[Bug 1769304] [NEW] Apache2 mod_remoteip+rewrite allows client to forge IP address

2018-05-05 Thread Nicholas Sherlock
*** This bug is a security vulnerability *** Public security bug reported: Apache bug #60251 describes this problem: https://bz.apache.org/bugzilla/show_bug.cgi?id=60251 mod_remoteip allows us to set the client's IP address using a trusted proxy's X-Forwarded-For header. However, in a location

[Bug 1516451] Re: check_disk plugin broken after upgrade to 15.10

2016-09-01 Thread Nicholas Sherlock
Rather than excluding tmpfs, just exclude /run/lxcfs/controllers. This is the check_all_disks command I'm now using in my /etc/nagios- plugins/config/disk.cfg: # 'check_all_disks' command definition define command{ command_namecheck_all_disks command_line