Re: Closing ports...

2002-09-15 Thread Adam Olsen
work: > > deny 0.0.0.0/0 > > permit 192.168.42.0/24 > > > > What do I understand wrong here ? TIA ! -- Adam Olsen, aka Rhamphoryncus

Re: linux random capabilities ...

2002-07-31 Thread Adam Olsen
On Wed, Jul 31, 2002 at 10:26:36AM -0500, Orlando wrote: > On Wednesday 31 July 2002 06:08, Adam Olsen wrote: > > > Short answer: Linux mainly uses interrupt timings as an entropy > > source, from devices that are fairly unpredictable. Assuming those > > are secure, the e

Re: linux random capabilities ...

2002-07-31 Thread Adam Olsen
, i read here and there some work on hardware random generation devices > (based on radio activity readings, or diods based devices or whatever), is > there anyone with some experience with those ? -- Adam Olsen, aka Rhamphoryncus

Re: Is ident secure?

2001-10-24 Thread Adam Olsen
7;t/couldn't unsubscribe > himself) ... is anyone else seeing this replay? I saw two posts myself. After looked at the headers, I think somebody's mailer was broken and backlogged the replies, and is only now clearing the backlog. Or perhaps it's something else, but unless they con

Re: Is ident secure?

2001-10-24 Thread Adam Olsen
7;t/couldn't unsubscribe > himself) ... is anyone else seeing this replay? I saw two posts myself. After looked at the headers, I think somebody's mailer was broken and backlogged the replies, and is only now clearing the backlog. Or perhaps it's something else, but unless they con

Re: firewall

2001-09-10 Thread Adam Olsen
in/portmap and not /sbin/portmap.diverted. :-) Man > dpkg-divert for more info. Of course that means I can no longer use /etc/init.d/proftpd start to start it :) -- Adam Olsen, aka Rhamphoryncus

Re: firewall

2001-09-10 Thread Adam Olsen
On Mon, Sep 10, 2001 at 02:36:50PM -0500, Nathan E Norman wrote: > On Mon, Sep 10, 2001 at 07:38:10PM +0100, Tim Haynes wrote: > > Adam Olsen <[EMAIL PROTECTED]> writes: > > > > > > It should be sufficient to do > > > > update-rc.d -f port

Re: firewall

2001-09-10 Thread Adam Olsen
or /sbin/portmap and not /sbin/portmap.diverted. :-) Man > dpkg-divert for more info. Of course that means I can no longer use /etc/init.d/proftpd start to start it :) -- Adam Olsen, aka Rhamphoryncus -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: firewall

2001-09-10 Thread Adam Olsen
On Mon, Sep 10, 2001 at 02:36:50PM -0500, Nathan E Norman wrote: > On Mon, Sep 10, 2001 at 07:38:10PM +0100, Tim Haynes wrote: > > Adam Olsen <[EMAIL PROTECTED]> writes: > > > > > > It should be sufficient to do > > > > update-rc.d -f port

Re: firewall

2001-09-10 Thread Adam Olsen
pdate-rc.d -f lpd remove > update-rc.d -f bind remove As an aside, I did this with proftpd, but when I upgrade the install scripts restart it. Is there a proper way way to deal with this? Is there some debian policy relating to it? -- Adam Olsen, aka Rhamphoryncus

Re: firewall

2001-09-10 Thread Adam Olsen
pdate-rc.d -f lpd remove > update-rc.d -f bind remove As an aside, I did this with proftpd, but when I upgrade the install scripts restart it. Is there a proper way way to deal with this? Is there some debian policy relating to it? -- Adam Olsen, aka Rhamphoryncus -- To UNS

Re: pop3

2001-07-30 Thread Adam Olsen
ven worse security problem. > > Somebody know how do it better ? I think the *best* way would be to have a ssh option that told it specifically to tunnel 1 (or more?) tcp connections, failing if it can't open it, and always waiting until they're finished before closing (you currently get an annoying warning if sleep returns before fetchmail finishes). There does seem to be such an option though :/ -- Adam Olsen, aka Rhamphoryncus

Re: pop3

2001-07-30 Thread Adam Olsen
e security problem. > > Somebody know how do it better ? I think the *best* way would be to have a ssh option that told it specifically to tunnel 1 (or more?) tcp connections, failing if it can't open it, and always waiting until they're finished before closing (you currently g

Re: pop3

2001-07-29 Thread Adam Olsen
gt; mutt. Anyone know why? Probably because mutt uses an external editor, in my case vim. You have to add something like these lines to your ~/.vimrc for it to wrap automatically: augroup muttmail au! autocmd BufRead /tmp/mutt-* set textwidth=70 augroup END -- Adam Olsen, aka Rhamphoryncus

Re: pop3

2001-07-29 Thread Adam Olsen
gt; mutt. Anyone know why? Probably because mutt uses an external editor, in my case vim. You have to add something like these lines to your ~/.vimrc for it to wrap automatically: augroup muttmail au! autocmd BufRead /tmp/mutt-* set textwidth=70 augroup END -- Adam Olsen, aka R

Re: a FISH?!?!

2001-06-03 Thread Adam Olsen
On Sun, Jun 03, 2001 at 08:27:10AM +, Jim Breton wrote: > On Sun, Jun 03, 2001 at 07:44:00AM +0000, Adam Olsen wrote: > > So here I was playing around with some stuff in Quakeforge, and I see > > a FISH swim across my root windows. Not surprisingly, my first > > thought

a FISH?!?!

2001-06-03 Thread Adam Olsen
atter, does anybody know of a program that might have caused it? ps I don't think it was xfishtank, which I have installed, because it was only a single fish and there was no background colour. Thanks, - Dazed and Confused -- Adam Olsen, aka Rhamphoryncus

Re: a FISH?!?!

2001-06-03 Thread Adam Olsen
On Sun, Jun 03, 2001 at 08:27:10AM +, Jim Breton wrote: > On Sun, Jun 03, 2001 at 07:44:00AM +0000, Adam Olsen wrote: > > So here I was playing around with some stuff in Quakeforge, and I see > > a FISH swim across my root windows. Not surprisingly, my first > > thought

a FISH?!?!

2001-06-03 Thread Adam Olsen
atter, does anybody know of a program that might have caused it? ps I don't think it was xfishtank, which I have installed, because it was only a single fish and there was no background colour. Thanks, - Dazed and Confused -- Adam Olsen, aka Rhamphoryncus -- To UNSUBSCRIBE, email to [EMAIL

Re: Got root?

2001-05-01 Thread Adam Olsen
g BIND would feel alot safer if it never ran as root, and such a practice would probably earn Debian as a whole a few points for security. And if spontaneously making authbind required for various packages doesn't appeal, it could be done with making it only used if it exists, and just put it in a Recomends line. -- Adam Olsen, aka Rhamphoryncus

Re: Got root?

2001-05-01 Thread Adam Olsen
would feel alot safer if it never ran as root, and such a practice would probably earn Debian as a whole a few points for security. And if spontaneously making authbind required for various packages doesn't appeal, it could be done with making it only used if it exists, and just put it in a Reco

Re: Got root?

2001-05-01 Thread Adam Olsen
le is provided below) > > > > # /etc/acl.ports > > # Port Numbers binary > > 80 /usr/local/apache/bin/httpd > > 22 /usr/local/openssh/sshd > > 21 /usr/local/anonftpd/ftpd -- Adam Olsen, aka Rhamphoryncus

Re: Got root?

2001-05-01 Thread Adam Olsen
le is provided below) > > > > # /etc/acl.ports > > # Port Numbers binary > > 80 /usr/local/apache/bin/httpd > > 22 /usr/local/openssh/sshd > > 21 /usr/local/anonftpd/ftpd -- Adam Olsen, aka Rhamphoryncus -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: setting up sudo for tail

2001-04-12 Thread Adam Olsen
On Thu, Apr 12, 2001 at 02:55:58AM -0300, Peter Cordes wrote: > On Thu, Apr 12, 2001 at 01:10:17AM +0000, Adam Olsen wrote: > > What's /dev/xconsole though? > > It's where console log messages get redirected if you run xconsole. *tries it* Is it just me, or is that *

Re: setting up sudo for tail

2001-04-12 Thread Adam Olsen
On Thu, Apr 12, 2001 at 12:43:18AM -0400, Daniel Jacobowitz wrote: > On Thu, Apr 12, 2001 at 01:10:17AM +0000, Adam Olsen wrote: > > And for the record, is there any way to get sudo working? > > No, not really. What you would have to do would be write a wrapper > script which

Re: setting up sudo for tail

2001-04-11 Thread Adam Olsen
On Thu, Apr 12, 2001 at 02:55:58AM -0300, Peter Cordes wrote: > On Thu, Apr 12, 2001 at 01:10:17AM +0000, Adam Olsen wrote: > > What's /dev/xconsole though? > > It's where console log messages get redirected if you run xconsole. *tries it* Is it just me, or is that *

Re: setting up sudo for tail

2001-04-11 Thread Adam Olsen
On Thu, Apr 12, 2001 at 12:43:18AM -0400, Daniel Jacobowitz wrote: > On Thu, Apr 12, 2001 at 01:10:17AM +0000, Adam Olsen wrote: > > And for the record, is there any way to get sudo working? > > No, not really. What you would have to do would be write a wrapper > script which

Re: setting up sudo for tail

2001-04-11 Thread Adam Olsen
On Thu, Apr 12, 2001 at 12:49:32AM +, Jim Breton wrote: > On Thu, Apr 12, 2001 at 12:38:10AM +0000, Adam Olsen wrote: > > So my question: how do I set this up properly? > > Not with sudo. ;) > > chgrp adm /var/log/syslog # change group of file to "adm" > add

setting up sudo for tail

2001-04-11 Thread Adam Olsen
, which is not so good. I've also figured out that the period in [a-z0-9.] is pointless, as * matches any character, not a multiple of what's on it's left. So my question: how do I set this up properly? -- Adam Olsen, aka Rhamphoryncus

Re: setting up sudo for tail

2001-04-11 Thread Adam Olsen
On Thu, Apr 12, 2001 at 12:49:32AM +, Jim Breton wrote: > On Thu, Apr 12, 2001 at 12:38:10AM +0000, Adam Olsen wrote: > > So my question: how do I set this up properly? > > Not with sudo. ;) > > chgrp adm /var/log/syslog # change group of file to "adm"

setting up sudo for tail

2001-04-11 Thread Adam Olsen
, which is not so good. I've also figured out that the period in [a-z0-9.] is pointless, as * matches any character, not a multiple of what's on it's left. So my question: how do I set this up properly? -- Adam Olsen, aka Rhamphoryncus -- To UNSUBSCRIBE, email to [EMAIL PR