Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread ocean
Squirrel wrote: My server was hacked, and the hacker was nice enough to not cause damage except changing index.php of couple of my websites. The index.php had the following info: Hacked By Top First Warning That's Bug From Your Servers Next Time You Must Be Careful And Fixed Your Site Before

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Jeremy Chadwick
On Wed, Dec 09, 2009 at 06:40:17PM -0600, Squirrel wrote: My server was hacked, and the hacker was nice enough to not cause damage except changing index.php of couple of my websites. The index.php had the following info: Hacked By Top First Warning That's Bug From Your Servers Next Time

Re: PCengines ALIX boot0sio serial input failes

2009-12-10 Thread Stefan Bethke
Am 09.12.2009 um 17:13 schrieb Daniel Braniss: [B]ooting off the CF (using boot0sio), the input 'screwy' at the selection of partition it is ignored, at the OK: prompt from the boot (i had no kernel in the slice), the input is usually doubled: sshooww instead of show which is probably

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Paul Procacci
But far as rtld vulnerability, doesn't it require at least a local user account? No, it requires a script and a kiddie. ;) You'd expect your index.php (or similar) files would require a ftp/ssh/telnet connection, but useful kids have useful resources 'n which these things are not always

Re: Dell PowerEdge Virtual Media

2009-12-10 Thread Miroslav Lachman
Stuart Barkley wrote: On Tue, 8 Dec 2009 at 20:07 -, Miroslav Lachman wrote: Virtual Media / Virtual Console from all vendors is paint in the [...] So I am disapointed by this hyped feature ;( Does anyone here find this stuff useful? We have a vendor pushing Virtual Media on us and

Re: Dell PowerEdge Virtual Media

2009-12-10 Thread Steven Hartland
- Original Message - From: Stuart Barkley stua...@4gh.net Does anyone here find this stuff useful? Yes its is very useful for remote installs etc but it doest have its limitations when it doesnt play nice with the OS. This e.mail

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Markiyan Kushnir
As long as you have to re-install everything from scratch, you can consider installing 8.0 and having your services jailed. The new jail is announced to be much improved. Markiyan. Paul Procacci wrote: But far as rtld vulnerability, doesn't it require at least a local user account? No, it

cannot alter 'to' addess in email on 8.0

2009-12-10 Thread Pete French
Only just noticed this, but there seems to be a small, but annoying, pieece of breakage in email under 8.0 try and send a simple piece of email, type a few lines, then use '~h' to try and change the 'to' header (or any of them actually). what you get is a set of blank headers, instead of the

Re: PCengines ALIX boot0sio serial input failes

2009-12-10 Thread Jim Pingle
On 12/10/2009 2:32 AM, Daniel Braniss wrote: Which ALIX board exactly? There are some differences (even various BIOSes). Any chance you have vga driver in kernel? TinyBIOS emulates VGA a bit, redirects output to serial port. If at the beginning you are trying both VGA and serial port, output

Re: PCengines ALIX boot0sio serial input failes

2009-12-10 Thread Jim Pingle
On 12/10/2009 2:28 AM, Daniel Braniss wrote: On 12/9/2009 11:13 AM, Daniel Braniss wrote: hi, FreeBSD-8 works great on these boards, but there are some gotchas, the boot and the serial: output works fine, but input is 'problematic'. the pxeboot serial handling is ok, the boot menu is ok,

Re: ACPI Error: A valid RSDP was not found 20090521 tbxfroot-309

2009-12-10 Thread John Baldwin
On Wednesday 09 December 2009 8:52:06 pm Chris H wrote: On Wed, December 9, 2009 6:50 am, John Baldwin wrote: On Tuesday 08 December 2009 7:06:18 pm Chris H wrote: Greetings, I am receiving the following in dmesg (verbose) during boot in 8-RELEASE (GENERIC) cvsuped 2009-12-08 @1am:

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Squirrel
I do have most of measure you've mentioned implemented. There is one website that is required to have register_global, which I have set on his directory/.htaccess to prevent site-wide. Currently, I'm in process of upgrading all my ports. Thanks for info. -Original message- From:

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Ganbold
Squirrel wrote: I do have most of measure you've mentioned implemented. There is one website that is required to have register_global, which I have set on his directory/.htaccess to prevent site-wide. Currently, I'm in process of upgrading all my ports. Don't forget to check

Re: ACPI Error: A valid RSDP was not found 20090521 tbxfroot-309

2009-12-10 Thread Mark Linimon
On Thu, Dec 10, 2009 at 08:48:31AM -0500, John Baldwin wrote: Hmmm, there isn't anything CPU-specific in ULE vs 4BSD, and I would expect ULE to work fine on a PIII. I would generally expect device timeouts to be more of a driver issue than a scheduler issue. We've run nodes in the package

Re: pf: unlocked lookup

2009-12-10 Thread Max Laier
Hello Derek, On Thursday 10 December 2009 04:45:12 Derek Kulinski wrote: My console gets flooded by pf: unlocked lookup message anyone knows what circumstances cause this message, so I could figure out which pf rule is causing it? this is a generic informational message that was put into the

Re: pf: unlocked lookup

2009-12-10 Thread Derek Kulinski
Hello Max, Thursday, December 10, 2009, 9:38:41 AM, you wrote: this is a generic informational message that was put into the code to figure out if the hack that is debug.pfugidhack is actually required. You can get rid of the message by setting the debug level of pf to something below misc

Re: atheros problem

2009-12-10 Thread Pete Carah
I found more - apparently 802.11a works (there are no 11a nodes at work, but the box connects at home where I have a dual-band AP.) So the problem I see is specific to g (and not auth mode since at work we have all of open, wpa, wpa2, wep visible.) wlandebug sheds no light on the problem. I

Re: pf: unlocked lookup

2009-12-10 Thread Maxim Dounin
Hello! On Thu, Dec 10, 2009 at 10:22:09AM -0800, Derek Kulinski wrote: Hello Max, Thursday, December 10, 2009, 9:38:41 AM, you wrote: this is a generic informational message that was put into the code to figure out if the hack that is debug.pfugidhack is actually required. You can

Re: FreeBSD 7.1: QUOTA: kernel panics in jailed()

2009-12-10 Thread Mikolaj Golub
On Wed, 9 Dec 2009 15:52:23 -0600 Mike Pritchard wrote: On Mon, Dec 07, 2009 at 10:23:49AM +0200, Mikolaj Golub wrote: On Sun, 6 Dec 2009 20:18:13 +0200 Kostik Belousov wrote: The kernel paniced because chkdq was supplied NULL credentials and _positive_ blocks use count change. Line 276

Re: vge problem

2009-12-10 Thread Pyun YongHyeon
On Tue, Dec 08, 2009 at 10:08:36AM -0800, Pyun YongHyeon wrote: On Tue, Dec 08, 2009 at 10:52:07AM +0900, Yoshiaki Kasahara wrote: On Fri, 4 Dec 2009 10:43:01 -0800, Pyun YongHyeon pyu...@gmail.com said: before I replaced vge(4). I guess the system froze while initializing

Re: vge problem

2009-12-10 Thread Pyun YongHyeon
On Thu, Dec 10, 2009 at 01:52:49PM -0800, Pyun YongHyeon wrote: On Tue, Dec 08, 2009 at 10:08:36AM -0800, Pyun YongHyeon wrote: On Tue, Dec 08, 2009 at 10:52:07AM +0900, Yoshiaki Kasahara wrote: On Fri, 4 Dec 2009 10:43:01 -0800, Pyun YongHyeon pyu...@gmail.com said: before I

IPv6 - bad neighbor solicitation messages

2009-12-10 Thread Tom Pusateri
I'm having intermittent IPv6 issues on one FreeBSD 8-stable box. I've tried to ping6 the FreeBSD-8 stable (crag) (as of 12/9/09) from snow leopard (glow) and from a freebsd 7.2 box (gw). I've tried replacing the fxp0 interface in the FreeBSD-8 stable box with an em0 interface and it works with

RE: IPv6 - bad neighbor solicitation messages

2009-12-10 Thread Li, Qing
I haven't made any significant changes in the IPv6 code for 3 months now. Could you please get a packet capture and email it to me? Thanks, -- Qing From: owner-freebsd-sta...@freebsd.org on behalf of Tom Pusateri Sent: Thu 12/10/2009 7:15 PM To:

Re: IPv6 - bad neighbor solicitation messages

2009-12-10 Thread Tom Pusateri
Its been happening for a while. I've attached the tcpdump textual output, the tcpdump raw saved file, and before and after netstat -s output. Thanks, Tom On Dec 10, 2009, at 10:22 PM, Li, Qing wrote: I haven't made any significant changes in the IPv6 code for 3 months now. Could you please

Re: ACPI Error: A valid RSDP was not found 20090521 tbxfroot-309

2009-12-10 Thread Chris H
Hello, and thank you very much for your reply. On Thu, December 10, 2009 5:48 am, John Baldwin wrote: On Wednesday 09 December 2009 8:52:06 pm Chris H wrote: On Wed, December 9, 2009 6:50 am, John Baldwin wrote: On Tuesday 08 December 2009 7:06:18 pm Chris H wrote: Greetings, I am

RE: proxy arp and MPD in RELENG_8

2009-12-10 Thread Li, Qing
Hi, I think I managed to reproduce this issue. The root cause appears to be the SIN_PROXY usage, which is no longer part of any routing entry after the L2/L3 rewrite. As such, the RTM_GET command should be issued once in the ARP utility, not twice. In addition, since ARP does not apply to PPP

Re: PCengines ALIX boot0sio serial input failes

2009-12-10 Thread Daniel Braniss
On 12/10/2009 2:32 AM, Daniel Braniss wrote: Which ALIX board exactly? There are some differences (even various BIOSes). Any chance you have vga driver in kernel? TinyBIOS emulates VGA a bit, redirects output to serial port. If at the beginning you are trying both VGA and serial