Re: Following security issues found upstream

2001-12-15 Thread Jean-Marc Boursot
On Thursday 13 December 2001 20:41, Wichert Akkerman wrote: > Previously Javier Fern?ndez-Sanguino Pe?a wrote: > > I guess a public database could be useful both for > > We have a private database (well, a status-file in which we keep > track of things). A public database can't be used since we

Re: Following security issues found upstream

2001-12-15 Thread Jean-Marc Boursot
On Thursday 13 December 2001 20:41, Wichert Akkerman wrote: > Previously Javier Fern?ndez-Sanguino Pe?a wrote: > > I guess a public database could be useful both for > > We have a private database (well, a status-file in which we keep > track of things). A public database can't be used since w

Re: ProFtpd question

2001-06-27 Thread Jean-Marc Boursot
On Wednesday 27 June 2001 19:07, [EMAIL PROTECTED] wrote: > > And if I'm not mistaken, if they are somehow now able to execute the > chsh command, then they have a valid shell account they can log in > to. :-( > > While they shouldn't be able to run chsh, or the equivalent, putting > their shell in

Re: ProFtpd question

2001-06-27 Thread Jean-Marc Boursot
On Wednesday 27 June 2001 19:07, [EMAIL PROTECTED] wrote: > > And if I'm not mistaken, if they are somehow now able to execute the > chsh command, then they have a valid shell account they can log in > to. :-( > > While they shouldn't be able to run chsh, or the equivalent, putting > their shell i

Re: ProFtpd question

2001-06-27 Thread Jean-Marc Boursot
On Wednesday 27 June 2001 05:54, Brandon High wrote: > > Perhaps a silly question, but why not just set the shell to > /bin/false? You can. However, with ftponly, you can have 3 user levels: false -> only mail ftponly -> mail + FTP ??sh -> mail, FTP and shell JM

Re: ProFtpd question

2001-06-27 Thread Jean-Marc Boursot
On Wednesday 27 June 2001 05:54, Brandon High wrote: > > Perhaps a silly question, but why not just set the shell to > /bin/false? You can. However, with ftponly, you can have 3 user levels: false -> only mail ftponly -> mail + FTP ??sh -> mail, FTP and shell JM -- To UNSUBSCRIBE, email to [EM

Re: ProFtpd question

2001-06-26 Thread Jean-Marc Boursot
> ln -s /bin/ftponly /bin/false Wow, it's quite late in Europe. It's better like that: ln -s /bin/false /bin/ftponly JM

Re: ProFtpd question

2001-06-26 Thread Jean-Marc Boursot
On Tuesday 26 June 2001 22:38, [EMAIL PROTECTED] wrote: > How can I create a ftp-user ? > I know that the /bin/false shell is for non-shell users but I don't > know how to create a mail-only or ftp-only users. Do you know how ? You create the link ftponly: ln -s /bin/ftponly /bin/false You add /b

Re: ProFtpd question

2001-06-26 Thread Jean-Marc Boursot
> ln -s /bin/ftponly /bin/false Wow, it's quite late in Europe. It's better like that: ln -s /bin/false /bin/ftponly JM -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: ProFtpd question

2001-06-26 Thread Jean-Marc Boursot
On Tuesday 26 June 2001 22:38, [EMAIL PROTECTED] wrote: > How can I create a ftp-user ? > I know that the /bin/false shell is for non-shell users but I don't > know how to create a mail-only or ftp-only users. Do you know how ? You create the link ftponly: ln -s /bin/ftponly /bin/false You add /

Re: Creating a logfile for Netfilter

2001-06-15 Thread Jean-Marc Boursot
On Friday 15 June 2001 16:32, Stefan Srdic wrote: > > > > If you create a user defined chain something like the following: > > > > iptables -N log_droped > > iptables -A log_droped -j LOG --log-level 1 --log-prefix > > "droped_::" iptables -A log_droped -j DROP > > > > And make all your firewall ru

Re: Creating a logfile for Netfilter

2001-06-15 Thread Jean-Marc Boursot
On Friday 15 June 2001 16:32, Stefan Srdic wrote: > > > > If you create a user defined chain something like the following: > > > > iptables -N log_droped > > iptables -A log_droped -j LOG --log-level 1 --log-prefix > > "droped_::" iptables -A log_droped -j DROP > > > > And make all your firewall r

Re: sshd port config and security

2001-04-06 Thread Jean-Marc Boursot
On Friday 06 April 2001 17:31, Vinh Truong wrote: > I have sshd set up on my machine at home. Instead of the default > port 22, I uninstalled telnetd and run sshd on 23. I do this mostly > because I want to ssh into my machine from work where they don't open > port 22 on the firewall. > They do

Re: sshd port config and security

2001-04-06 Thread Jean-Marc Boursot
On Friday 06 April 2001 17:31, Vinh Truong wrote: > I have sshd set up on my machine at home. Instead of the default > port 22, I uninstalled telnetd and run sshd on 23. I do this mostly > because I want to ssh into my machine from work where they don't open > port 22 on the firewall. > They do

Bind-8.2.2-P5 DOS

2000-11-09 Thread Jean-Marc Boursot
pproved ZXFR from [192.168.1.10].1642 for "domain.org" Nov 9 15:13:19 ns12 named[137]: unsupported XFR (type ZXFR) of "domain.org" (IN) to [192.168.1.10].1642 Nov 9 15:22:01 ns12 named[137]: db_update: DB_F_ACTIVE set Nov 9 15:22:01 ns12 named[137]: db_update: DB_F_ACTIVE set And named was down... Regards, Jean-Marc Boursot

Bind-8.2.2-P5 DOS

2000-11-09 Thread Jean-Marc Boursot
:19 ns12 named[137]: unsupported XFR (type ZXFR) of "domain.org" (IN) to [192.168.1.10].1642 Nov 9 15:22:01 ns12 named[137]: db_update: DB_F_ACTIVE set Nov 9 15:22:01 ns12 named[137]: db_update: DB_F_ACTIVE set And named was down... Regards, Jean-Marc Boursot -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]