Re: SSH and RSA

2001-02-20 Thread Uwe A. P. Wuerdinger
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Duane Powers wrote: Hi all, Recently I was made administrator over a dozen Solaris boxen heh The prior admin was offsite and used ssh with rsa keys to access the boxes. He allowed root login, and used the RSA key functionality to keep the

Re: Anti Virus for Debian

2001-02-20 Thread henry
hej, Are there any gpl or similar anti-virus programs for linux ? i don`t think so... see for a overview on http://www.openantivirus.org/av-unix_e.txt, few utils are gpl... bye henry -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL

RE: Debian or Linux 7???

2001-02-20 Thread Johan Segernas
Title: RE: Debian or Linux 7??? Just how much more secure is Debian than redhat? No dist is more secure than the adminstrator of the box. A good configured RedHat is also secure, even though Debian might be more secure 'out of the box'. And I dont think your security-problem is in the

RE: Realserver 8 Webinator on Debian

2001-02-20 Thread Johan Segernas
Title: RE: Realserver 8 Webinator on Debian 1. Will they install or are they not compatible. For example, while Webinator would work with Redhat 7, Realserver 8 would not. (But Real Server 7 did install on Redhat 6) I've been running Realserver 6 and 7 on RedHat and Debian, and no

snort problem

2001-02-20 Thread Viljo Marrandi
Hello, I'm not sure if this is the right list but i try. Problem is with snort, when i try to start it, then i get to daemon.log following lines: Feb 20 10:54:17 equinoxe modprobe: modprobe: Can't locate module net-pf-17 Feb 20 10:54:17 equinoxe snort: ERROR: OpenPcap() device eth0 open:

RE: Anti Virus for Debian

2001-02-20 Thread Craig
I know datafellows have a product called f-secure that runs on linux. Haven't had a chance to test it yet :) www.datafellows.com Craig -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Tuesday, February 20, 2001 10:38 AM To: [EMAIL PROTECTED] Subject: Re:

Re: snort problem

2001-02-20 Thread Tommi Komulainen
On Tue, Feb 20, 2001 at 11:21:45AM +0200, Viljo Marrandi wrote: Feb 20 10:54:17 equinoxe modprobe: modprobe: Can't locate module net-pf-17 Feb 20 10:54:17 equinoxe snort: ERROR: OpenPcap() device eth0 open: ^Isocket: Socket type not supported Firstly, what is net-pf-17? I couldn't find it

Re: Debian or Linux 7???

2001-02-20 Thread Ethan Benson
On Tue, Feb 20, 2001 at 10:00:36AM +0100, Johan Segernas wrote: And I dont think your security-problem is in the kernel? And if; use kernel 2.4.1 and debian and everything should be fine. the kernel rarely if ever has security problems that are remotely exploitable, but there are local

Re: Unknown file in login on proftpd 1.2.0pre10-2potato1

2001-02-20 Thread Michel Kaempf
On Tue, Feb 20, 2001, Maarten Vink wrote: My guess is that it's a small bug in proftpd that dumps some internal data, and has no security implications. But since you can't be too sure, it would be interesting to see what other people have to say about this. Last week, I noticed the same

Re: OpenSSH and CVS

2001-02-20 Thread Chris Matta
This is easy: as the user that runs the CVS scripts: run ssh-keygen it will run thru and ask where you want the file (~/.ssh/identity will be fine) when prompted for a password just hit return, and again on the next line now copy the contents of ~/.ssh/identity.pub to the

GPG ignoresthat a key is expired

2001-02-20 Thread Adrian Bunk
On Mon, 19 Feb 2001, Zed Pobre wrote: Just wait, I expect, but I wouldn't worry about looking for sponsors, since uploads from expired keys aren't rejected. The key I use for uploading expired some months ago, and although my new key still hasn't been put in the keyring, I'm not having

Re: OpenSSH and CVS

2001-02-20 Thread Tommi Komulainen
On Tue, Feb 20, 2001 at 08:49:36AM -0500, Chris Matta wrote: This is easy: as the user that runs the CVS scripts: run ssh-keygen it will run thru and ask where you want the file (~/.ssh/identity will be fine) when prompted for a password just hit return, and again on the next

Re: Debian or Redhat 7???

2001-02-20 Thread Aaron Ghent
Steve here, Well first, I repent of calling Linux 7: Redhat 7. Yes I am new. I have been maintaining my own box from a su level for about 3 months. That is why I was calling in an expert to install Debian tomorrow. It has become quite obvious to me that I am way over my head in trying

Re: snort problem

2001-02-20 Thread Peter Cordes
On Tue, Feb 20, 2001 at 11:21:45AM +0200, Viljo Marrandi wrote: Hello, I'm not sure if this is the right list but i try. Problem is with snort, when i try to start it, then i get to daemon.log following lines: Feb 20 10:54:17 equinoxe modprobe: modprobe: Can't locate module net-pf-17

Re: secure install

2001-02-20 Thread Daniel Stark
When you clone mirrors you usually have to take some steps. Typically, depending on your mirror, you need to break the mirror and clone each side seperately. Someone told me this was because of drive signing or some other thing, but I'm not sure if that's the truth. From: Carel Fellinger

Re: Debian or Linux 7???

2001-02-20 Thread Daniel Stark
How exactly did you get hacked? Did you leave security wholes large enough for a bus to drive through open? Open your inetd.conf file and # out everything! The only thing you need open is port 22. Others will disagree, but depending on what you server is used for, this should be your first

Hacked on Redhat 7

2001-02-20 Thread Steve Rudd
Daniel Stark asked: At 01:53 PM 2/20/01 -0800, you wrote: How exactly did you get hacked? Did you leave security wholes large enough for a bus to drive through open? Open your inetd.conf file and # out everything! The only thing you need open is port 22. Others will disagree, but

Re: secure install

2001-02-20 Thread Daniel Stark
You know, Ghost 2001 supports the ext2 partition on certain versions of Linux. It doesn't officially support Debian Linux, but I've cloned my Debian laptop and my Debian desktop many times. From: "Thor" [EMAIL PROTECTED] To: "Zak Kipling" [EMAIL PROTECTED], [EMAIL PROTECTED] CC: [EMAIL

Re: Anti Virus for Debian

2001-02-20 Thread volker . tanger
On 20 Feb, Mario Zuppini wrote: I would also like to know of virus scanners especially for mail servers ie sendmail that will work on a SPARC ??? There is a number of them being offered from commercial companies, e.g. TrendMicro InterScan VirusWall. Just look around at the "big" AV-companies.

Re: Debian or Redhat 7???

2001-02-20 Thread Rick Rezinas
oops...guess there was a reason I wasn't using it already ;) rick On Mon, 19 Feb 2001, Tal Danzig wrote: On Mon, Feb 19, 2001 at 07:13:40PM -0800, Rick Rezinas wrote: I've been loosely foloowing this thread, and hope you have the best of luck locking down. A few places to start with the

Benign crackers?

2001-02-20 Thread A. L. Meyers
-BEGIN PGP SIGNED MESSAGE- On Tue, 20 Feb 2001, Steve Rudd wrote: Daniel Stark asked: At 01:53 PM 2/20/01 -0800, you wrote: How exactly did you get hacked? Did you leave security wholes large enough for a bus to drive through open? Open your inetd.conf file and # out

Re: Anti Virus for Debian

2001-02-20 Thread Bradley M Alexander
On Tue, Feb 20, 2001 at 04:41:02PM +1300, Matthew Sherborne wrote: Are there any gpl or similar anti-virus programs for linux ? When you say anti-virus, could you specify what you are looking for? If you are looking to protect Linux boxes from virii, your most prudent approach is good system

Re: Anti Virus for Debian

2001-02-20 Thread Peter Becker
Bradley M Alexander wrote: On Tue, Feb 20, 2001 at 01:59:20PM +1000, Mario Zuppini wrote: I would also like to know of virus scanners especially for mail servers ie sendmail that will work on a SPARC ??? there are a few that work under i386 ie like amavris etc can be found on

Re: Debian or Linux 7???

2001-02-20 Thread J C Lawrence
On Mon, 19 Feb 2001 18:12:29 -0500 Steve Rudd [EMAIL PROTECTED] wrote: Hi! I am frustrated with the linux 2.2 kernel. I have had two hacks in 3 months and I am going broke rebuilding my server. The odds are good that your being cracked had nothing to do with the kernel version you were

Re: SSH and RSA

2001-02-20 Thread Uwe A. P. Wuerdinger
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Duane Powers wrote: Hi all, Recently I was made administrator over a dozen Solaris boxen heh The prior admin was offsite and used ssh with rsa keys to access the boxes. He allowed root login, and used the RSA key functionality to keep the

Re: Anti Virus for Debian

2001-02-20 Thread henry
hej, Are there any gpl or similar anti-virus programs for linux ? i don`t think so... see for a overview on http://www.openantivirus.org/av-unix_e.txt, few utils are gpl... bye henry

RE: Debian or Linux 7???

2001-02-20 Thread Johan Segernas
Title: RE: Debian or Linux 7??? Just how much more secure is Debian than redhat? No dist is more secure than the adminstrator of the box. A good configured RedHat is also secure, even though Debian might be more secure 'out of the box'. And I dont think your security-problem is in the

RE: Realserver 8 Webinator on Debian

2001-02-20 Thread Johan Segernas
Title: RE: Realserver 8 Webinator on Debian 1. Will they install or are they not compatible. For example, while Webinator would work with Redhat 7, Realserver 8 would not. (But Real Server 7 did install on Redhat 6) I've been running Realserver 6 and 7 on RedHat and Debian, and no

snort problem

2001-02-20 Thread Viljo Marrandi
Hello, I'm not sure if this is the right list but i try. Problem is with snort, when i try to start it, then i get to daemon.log following lines: Feb 20 10:54:17 equinoxe modprobe: modprobe: Can't locate module net-pf-17 Feb 20 10:54:17 equinoxe snort: ERROR: OpenPcap() device eth0 open:

RE: Anti Virus for Debian

2001-02-20 Thread Craig
I know datafellows have a product called f-secure that runs on linux. Haven't had a chance to test it yet :) www.datafellows.com Craig -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Tuesday, February 20, 2001 10:38 AM To: debian-security@lists.debian.org

Re: snort problem

2001-02-20 Thread Tommi Komulainen
On Tue, Feb 20, 2001 at 11:21:45AM +0200, Viljo Marrandi wrote: Feb 20 10:54:17 equinoxe modprobe: modprobe: Can't locate module net-pf-17 Feb 20 10:54:17 equinoxe snort: ERROR: OpenPcap() device eth0 open: ^Isocket: Socket type not supported Firstly, what is net-pf-17? I couldn't find it

Re: Debian or Linux 7???

2001-02-20 Thread Ethan Benson
On Tue, Feb 20, 2001 at 10:00:36AM +0100, Johan Segernas wrote: And I dont think your security-problem is in the kernel? And if; use kernel 2.4.1 and debian and everything should be fine. the kernel rarely if ever has security problems that are remotely exploitable, but there are local

Re: OpenSSH and CVS

2001-02-20 Thread Chris Matta
This is easy: as the user that runs the CVS scripts: run ssh-keygen it will run thru and ask where you want the file (~/.ssh/identity will be fine) when prompted for a password just hit return, and again on the next line now copy the contents of ~/.ssh/identity.pub to the

GPG ignoresthat a key is expired

2001-02-20 Thread Adrian Bunk
On Mon, 19 Feb 2001, Zed Pobre wrote: Just wait, I expect, but I wouldn't worry about looking for sponsors, since uploads from expired keys aren't rejected. The key I use for uploading expired some months ago, and although my new key still hasn't been put in the keyring, I'm not having

Re: OpenSSH and CVS

2001-02-20 Thread Tommi Komulainen
On Tue, Feb 20, 2001 at 08:49:36AM -0500, Chris Matta wrote: This is easy: as the user that runs the CVS scripts: run ssh-keygen it will run thru and ask where you want the file (~/.ssh/identity will be fine) when prompted for a password just hit return, and again on the next

Re: Debian or Redhat 7???

2001-02-20 Thread Aaron Ghent
Steve here, Well first, I repent of calling Linux 7: Redhat 7. Yes I am new. I have been maintaining my own box from a su level for about 3 months. That is why I was calling in an expert to install Debian tomorrow. It has become quite obvious to me that I am way over my head in trying to

Re: Anti Virus for Debian

2001-02-20 Thread Sven Hoexter
On Tue, Feb 20, 2001 at 01:59:20PM +1000, Mario Zuppini wrote: Hi Mario, first your Outlook and the TOFU it produces sucks! I would also like to know of virus scanners especially for mail servers ie sendmail that will work on a SPARC ??? We use sendmail+amavis+nai. It works fine on Solaris 7

Re: secure install

2001-02-20 Thread Daniel Stark
You know, Ghost 2001 supports the ext2 partition on certain versions of Linux. It doesn't officially support Debian Linux, but I've cloned my Debian laptop and my Debian desktop many times. From: Thor [EMAIL PROTECTED] To: Zak Kipling [EMAIL PROTECTED], [EMAIL PROTECTED] CC:

Re: secure install

2001-02-20 Thread Daniel Stark
When you clone mirrors you usually have to take some steps. Typically, depending on your mirror, you need to break the mirror and clone each side seperately. Someone told me this was because of drive signing or some other thing, but I'm not sure if that's the truth. From: Carel Fellinger

Re: Debian or Linux 7???

2001-02-20 Thread Daniel Stark
How exactly did you get hacked? Did you leave security wholes large enough for a bus to drive through open? Open your inetd.conf file and # out everything! The only thing you need open is port 22. Others will disagree, but depending on what you server is used for, this should be your first

Hacked on Redhat 7

2001-02-20 Thread Steve Rudd
Daniel Stark asked: At 01:53 PM 2/20/01 -0800, you wrote: How exactly did you get hacked? Did you leave security wholes large enough for a bus to drive through open? Open your inetd.conf file and # out everything! The only thing you need open is port 22. Others will disagree, but

Re: Anti Virus for Debian

2001-02-20 Thread volker . tanger
On 20 Feb, Mario Zuppini wrote: I would also like to know of virus scanners especially for mail servers ie sendmail that will work on a SPARC ??? There is a number of them being offered from commercial companies, e.g. TrendMicro InterScan VirusWall. Just look around at the big AV-companies.