Re: Upcoming changes to Debian Linux kernel packages

2023-10-03 Thread Andreas Beckmann
binaries were built by accident in sid instead of stable, requiring a binNMU before migration.) (but this should be discussed elsewhere) Andreas

Re: Upcoming changes to Debian Linux kernel packages

2023-09-24 Thread Andreas Beckmann
install linux-image-$flavor AND linux-headers-$flavor is a bit tricky. I'm open to implement improvements on the dkms side. Andreas PS: the proposed "more versioning in the linux-image packages" will solve some rare dkms issues where modules didn't get rebuilt after linux-he

Re: Upcoming changes to Debian Linux kernel packages

2023-09-24 Thread Andreas Beckmann
ernel flavor, e.g. the -cloud or -i386 kernel. So some improvement on the kernel side would be nice here. Andreas

Re: Should singularity-container make it to next release?

2023-01-26 Thread Andreas Tille
x27;s the kind of sing-up-to-do-the-work that the security and > release team are waiting for. I'd be happy if singularity would be in stable. I'm not sure how far I can help out since I'm lacking competence in Go but if needed I might contribute to my limited skills. Kind regards Andreas. -- http://fam-tille.de

Re: Should singularity-container make it to next release?

2023-01-09 Thread Andreas Tille
Hi, it would be great if someone from Security Team might raise some opinion to this question. Kind regards Andreas. Am Mon, Jan 09, 2023 at 03:51:10PM +0530 schrieb Nilesh Patra: > Hi, > > On Wed, Oct 12, 2022 at 09:38:27PM +0530, Nilesh Patra wrote: > > src:singularit

Re: Reintroducing openjdk-8 for Bullseye?

2020-04-09 Thread Andreas Beckmann
dk), and it could be moved to contrib to reduce exposure even further. Andreas

Why no security support for binutils? What to do about it?

2019-12-30 Thread Andreas
anks a lot in advance Andreas

Re: NSA software in Debian

2014-01-24 Thread Andreas Kuckartz
nterests, neither you can know the opposite and > again, this generates feeling of insecurity. I do not see which implications that has for LSM. > And if you neglect this, you are unconsciously submitting to the > aggressor. I am not aware of anybody here doing that. Cheers, Andrea

Re: NSA software in Debian

2014-01-22 Thread Andreas Kuckartz
approach does not help to improve security. Cheers, Andreas -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/52e01e9c.3080...@ping.de

Re: NSA software in Debian

2014-01-20 Thread Andreas Kuckartz
Kevin Olbrich: > Is SELinux disabled on new debian installs? The SELinux packages are optional. The default kernel is configured so that SELinux (or another LSM) can be enabled after the packages have been installed. Cheers, Andreas -- To UNSUBSCRIBE, email to debian-security-r

Re: NSA software in Debian

2014-01-19 Thread Andreas Kuckartz
ux, AppArmor, Smack and Tomoyo are using the Linux Security Module (LSM) framework. I am aware of the claims made by grsecurity regarding LSM, but I do not agree with several of them. > Consider alternatives like PaX/grsecurity and RSBAC. Both seem to be compatible with SELinux. Cheers, An

Re: NSA software in Debian

2014-01-19 Thread Andreas Kuckartz
Bjoern Meier: > http://en.wikipedia.org/wiki/Security-Enhanced_Linux I proposed this Debian Release Goal: https://wiki.debian.org/ReleaseGoals/SELinux Cheers, Andreas -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Co

Re: End-user laptop firewall available?

2013-12-08 Thread Andreas Kuckartz
table firewall. > > Any help/direction appreciated. This is a good question and I think that such use cases should best be supported by the Debian Installer. Cheers, Andreas -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/52a468ee.5070...@ping.de

Re: SSL for debian.org/security?

2013-11-11 Thread Andreas Kuckartz
of money. Are there better ways to spend money to improve the security ? Cheers, Andreas -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/5281c93a.8040...@ping.de

Re: Does JDK7 security hole affect OpenJDK6?

2013-01-17 Thread Andreas Kuckartz
I found CVE-2013-0422 on the TODO list: https://security-tracker.debian.org/tracker/status/todo Cheers, Andreas --- Andreas Kuckartz: > David Gerard: >> I would assume the recent JDK7 hole would also affect OpenJDK7, given >> they're pretty much the same codebase. >> &

Re: Does JDK7 security hole affect OpenJDK6?

2013-01-17 Thread Andreas Kuckartz
the Tracker not updating from the database." http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=690774#15 Maybe that security tracker issue has not yet been resolved? Cheers, Andreas -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe&

Re: Debian LTS?

2011-10-09 Thread Andreas Gredler
have one chance to keep it for 3 years. greets Jimmy -- Andreas "Jimmy" Gredler ,'"`. http://www.jimmy.co.at/ | ji...@g-tec.co.at ( grml.org -» Linux Live-CD for texttool-users and sysadmins `._, http://www.grml.org/| ji...@grml.org --

RE: Lenny version info

2010-12-14 Thread Dörfler Andreas
To the rest of youwhat is wrong with you? If you don't want to help, don't. Stop wasting time. Did it ever ocur to you that not everyone out there likes using a search engine? I was directed to debian-security by an ex-colleague since one of our servers uses debian. So I used it to as

Re: [SECURITY] [DSA 1906-1] End-of-life announcement for clamav in stable and oldstable

2009-10-12 Thread Andreas Oesterhelt
Hallo Mario, Schaust Du bitte danach? Merci, --Andreas Steffen Joeris schrieb: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1906-1 secur...@debian.org http

AUTO: Andreas A Kempf is out of the office. (returning 30.08.2009)

2009-08-26 Thread Andreas A Kempf
I am out of the office until 30.08.2009. I will respond to your message when I return. Note: This is an automated response to your message "?[SECURITY] [DSA 1871-2] New wordpress packages fix regression" sent on 27/8/09 3:39:01. This is the only notification you will receive while this person

Yet another list statistics for debian-security

2009-01-17 Thread Andreas Tille
o has an explanation which does not come to the conclusion that we immediately should try to strengthen this team? The traffic statistic is consistent with the activists graph: http://lists.debian.org/stats/debian-security.png Kind regards Andreas -- http://fam-tille.de -- To UNSUBS

basically security of linux

2009-01-16 Thread Andreas Matthus
x27;m afraid he can get root-rights. Isn't it? with regards Andreas Matthus smime.p7s Description: S/MIME Cryptographic Signature

Re: [VUA 51-1] Updated clamav version

2008-12-11 Thread Andreas Barth
* Jim Popovitch ([EMAIL PROTECTED]) [081211 07:52]: > On Thu, Dec 11, 2008 at 00:55, Andreas Barth <[EMAIL PROTECTED]> wrote: > > --- > > Debian Volatile Update Announcement VUA 51-1 http://volatile.

Re: What to do about SSH brute force attempts?

2008-08-21 Thread Andreas Moog
something done about DDOS and the-like. Greetings, Andreas Moog -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.9 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iEYEARECAAYFAkitneQACgkQ06FgkPZwicQQqwCeMH+ZSBvqylUR4+TrNterQNSp 9/MAn37FUiXLX5LZMtTGouH0THywF+kI =14qL -END

Re: What to do about SSH brute force attempts?

2008-08-21 Thread Andreas Moog
ntication. That way, an attacker has to get hold of my key AND passphrase. Greetings, Andreas Moog -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.9 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iEYEARECAAYFAkitfywACgkQ06FgkPZwicQAHgCg7oHqqwTbEDE8nt7mYaxx0rUA jyoAoM

Re: Einladung in mein XING-Netzwerk

2008-06-11 Thread Andreas Kretschmer
am Thu, dem 12.06.2008, um 4:28:52 +0200 mailte Stefan Ramahi folgendes: > XING - Powering Relationships > > > Guten Tag, > > ich möchte Sie gerne in mein XING-Netzwerk einladen! Sowas an eine Mailingliste? Das ist, sorry, asozial. Andreas, XING-Mitglied. -- Andreas

Re: [SECURITY] [DSA 1571-1] New openssl packages fix predictable random number generator

2008-05-19 Thread Andreas Bunten
se, too. Could you add the fingerprints of the keys offered on metasploit.com to dowkd.pl so at least those are checked? The 4096 bit RSA keys are on the site and the few I tested are indeed of the vulnerable set: http://metasploit.com/users/hdm/tools/debian-openssl/ Regards, Andreas -- And

Re: iptables and nmap

2007-06-08 Thread Andreas Kreuzinger
Hi ! * Manuel García <[EMAIL PROTECTED]> [2007-06-07 10:01]: > On 6/7/07, Joan Hérisson <[EMAIL PROTECTED]> wrote: [...snip...] > > Results: > > - The server is still unreachable. > > - When I do nmap localhost, I have port 80 open but not 8080. > > - When I comment out the line for port 80 in fir

Andreas Paffrath/face2net/A-B ist außer Haus.

2006-05-07 Thread Andreas Paffrath
Vielen Dank für Ihre EMail, ich bin vom 4. bis zum 19.05 nicht erreichbar. Ihre Email wird nicht weitergeleitet. Ich werde Ihre Email nach meine Rückkehr beantworten. Mit freundlichen Grüßen Andreas Paffrath -- Andreas Paffrath A&a

Andreas Paffrath/face2net/A-B ist außer Haus.

2006-05-04 Thread Andreas Paffrath
Vielen Dank für Ihre EMail, ich bin vom 4. bis zum 19.05 nicht erreichbar. Ihre Email wird nicht weitergeleitet. Ich werde Ihre Email nach meine Rückkehr beantworten. Mit freundlichen Grüßen Andreas Paffrath -- Andreas Paffrath A&a

Logauswertung

2006-04-23 Thread Andreas
. b. Portscans) und maile Sie mir zu. Grüsse Andreas -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: bug in tar 1.14-2.1

2006-03-27 Thread Andreas Barth
to s-p-u. Is a binary-only upload enough? If so, why not just queue a binNMU by the buildd? (And one should check all the archs BTW, and also add a test suite one day :) Cheers, Andi -- http://home.arcor.de/andreas-barth/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "u

Re: sendmail vulnerability

2006-03-23 Thread Andreas Barth
* Andreas Piper ([EMAIL PROTECTED]) [060323 09:45]: > Hello, > ISS has reported a serious flaw in sendmail before 8.13.6, see > http://xforce.iss.net/xforce/alerts/id/216 and > http://sendmail.org/8.13.6.html > > Is a security fix of the sendmail-package(s) in view,

sendmail vulnerability

2006-03-23 Thread Andreas Piper
Hello, ISS has reported a serious flaw in sendmail before 8.13.6, see http://xforce.iss.net/xforce/alerts/id/216 and http://sendmail.org/8.13.6.html Is a security fix of the sendmail-package(s) in view, or should I try to install sendmail 8.13.6 standalone? Thanks, Andreas

Re: encrpyt harddrive without passphrase/userinput

2006-02-26 Thread Andreas Nanko, Continum
Hello, I think this should be possible over a special rebuild of initrd image, which runs before root partition is mounted. But i don't think you'll find a real secure way to get the secret over the net. Regards, Andreas Lothar Ketterer schrieb: Hi Mario, On Sun, 26 Feb 2

Re: hardening checkpoints

2005-12-16 Thread Andreas Blaafladt
his won't help you if your connection is matched by an earlier blocking rule. To really make sure that you can reach the machine after a failed firewall-reconfiguration, replace -A with -I, which makes the rule inserted at the head of the chain, and hence, the first rule to be matched. /And

Re: Re: Clear screen question

2005-12-07 Thread Andreas Schmidt
ext appear twice because that's how often it was in your mail: as text/plain and text/html... Just food for thought. ;-) Best regards, Andreas -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.2 (GNU/Linux) iD8DBQFDlpguAB00fZdcFyQRAoHHAJ9Gt4iOER5zYt60k+mVgx4FsLkLJQCffhlw Wh/2adpTplrSBVk

unsubscribe

2005-10-17 Thread Hupfer, Andreas
-Ursprüngliche Nachricht- Von: Martin Schulze [mailto:[EMAIL PROTECTED] Gesendet: Mittwoch, 12. Oktober 2005 05:48 An: Debian Security Announcements Betreff: [SECURITY] [DSA 863-1] New xine-lib packages fix arbitrary code execution -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -

Re: security.debian.org mirrors?

2005-09-29 Thread Andreas Barth
* Arnaud Fontaine ([EMAIL PROTECTED]) [050929 22:26]: > Is it possible to have a warranty that the package in the mirror archive > hasn't be modified by someone else ? Maybe my question is stupid but i > wasn't able to find an answer on replicator website ;). The Release-file is digitally signed

Re: WTF: Debian security, ex. Linux kernel vulnerabilities

2005-09-20 Thread Andreas Barth
* Bob Tanner ([EMAIL PROTECTED]) [050920 16:39]: > Same here. Reach out to the community and let us help. Well, the basic problem with mirrors is: * How can we be sure that all mirrors are synced _very_ fast? We will probably get more negative feedback if some mirrors are delayed by more than

Re: WTF: Debian security, ex. Linux kernel vulnerabilities

2005-09-20 Thread Andreas Barth
* Steinar H. Gunderson ([EMAIL PROTECTED]) [050920 16:21]: > On Tue, Sep 20, 2005 at 03:50:14PM +0200, Andreas Barth wrote: > > s.d.o is not offline, just the full bandwith is used by people > > downloading a security update. > Do we need mirrors for security.debian.org? I woul

Re: security.debian.org timeouts

2005-09-19 Thread Andreas Barth
* Bartosz Fenski aka fEnIo ([EMAIL PROTECTED]) [050919 22:46]: > On Mon, Sep 19, 2005 at 10:04:14PM +0200, Florian Weimer wrote: > > BTW, I don't understand why this was posted to debian-curiosa, either. > > I got into the habit of reading important announcements for the users > on http://planet.

Re: security.debian.org timeouts

2005-09-19 Thread Andreas Barth
* Noèl Köthe ([EMAIL PROTECTED]) [050919 21:19]: > anybody knows what's the problem with klecker/security.d.o? The link to the outside world is fully saturated currently. There are ideas discussed how we can add more machines / bandwith, but that's not a short-term solution. > The whole day I get

Re: anonftpsync (was: security archive defective!?)

2005-09-01 Thread Andreas Barth
* martin f krafft ([EMAIL PROTECTED]) [050901 09:58]: > also sprach Andreas Barth <[EMAIL PROTECTED]> [2005.09.01.0858 +0200]: > > I strongly recommend to use anonftpsync for mirroring any of the debian > > archives > What's the advantage over debmirror? That it &

Re: security archive defective!?

2005-08-31 Thread Andreas Barth
Hi, * Marek Szuba ([EMAIL PROTECTED]) [050901 02:32]: > Another thing the present state of the archive makes a major pain in > the arse is mirroring. Since crip is listed in the Sources file, the > non-binary part of the security mirror I keep for the local network has > effectively ceased to exis

Re: security archive defective!?

2005-08-18 Thread Andreas Barth
* Michael Stone ([EMAIL PROTECTED]) [050818 15:23]: > On Thu, Aug 18, 2005 at 03:01:27PM +0200, Sven Mueller wrote: > >Did I expect something that isn't granted (that the source orig.tar.gz > >should be in the security pool with the other files) > IIRC, the orig file isn't in the security archive

Re: On Mozilla-* updates

2005-07-31 Thread Andreas Barth
* Steve Kemp ([EMAIL PROTECTED]) [050731 20:00]: > On Sun, Jul 31, 2005 at 06:18:18PM +0100, antgel wrote: > > Any chance of an elaboration? I wasn't privy to any previous discussion > > on this and I'm interested. What's the problem with searching bugzilla > > for security patches on given vers

Re: Old security bugs tagged woody

2005-07-18 Thread Andreas Barth
* Florian Weimer ([EMAIL PROTECTED]) [050716 00:49]: > Many developers close security bugs which are tagged woody only, even > though security support for oldstable has not been discontinued > officially. > > How shall we bridge the apparent gap between documented policy and > existing practice?

Re: Timeliness of Debian Security Announceness? (DSA 756-1 Squirrelmail)

2005-07-15 Thread Andreas Barth
* Herwig Wittmann ([EMAIL PROTECTED]) [050714 17:58]: > I do not want to rude in any way- please try to excuse my way of putting > things, but does anybody have a prediction how probable it is for such a > thing to happen again? > > Is there a role/function in debian that is responsible for review

Re: Document the bug fix policy regarding PHP Safe Mode

2005-07-14 Thread Andreas Gredler
mod_php with suphp? greets Jimmy -- Andreas "Jimmy" Gredler ,'"`. http://www.g-tec.co.at/ | [EMAIL PROTECTED] ( grml.org -» Linux for texttool-users and sysadmins `._, http://www.grml.org/| [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMA

Re: cvs 1.11.1p1debian-11 is in wrong distribution

2005-07-06 Thread Andreas Barth
* Peter Lundkvist ([EMAIL PROTECTED]) [050705 23:40]: > cvs 1.11.1p1debian-11 seems to be in the wrong distribution: > should be in woody-security (oldstable) but is in sarge-security. This is a known issue, and one of the left-overs from trying to fix the problems with the scripts on security.deb

Re: Strange kernel log in apache log

2005-04-16 Thread Andreas Gredler
;t run good enough, please send me a mail. We could then try to speed it up. greets Jimmy -- Andreas "Jimmy" Gredler ,'"`. http://www.g-tec.co.at/ | [EMAIL PROTECTED] ( grml.org -» Linux for texttool-users and sysadmins `._, h

Re: Richtig swappen

2005-01-28 Thread Andreas Schmidt
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 2005.01.28 10:00, Andreas Schmidt wrote: (A lot of inappropriate stuff) Sorry, guys! This wasn't meant to be posted to this list at all! I just copied+pasted the address from another message without realizing that the folder I currently w

Richtig swappen

2005-01-28 Thread Andreas Schmidt
ird. Bin fuer alle Anregungen dankbar. Schoenen Gruss, Andreas pgpJq47QYbD80.pgp Description: PGP signature

Re: auth log

2005-01-26 Thread Andreas Schmidt
... Best regards, Andreas -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.5 (GNU/Linux) iD8DBQFB+HvlAB00fZdcFyQRApNnAKC6r7FIQGDCBAt448iscETGOv9e+QCgs7KJ QrvsmAwjA7v70IsKSc3qFzg= =k700 -END PGP SIGNATURE-

Re: iptables requires packets counter

2005-01-13 Thread Andreas Kretschmer
CCEPTED or not. To do this I make use of the -c option as follows: > > > iptables -c forward -p tcp -s 172.26.0.2 -d 192.168.0.1 -i br0 > > But as unespected iptables answers: > > 'iptables v1.2.9: -c requires packet and byte counter' Please try 'ipta

Abwesenheitsnotiz: **JUNK** Mail Delivery (failure [EMAIL PROTECTED])

2004-12-30 Thread Andreas Blüml
PROTECTED] Mit freundlichen Grüßen Andreas Blüml

Re: Samba 3.0.10 as Debian package -- and updating unstable

2004-12-17 Thread Andreas Metzler
nded or a local misconfiguration? Some part of the software taking care of installing stuff into the archive and pushing mirroring it, broke. This has been fixed. cu andreas -- "See, I told you they'd listen to Reason," [SPOILER] Svfurlr fnlf, fuhggvat qbja gur juveyvat

Re: any DSA for CAN-2004-1026 ?

2004-12-11 Thread Andreas Metzler
Christophe Chisogne publicityweb.com> writes: > Seems imlib has multiple overflows vulnerabilities [1,2,3]. > Are Woody/Sarge vulnerable? [...] Yes, yes. cu andreas -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: any DSA for CAN-2004-1026 ?

2004-12-11 Thread Andreas Metzler
//cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-1026 > > [3] SUSE Security Summary Report SUSE-SR:2004:003 > http://www.suse.de/de/security/2004_03_sr.html Debian bugreports have already been filed: #284925 (imlib and imlib+png2) and #285138 (imlib2). cu andreas -- To UNSU

Re: Serious problem after tetex security update

2004-11-26 Thread Andreas Goesele
"s. keeling" <[EMAIL PROTECTED]> writes: > Incoming from Andreas Goesele: >> I found the solution. There is a bug in the new package: >> >> /usr/share/texmf/web2c does not link to /var/lib/texmf/web2c (as it > > Odd. It worked for me (though I haven&#

Re: Serious problem after tetex security update

2004-11-26 Thread Andreas Goesele
Andreas Goesele <[EMAIL PROTECTED]> writes: > After the last security update with libkpathsea3 and tetex-bin my > LaTeX installation doesn't work any more. When I try to compile a > LaTeX file I get: > > I can't find the format file `latex.fmt'! >

Serious problem after tetex security update

2004-11-26 Thread Andreas Goesele
Thanks a lot in advance! Andreas Goesele -- Omnis enim res, quae dando non deficit, dum habetur et non datur, nondum habetur, quomodo habenda est. Augustinus, De doctrina christiana -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscrib

Re: [SECURITY] [DSA 596-1] New sudo packages fix privilege escalation

2004-11-24 Thread Andreas Hellmer
Hallo Frau Carstens, sind wir da auf dem aktuellen Stand ? Sonst bitte bei nächster Wartungsaufgabe mit machen. --- Andreas Hellmer - [EMAIL PROTECTED] Hamburger Pensionsverwaltung eG MS> -BEGIN PGP SIGNED MESSAGE- MS> Hash: SH

Re: [MIB-Admin] [SECURITY] [DSA 563-2] New cyrus-sasl packages really fix arbitrary code execution

2004-10-13 Thread Andreas Barth
* Manuel Moeller ([EMAIL PROTECTED]) [041012 22:40]: > dieses Sicherheitsloch wurde heute schon einmal geschlossen. Well, but now the packages are even working. ;) Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9

Re: [DSA 563-1] New cyrus-sasl packages fix arbitrary code execution

2004-10-12 Thread Andreas Barth
n sid and > sarge, for starters. The patch from 1.5.28-6.1 to 1.5.28-6.2 is ok. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe&q

Re: [DSA 563-1] New cyrus-sasl packages fix arbitrary code execution

2004-10-12 Thread Andreas Barth
e soon. Please postpone updates for now. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: logcheck oddity

2004-08-09 Thread Andreas Schmidt
want to have a range of just alphanumerical characters, you've got to use [[:alnum:]]+. So this should work: ^\w{3} [ :0-9]{11} [[:alnum:]]+ /USR/SBIN/CRON\[[0-9]+\]: \([[:alnum:]] +\) CMD \(.*\)$ Best regards, Andreas -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subje

Andreas Sexauer/Intranet/fernstudKA ist außer Haus.

2004-08-03 Thread Andreas . Sexauer
Ich werde ab 31.05.2004 nicht im Büro sein. In dringenden Fällen wenden Sie sich bitte unter [EMAIL PROTECTED] an das Sekretariat des Fernstudienzentrums. Ich werde am 10.08.2004wieder zurück sein. und Ihre Nachricht dann beantworten.

Re: Why not push to stable?

2004-06-26 Thread Andreas Barth
rently, any DD could upload anything to s-p-u, and not all packages there are accepted into stable. So, it might be considered a bad idea to add this to the sources.list.) Vheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1

Re: Why not push to stable?

2004-06-26 Thread Andreas Barth
ay. what's the problem with: deb mirror deb security.d.o In this case, the file is taken from the mirror if it exists already there, and otherwise from security.d.o. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C

Re: setting up iptables

2004-03-04 Thread Andreas Demant
reload. Yours Andreas Demant

Re: setting up iptables

2004-03-04 Thread Andreas Demant
reload. Yours Andreas Demant -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Hacked - is it my turn?

2004-02-02 Thread Andreas Schmidt
open by nmap/netstat. Best regards, Andreas

Re: Hacked - is it my turn?

2004-02-02 Thread Andreas Schmidt
rvice webcache is assigned to port 8080/tcp which should be 8080/udp. Is that anything to be worried about? After all, it's just some mappings in /etc/services, or is it? I don't run an ircd (I know of), for instance, and the other ports mentioned here are not shown as open by nmap/

Re: another kernel vulnerability

2004-01-05 Thread Andreas Barth
e first fix). Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C

Re: another kernel vulnerability

2004-01-05 Thread Andreas Barth
e first fix). Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: [Users] IPSec WinXP interop

2004-01-02 Thread Andreas Steffen
> barf.txt end mail it to me. Also the output of ipsec auto --listall could be helpful. Regards Andreas Antony Gelberg wrote: On Wed, Dec 31, 2003 at 04:04:39PM +0100, Reinhold Plew wrote: may be you need this in your ipsec.conf to disable OE Thanks to you and Andreas, that wor

Re: [Users] IPSec WinXP interop

2004-01-02 Thread Andreas Steffen
> barf.txt end mail it to me. Also the output of ipsec auto --listall could be helpful. Regards Andreas Antony Gelberg wrote: On Wed, Dec 31, 2003 at 04:04:39PM +0100, Reinhold Plew wrote: may be you need this in your ipsec.conf to disable OE Thanks to you and Andreas, that worked gr

Re: [Users] IPSec WinXP interop

2003-12-31 Thread Andreas Steffen
ion To disable OE (eg. policy groups and packetdefault), cut and paste the following lines to /etc/ipsec.conf: conn block auto=ignore conn private auto=ignore conn private-or-clear auto=ignore conn clear-or-private auto=ignore conn clear auto=ignor

Re: [Users] IPSec WinXP interop

2003-12-31 Thread Andreas Steffen
sable OE (eg. policy groups and packetdefault), cut and paste the following lines to /etc/ipsec.conf: conn block auto=ignore conn private auto=ignore conn private-or-clear auto=ignore conn clear-or-private auto=ignore conn clear auto=ign

Re: Screen in woody vulnerable to CAN-2003-0972 ?

2003-12-30 Thread Andreas Barth
even a bug report for that. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C

Re: Screen in woody vulnerable to CAN-2003-0972 ?

2003-12-30 Thread Andreas Barth
even a bug report for that. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: When will kernel-image-2.4.23 be available ?

2003-12-06 Thread Andreas Goesele
ryptic for me. Could you expand a little bit on it? Do you want to imply in any way that this patch wouldn't be enough to secure the kernel? If so, why? Thanks a lot in advance! Andreas Goesele -- Omnis enim res, quae dando non deficit, dum habetur et non datur, nondum

Re: When will kernel-image-2.4.23 be available ?

2003-12-06 Thread Andreas Goesele
ryptic for me. Could you expand a little bit on it? Do you want to imply in any way that this patch wouldn't be enough to secure the kernel? If so, why? Thanks a lot in advance! Andreas Goesele -- Omnis enim res, quae dando non deficit, dum habetur et non datur, nondum

Re: LSM-based systems and debian packages

2003-12-01 Thread Andreas Barth
* Russell Coker ([EMAIL PROTECTED]) [031201 05:10]: > On Mon, 1 Dec 2003 07:43, Andreas Barth <[EMAIL PROTECTED]> wrote: > > What about the gettys? I'm asking this because I wrote the initial > > mail because of mgetty, a package where I expect some non-standard >

Re: LSM-based systems and debian packages

2003-12-01 Thread Andreas Barth
* Russell Coker ([EMAIL PROTECTED]) [031201 05:10]: > On Mon, 1 Dec 2003 07:43, Andreas Barth <[EMAIL PROTECTED]> wrote: > > What about the gettys? I'm asking this because I wrote the initial > > mail because of mgetty, a package where I expect some non-standard >

Re: Security patches

2003-11-30 Thread Andreas Barth
t least patches for 2.6, see http://www.lids.org/ (or http://lsm.immunix.org/lsm_modules.html ) Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C

Re: LSM-based systems and debian packages

2003-11-30 Thread Andreas Barth
Hi, thanks for your fast reply. Just a few more questions: * Russell Coker ([EMAIL PROTECTED]) [031130 21:10]: > On Mon, 1 Dec 2003 04:27, Andreas Barth <[EMAIL PROTECTED]> wrote: > > Is it possible for me as a package maintainer to specifiy the needed > > rights for "m

Re: Security patches

2003-11-30 Thread Andreas Barth
t least patches for 2.6, see http://www.lids.org/ (or http://lsm.immunix.org/lsm_modules.html ) Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: LSM-based systems and debian packages

2003-11-30 Thread Andreas Barth
Hi, thanks for your fast reply. Just a few more questions: * Russell Coker ([EMAIL PROTECTED]) [031130 21:10]: > On Mon, 1 Dec 2003 04:27, Andreas Barth <[EMAIL PROTECTED]> wrote: > > Is it possible for me as a package maintainer to specifiy the needed > > rights for "m

LSM-based systems and debian packages

2003-11-30 Thread Andreas Barth
ss simple things. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C

LSM-based systems and debian packages

2003-11-30 Thread Andreas Barth
ss simple things. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Debian servers "hacked"?

2003-11-27 Thread Andreas Barth
relevant to r2. That are packages that were security updates (since r1), and are now part of r2. Please see the dates in the changelogs for details. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C -- To UNS

Re: Debian servers "hacked"?

2003-11-27 Thread Andreas Barth
s but are only relevant to r2. That are packages that were security updates (since r1), and are now part of r2. Please see the dates in the changelogs for details. Cheers, Andi -- http://home.arcor.de/andreas-barth/ PGP 1024/89FB5CE5 DC F1 85 6D A6 45 9C 0F 3B BE F1 D0 C5 D1 D9 0C

Re: logcheck thinks that system is under attack, related to ssl problem?

2003-10-06 Thread Andreas Wüst
Hi Noah Thanks again for your answer!! On Montag, 06-Okt-03 at 22:13:32, Noah L. Meyerhans wrote: > On Mon, Oct 06, 2003 at 10:07:23PM +0100, Andreas W?st wrote: >> I hope you've got some more ideas. I'm strictly following all the >> security updates, and have a l

Re: logcheck thinks that system is under attack, related to ssl problem?

2003-10-06 Thread Andreas Wüst
Hi Noah Thanks a lot for your fast answer! On Montag, 06-Okt-03 at 17:58:10, Noah L. Meyerhans wrote: > On Mon, Oct 06, 2003 at 05:31:05PM +0100, Andreas W?st wrote: >> Hmmm, so what? Are these problems somehow tied together? Furthermore, >> what is the probability that the sy

Re: logcheck thinks that system is under attack, related to ssl problem?

2003-10-06 Thread Andreas Wüst
Hi Noah Thanks again for your answer!! On Montag, 06-Okt-03 at 22:13:32, Noah L. Meyerhans wrote: > On Mon, Oct 06, 2003 at 10:07:23PM +0100, Andreas W?st wrote: >> I hope you've got some more ideas. I'm strictly following all the >> security updates, and have a l

Re: logcheck thinks that system is under attack, related to ssl problem?

2003-10-06 Thread Andreas Wüst
Hi Noah Thanks a lot for your fast answer! On Montag, 06-Okt-03 at 17:58:10, Noah L. Meyerhans wrote: > On Mon, Oct 06, 2003 at 05:31:05PM +0100, Andreas W?st wrote: >> Hmmm, so what? Are these problems somehow tied together? Furthermore, >> what is the probability that the sy

logcheck thinks that system is under attack, related to ssl problem?

2003-10-06 Thread Andreas Wüst
Hi I've got a rather wierd problem. Since this morning, I cannot connect anymore to a pop mail server using ssl, evolution complains about a bad signature of the certificate. This is since I've booted my machine today. At the same time, one minute before I got the after-startup report from logch

  1   2   >