Hi David, and thanks for answering

On 06/02/15 14:44, David Woolley wrote:
>> Debian Squeeze doesn't have a patched package available in the
>> squeeze-lts series yet. On those clients would a restriction like
>>
>> restrict ::1 ignore
>>
>> mitigate the vulnerability?
>>
> 
> Sounds more like you need to fix the firewall.

That's understood and it's the advised solution. However, for reason I
can't elaborate here, I can't fire up a firewall on every node just for
this. If using restrict ignore would prevent the vulnerability to be
exploited, we'd be fine with that on pre-wheezy nodes.

What do you think?

Ciao
-- bronto


_______________________________________________
questions mailing list
questions@lists.ntp.org
http://lists.ntp.org/listinfo/questions

Reply via email to