find anti-virus software for 7.0? I tried using Bitdefender's but it says it is not supported by 7.0 during installation. Did you try with installed misc/compat6x from the Ports? I did use some legacy

Re: ident daemon: oIdentd creating a lot of processes

2008-01-20 Thread Fabian Wenk
Hello Anjang Aki wrote: i'm using oidentd-2.0.8 installed through /usr/ports/security/oidentd for ident authentication is this normal for those who are using oidentd as ident daemon? or should i try other ident daemon? Is there a reason why you do not use the identd from FreeBSD itself?

Re: security weakness

2007-06-06 Thread Fabian Wenk
Hello Sam Is this computer running FreeBSD or Mac OS X? If a computer does answer ICMP PING requests, then this is not a security problem. Even if turned off this will not really help in protecting it from abuse (if there are ways to do it). Do you run a mailserver on the computer which