Re: NFS, password transparency, and security

2002-04-08 Thread Tarjei Huse
Hi, Just thought I'd chip inn some support for LDAP. Also a kerberos pointer: www.bayour.com has a very good ldap+kerberos howto for debian written by Turbo Fredrikson. Also you should check out directory administrator for admining your directory. A simple ldap client for administrating ldap

subscribe

2002-04-08 Thread fh ML
-- Florian Hinzmann private: [EMAIL PROTECTED] Debian: [EMAIL PROTECTED] PGP Key / ID: 1024D/B4071A65 Fingerprint : F9AB 00C1 3E3A 8125 DD3F DF1C DF79 A374 B407 1A65 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a

Re: NEOMAIL - as big kev in OZ would say, IM EXCITED !

2002-04-08 Thread Andrew Lau
On Mon, Apr 08, 2002 at 08:51:50AM +0800, Marcel Welschbillig wrote: Just wanted to make it clear the the email i sent about Neomail was purely to let other people know about a program that i thought was worth mentioning, it had nothing to do with Ernie Miller and was not intended to be

TV/Uydu Yayinlarina Artik Sifre Kisitlamasi Yok! -byqybqic

2002-04-08 Thread tamnpjph
Sayin Internet Kullanicisi, Turkiye'de yayin yapanlar basta olmak uzere, Dunya'daki tum sifreli TV kanallarini cozen ve basit bir TV kartiyla bu yayinlari bilgisayarinizdan size izleme olanagi saglayan, sifre kirici programlarin kayitli oldugu, DECODER CD (v2.0) satisa sunulmustur (40 EURO +

Re: NFS, password transparency, and security

2002-04-08 Thread Sami Haahtinen
On Sun, Apr 07, 2002 at 10:36:17PM -0700, Luca Filipozzi wrote: this also allows crackers to access your userbase, unlike libpam-ldap, where you are not forced to allow userpassword read access to the database. The cracker just needs to hack this machine, read the password from config and

Re: NEOMAIL - as big kev in OZ would say, IM EXCITED !

2002-04-08 Thread Carel Fellinger
On Mon, Apr 08, 2002 at 08:51:50AM +0800, Marcel Welschbillig wrote: Hi, Just wanted to make it clear the the email i sent about Neomail was purely to let other people know about a program that i thought was worth mentioning, it had nothing to do with Ernie Miller and was not intended

Re: NEOMAIL - as big kev in OZ would say, IM EXCITED !

2002-04-08 Thread Blars Blarson
In article 20020408094142.GA3342@espresso [EMAIL PROTECTED] writes: On Mon, Apr 08, 2002 at 08:51:50AM +0800, Marcel Welschbillig wrote: Just wanted to make it clear the the email i sent about Neomail was=20 purely to let other people know about a program that i thought was worth= mentioning,

new www vulnerablity

2002-04-08 Thread James Nord
Hi, Is anyone aware of a vulnerablity that is characterised by the following against a www server? or is the ^E etc just a way of trying to hide the variuos attempts below? [Sat Apr 6 02:44:07 2002] [error] [client 24.101.140.253] Invalid method in request ^E^A [Sat Apr 6 02:44:07 2002]

Re: new www vulnerablity

2002-04-08 Thread shiftee
The access request for /..À¯../..À¯../cmd1.exe indicates that this is some kind of Microsoft bug (no suprises there). I recieve plenty of probes like this a day, it's probably just some hacker running an automated script to check for vulnerable sites. Nothing to worry about unless you're

unsubscribe

2002-04-08 Thread Bartomiej wiercz
-- Pozdrowienia, Bartek. ### # Keep It Sipmle Stupid! # # http://sknauk.wpk.p.lodz.pl # ### -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

About umask for paranoids

2002-04-08 Thread Julián Muñoz
Hello, I am using potato, from 6 month now, and well, I like it very much, but something is chocking me very much: some log files, some configuration files, and some other things I don't expected are world readable. So, I know, I could change it by hand. But it seems a generic behaviour of

Re: iptables not logging or dhcp-client lying?

2002-04-08 Thread Olaf Meeuwissen
Gabor Kovacs [EMAIL PROTECTED] writes: Olaf Meeuwissen wrote: Basically, I'd like to keep the setup as closed as possible so I make a hole in /etc/dhclient-enter-hooks during the PREINIT stage to let the DHCPDISCOVER broadcast out (and a reply back in eventually, taking this one step

Re: fswcert

2002-04-08 Thread Noah L. Meyerhans
On Fri, Apr 05, 2002 at 12:13:41PM +0200, Victor Vuillard wrote: the fswcert tool, which is used to extract private key from certificate was before in freeswan package. I was not able to find it in 1.95 version of freeswan. Anyone knows why it has been removed ??? Because it's no longer

Re: fswcert

2002-04-08 Thread Lupe Christoph
On Tuesday, 2002-04-09 at 00:03:20 -0400, Noah L. Meyerhans wrote: On Fri, Apr 05, 2002 at 12:13:41PM +0200, Victor Vuillard wrote: the fswcert tool, which is used to extract private key from certificate was before in freeswan package. I was not able to find it in 1.95 version of freeswan.

Re: NFS, password transparency, and security

2002-04-08 Thread tony mancill
On Sun, 7 Apr 2002, Luca Filipozzi wrote: I suspect that if all your boxes are running Debian that your life will be made easier by all the Debian kerberos packages. This is an interesting thread, and this comment just gave me an idea. What if you use FreeS/WAN (or really, any sort of IPsec)?

Re: NFS, password transparency, and security

2002-04-08 Thread Luca Filipozzi
On Sun, Apr 07, 2002 at 09:22:12PM -0700, tony mancill wrote: What if you use FreeS/WAN (or really, any sort of IPsec)? It can be set up in a mode that's called opportunistic encryption that will use IPsec for communication when it's available and allow other traffic to proceed as normal. In

Re: NFS, password transparency, and security

2002-04-08 Thread Sami Haahtinen
On Sun, Apr 07, 2002 at 08:14:26PM -0700, Luca Filipozzi wrote: Two choices (I like lists :) ): (1) use libpam-ldap: i recommend this. Even though the current pam system is a pain to modify.. if you modify one file and it gets updated in the package it will nag about it.. you can't tell if

Re: NFS, password transparency, and security

2002-04-08 Thread Luca Filipozzi
On Mon, Apr 08, 2002 at 08:23:17AM +0300, Sami Haahtinen wrote: On Sun, Apr 07, 2002 at 08:14:26PM -0700, Luca Filipozzi wrote: Two choices (I like lists :) ): (1) use libpam-ldap: i recommend this. I also recommend this. (2) don't use libpam-ldap: You don't have to use

Re: NFS, password transparency, and security

2002-04-08 Thread Tarjei Huse
Hi, Just thought I'd chip inn some support for LDAP. Also a kerberos pointer: www.bayour.com has a very good ldap+kerberos howto for debian written by Turbo Fredrikson. Also you should check out directory administrator for admining your directory. A simple ldap client for administrating ldap

subscribe

2002-04-08 Thread fh ML
-- Florian Hinzmann private: [EMAIL PROTECTED] Debian: [EMAIL PROTECTED] PGP Key / ID: 1024D/B4071A65 Fingerprint : F9AB 00C1 3E3A 8125 DD3F DF1C DF79 A374 B407 1A65 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a

Re: NEOMAIL - as big kev in OZ would say, IM EXCITED !

2002-04-08 Thread Andrew Lau
On Mon, Apr 08, 2002 at 08:51:50AM +0800, Marcel Welschbillig wrote: Just wanted to make it clear the the email i sent about Neomail was purely to let other people know about a program that i thought was worth mentioning, it had nothing to do with Ernie Miller and was not intended to be

TV/Uydu Yayinlarina Artik Sifre Kisitlamasi Yok! -byqybqic

2002-04-08 Thread tamnpjph
Sayin Internet Kullanicisi, Turkiye'de yayin yapanlar basta olmak uzere, Dunya'daki tum sifreli TV kanallarini cozen ve basit bir TV kartiyla bu yayinlari bilgisayarinizdan size izleme olanagi saglayan, sifre kirici programlarin kayitli oldugu, DECODER CD (v2.0) satisa sunulmustur (40 EURO +

Re: NFS, password transparency, and security

2002-04-08 Thread Sami Haahtinen
On Sun, Apr 07, 2002 at 10:36:17PM -0700, Luca Filipozzi wrote: this also allows crackers to access your userbase, unlike libpam-ldap, where you are not forced to allow userpassword read access to the database. The cracker just needs to hack this machine, read the password from config and

Re: NEOMAIL - as big kev in OZ would say, IM EXCITED !

2002-04-08 Thread Carel Fellinger
On Mon, Apr 08, 2002 at 08:51:50AM +0800, Marcel Welschbillig wrote: Hi, Just wanted to make it clear the the email i sent about Neomail was purely to let other people know about a program that i thought was worth mentioning, it had nothing to do with Ernie Miller and was not intended to

Re: NEOMAIL - as big kev in OZ would say, IM EXCITED !

2002-04-08 Thread Blars Blarson
In article [EMAIL PROTECTED] [EMAIL PROTECTED] writes: On Mon, Apr 08, 2002 at 08:51:50AM +0800, Marcel Welschbillig wrote: Just wanted to make it clear the the email i sent about Neomail was=20 purely to let other people know about a program that i thought was worth= mentioning, it had nothing

new www vulnerablity

2002-04-08 Thread James Nord
Hi, Is anyone aware of a vulnerablity that is characterised by the following against a www server? or is the ^E etc just a way of trying to hide the variuos attempts below? [Sat Apr 6 02:44:07 2002] [error] [client 24.101.140.253] Invalid method in request ^E^A [Sat Apr 6 02:44:07 2002]

Re: new www vulnerablity

2002-04-08 Thread shiftee
The access request for /..À¯../..À¯../cmd1.exe indicates that this is some kind of Microsoft bug (no suprises there). I recieve plenty of probes like this a day, it's probably just some hacker running an automated script to check for vulnerable sites. Nothing to worry about unless you're running

unsubscribe

2002-04-08 Thread Bartłomiej Świercz
-- Pozdrowienia, Bartek. ### # Keep It Sipmle Stupid! # # http://sknauk.wpk.p.lodz.pl # ### -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

About umask for paranoids

2002-04-08 Thread Julián Muñoz
Hello, I am using potato, from 6 month now, and well, I like it very much, but something is chocking me very much: some log files, some configuration files, and some other things I don't expected are world readable. So, I know, I could change it by hand. But it seems a generic behaviour of

unsubscribe

2002-04-08 Thread Bartłomiej Świercz
-- Pozdrowienia, Bartek. ### # Keep It Sipmle Stupid! # # http://sknauk.wpk.p.lodz.pl # ### -- Forwarded message -- Date: Mon, 8 Apr 2002 23:45:44 +0200 (CEST) From: Bartłomiej Świercz [EMAIL

Re: iptables not logging or dhcp-client lying?

2002-04-08 Thread Olaf Meeuwissen
Gabor Kovacs [EMAIL PROTECTED] writes: Olaf Meeuwissen wrote: Basically, I'd like to keep the setup as closed as possible so I make a hole in /etc/dhclient-enter-hooks during the PREINIT stage to let the DHCPDISCOVER broadcast out (and a reply back in eventually, taking this one step