Re: [OT] Collective memory query

2004-10-08 Thread Peter Cordes
it in the future. :) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus

Re: [sec] Re: failed root login attempts

2004-09-28 Thread Peter Cordes
that IP for 15minutes after seeing that sequence, since it's a perfect signal that it's a bogus attack, and that it will try a bunch of logins right away, then never come back. Has anyone logged the passwords these attacks try? -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED

Re: [SECURITY] [DSA 479-1] New Linux 2.4.18 packages fix local root exploit (source+alpha+i386+powerpc)

2004-04-15 Thread Peter Cordes
the /boot symlinks broken when I remove a kernel package, even if it was totally obsolete and the links weren't pointing to any files from that package...) Your best bet is to look at the symlinks yourself, and get them pointing to the right place. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL

Re: [SECURITY] [DSA 479-1] New Linux 2.4.18 packages fix local root exploit (source+alpha+i386+powerpc)

2004-04-15 Thread Peter Cordes
the /boot symlinks broken when I remove a kernel package, even if it was totally obsolete and the links weren't pointing to any files from that package...) Your best bet is to look at the symlinks yourself, and get them pointing to the right place. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL

Re: Web based password changer

2004-01-27 Thread Peter Cordes
just use chpasswd. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus

Re: Web based password changer

2004-01-27 Thread Peter Cordes
just use chpasswd. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus

Re: 2.6.1 CryptoAPI woes

2004-01-21 Thread Peter Cordes
is fine, but you need to patch reiserfs for ordered data.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so

Re: Crypto-Swap questions

2004-01-21 Thread Peter Cordes
to worry about crap like that. :) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small

Re: 2.6.1 CryptoAPI woes

2004-01-21 Thread Peter Cordes
is fine, but you need to patch reiserfs for ordered data.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so

Re: 2.6.1 CryptoAPI woes

2004-01-20 Thread Peter Cordes
=journal on the loopback filesystem to make sense, but I don't think so. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my

Re: 2.6.1 CryptoAPI woes

2004-01-20 Thread Peter Cordes
=journal on the loopback filesystem to make sense, but I don't think so. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my

Re: Q. Should one mirror debian.security.org? Good or Bad Idea?

2003-12-09 Thread Peter Cordes
locking that NFS sharing /var/cache/apt is safe. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: What will be old configurations if new kernel installed

2003-12-09 Thread Peter Cordes
changed the symlinks). lilo skips entries that are marked as optional when the kernel file isn't there. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up

Re: Q. Should one mirror debian.security.org? Good or Bad Idea?

2003-12-09 Thread Peter Cordes
locking that NFS sharing /var/cache/apt is safe. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: What will be old configurations if new kernel installed

2003-12-09 Thread Peter Cordes
changed the symlinks). lilo skips entries that are marked as optional when the kernel file isn't there. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up

Re: passwd character limitations

2003-11-02 Thread Peter Cordes
/x, from another session, type your password, and then stty cooked /dev/pts/x.) but there shouldn't be any limits on the input to the hash function whose output is stored in the shadow file.[0] -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound

Re: How efficient is mounting /usr ro?

2003-10-17 Thread Peter Cordes
a big list of effects on systems in general. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: How efficient is mounting /usr ro?

2003-10-17 Thread Peter Cordes
a big list of effects on systems in general. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: services installed and running out of the box

2003-09-26 Thread Peter Cordes
difficult? No web server is installed by default. If you don't want one, don't install one. Dependencies. I've had the same annoying experience as Dale. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how

Re: The same debian - different packages

2003-09-26 Thread Peter Cordes
/updates/main Packages 1:3.4p1-1 0 500 http://http.us.debian.org woody/main Packages We can see the differences. But how to change it ? Try apt-get install ssh/stable. That should force a downgrade to the stable version. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL

Re: Verisign again...

2003-09-26 Thread Peter Cordes
##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC signature.asc Description

Re: The same debian - different packages

2003-09-26 Thread Peter Cordes
--forget-old-unavail is for? Maybe --clear-avail? -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: services installed and running out of the box

2003-09-26 Thread Peter Cordes
difficult? No web server is installed by default. If you don't want one, don't install one. Dependencies. I've had the same annoying experience as Dale. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how

Re: The same debian - different packages

2003-09-26 Thread Peter Cordes
/updates/main Packages 1:3.4p1-1 0 500 http://http.us.debian.org woody/main Packages We can see the differences. But how to change it ? Try apt-get install ssh/stable. That should force a downgrade to the stable version. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL

Re: Verisign again...

2003-09-26 Thread Peter Cordes
##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC signature.asc Description

Re: The same debian - different packages

2003-09-26 Thread Peter Cordes
--forget-old-unavail is for? Maybe --clear-avail? -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: bugs #212357 and #212358: could we have a 'deprecated' priority?

2003-09-23 Thread Peter Cordes
probably not the first person to have said the above, probably just the first to clutter up deb-sec with it, so I suppose I should really go search the deb-devel archives to see if anyone has any plans about this kind of thing... -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED

Re: bugs #212357 and #212358: could we have a 'deprecated' priority?

2003-09-23 Thread Peter Cordes
probably not the first person to have said the above, probably just the first to clutter up deb-sec with it, so I suppose I should really go search the deb-devel archives to see if anyone has any plans about this kind of thing... -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED

Re: Debian + Verisign's .com/.net hijack

2003-09-19 Thread Peter Cordes
) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC pgp0.pgp Description

Re: Debian + Verisign's .com/.net hijack

2003-09-19 Thread Peter Cordes
) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC pgpzzP1Bf5DGa.pgp

Re: How to reduce sid security

2003-08-14 Thread Peter Cordes
correctly. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: How to reduce sid security

2003-08-12 Thread Peter Cordes
correctly. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: Debian Stable server hacked

2003-08-10 Thread Peter Cordes
, or does it belong to an ISP somewhere, or what? If it's a local address, and not a computer lab, that might give you some clues about whose door to knock on... -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how

Re: How to reduce sid security

2003-07-31 Thread Peter Cordes
) because one tool for everything is easier. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , des.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: execute permissions in /tmp

2003-07-16 Thread Peter Cordes
package you installed.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200

Re: execute permissions in /tmp

2003-07-16 Thread Peter Cordes
would still work, by running /usr/bin/perl /tmp/foo.pl, as long as you can read /tmp/foo.pl. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial

Re: execute permissions in /tmp

2003-07-16 Thread Peter Cordes
package you installed.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200

Re: execute permissions in /tmp

2003-07-16 Thread Peter Cordes
would still work, by running /usr/bin/perl /tmp/foo.pl, as long as you can read /tmp/foo.pl. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial

Re: execute permissions in /tmp

2003-07-13 Thread Peter Cordes
On Sun, Jul 13, 2003 at 01:33:52AM -0400, Noah L. Meyerhans wrote: On Sat, Jul 12, 2003 at 11:43:02PM -0300, Peter Cordes wrote: This is at least the third time this has come up that I remember. However, absolute statements like *can not* get me thinking: Is there any any sort of file

Re: execute permissions in /tmp

2003-07-13 Thread Peter Cordes
On Sun, Jul 13, 2003 at 01:33:52AM -0400, Noah L. Meyerhans wrote: On Sat, Jul 12, 2003 at 11:43:02PM -0300, Peter Cordes wrote: This is at least the third time this has come up that I remember. However, absolute statements like *can not* get me thinking: Is there any any sort

Re: execute permissions in /tmp

2003-07-12 Thread Peter Cordes
complications that a noexec /tmp wouldn't) for clues: http://lists.debian.org/debian-devel/2001/debian-devel-200111/msg00212.html Happy hacking, -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours

Re: execute permissions in /tmp

2003-07-12 Thread Peter Cordes
(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC pgpsCHmmfSIzj.pgp

Re: execute permissions in /tmp

2003-07-12 Thread Peter Cordes
complications that a noexec /tmp wouldn't) for clues: http://lists.debian.org/debian-devel/2001/debian-devel-200111/msg00212.html Happy hacking, -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours

Re: configure ssh-access

2003-07-10 Thread Peter Cordes
(I'm replying to the list, hope you don't mind.) On Thu, Jul 10, 2003 at 01:52:13PM +0200, Christian Kurz wrote: On [09/07/03 16:12], Peter Cordes wrote: On Mon, Jul 07, 2003 at 07:38:17PM +0200, Fran?ois TOURDE wrote: Le 12240i?me jour apr?s Epoch, Mario Ohnewald ?crivait: I think

Re: configure ssh-access

2003-07-10 Thread Peter Cordes
(I'm replying to the list, hope you don't mind.) On Thu, Jul 10, 2003 at 01:52:13PM +0200, Christian Kurz wrote: On [09/07/03 16:12], Peter Cordes wrote: On Mon, Jul 07, 2003 at 07:38:17PM +0200, Fran?ois TOURDE wrote: Le 12240i?me jour apr?s Epoch, Mario Ohnewald ?crivait: I think

Re: configure ssh-access

2003-07-09 Thread Peter Cordes
,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC -- To UNSUBSCRIBE, email

Re: configure ssh-access

2003-07-09 Thread Peter Cordes
,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: configure ssh-access

2003-07-09 Thread Peter Cordes
,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: Strongest linux - kernel patches

2003-07-03 Thread Peter Cordes
?RW Jul02 0:08 [kswapd] (I don't use my machine constantly, so it probably doesn't swap as much as a desktop used all day.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too

Re: Strongest linux

2003-07-02 Thread Peter Cordes
for the amount of effort it takes to set up, plus stable, reliable, well documented, etc. Some of the other options probably meet those criteria, but I wouldn't know, not having looked at them. All I can do is say that I'm happy with the grsec stuff so-far. -- #define X(x,y) x##y Peter Cordes

Re: Strongest linux - kernel patches

2003-07-02 Thread Peter Cordes
alt.impeach.bush, for example. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces

Re: Strongest linux - kernel patches

2003-07-02 Thread Peter Cordes
alt.impeach.bush, for example. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces

Re: Strongest linux - kernel patches

2003-07-02 Thread Peter Cordes
a solved problem. Con Kolivas's -ck3 patch for 2.4.21 includes grsecurity and XFS. (I didn't mention it before because I didn't realize it was significant. (I'm not using ACLs).) Con's webpage is http://members.optusnet.com.au/ckolivas/kernel/ -- #define X(x,y) x##y Peter Cordes ; e-mail: X

Re: Accounts for client programs

2003-07-01 Thread Peter Cordes
link in enough X library stuff to send keystrokes to other windows, etc.) Still, that's not the sort of thing a virus would usually do. It's more along the lines of what someone attacking you, personally, might try. (esp. after reading your message... :] -- #define X(x,y) x##y Peter Cordes ; e

Re: 1/2 Price Omaha Steaks Plus 3 FREE Gifts!

2003-06-16 Thread Peter Cordes
for it at the time). The message explained that the fee had been payed ahead of time. I'm not sure if Debian's ever managed to get money from any normal spammers, but I'm sure it doesn't usually happen. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who

Re: [SECURITY] [DSA-320-1] New mikmod packages fix buffer overflow

2003-06-16 Thread Peter Cordes
overflow a buffer when the archive is being read by mikmod. For the stable distribution (woody) this problem has been fixed in version 3.1.6-4woody3. Is libmikmod2 affected by this? xmms uses it. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound

Re: 1/2 Price Omaha Steaks Plus 3 FREE Gifts!

2003-06-16 Thread Peter Cordes
for it at the time). The message explained that the fee had been payed ahead of time. I'm not sure if Debian's ever managed to get money from any normal spammers, but I'm sure it doesn't usually happen. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who

Re: [SECURITY] [DSA-320-1] New mikmod packages fix buffer overflow

2003-06-16 Thread Peter Cordes
overflow a buffer when the archive is being read by mikmod. For the stable distribution (woody) this problem has been fixed in version 3.1.6-4woody3. Is libmikmod2 affected by this? xmms uses it. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound

Re: Keeping files away from users

2003-06-06 Thread Peter Cordes
from known-plaintext (the GZIP header). Make sure your pattern's not too short, so they have to disassemble the kernel or ask you for the source. If you know who's asking for the source, that's much better than not knowing who's hacking your work. -- #define X(x,y) x##y Peter Cordes ; e-mail: X

Re: Keeping files away from users

2003-06-06 Thread Peter Cordes
like you think they're criminals, or your adversaries. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: Keeping files away from users

2003-06-05 Thread Peter Cordes
it out from known-plaintext (the GZIP header). Make sure your pattern's not too short, so they have to disassemble the kernel or ask you for the source. If you know who's asking for the source, that's much better than not knowing who's hacking your work. -- #define X(x,y) x##y Peter Cordes ; e-mail

Re: Keeping files away from users

2003-06-05 Thread Peter Cordes
like you think they're criminals, or your adversaries. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , s.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly

Re: Could sudo be an security issue?

2003-05-21 Thread Peter Cordes
), right? In short: I also think you're using sudo correctly, but you need to be aware that all of the admin accounts are probably root equivalent, even without sudo. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how

Re: Fwd: Syscall implementation could lead to whether or not a file exists

2003-04-09 Thread Peter Cordes
floggings will continue until morale improves. MidWay_/#melb-wireless licks txrxafk while his defenses are down. MidWay_ Oh boy. That could have been taken out of context. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out

Re: [SECURITY] [DSA 265-1] -- BAD SIGNATURE !?

2003-03-25 Thread Peter Cordes
X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC -- To UNSUBSCRIBE

Re: [SECURITY] [DSA 265-1] -- BAD SIGNATURE !?

2003-03-25 Thread Peter Cordes
X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: Review: sect. 4.16.2 of the Securing Debian manual

2003-03-14 Thread Peter Cordes
loadable modules for that to be bulletproof. (unless the commonly used rootkits already do this, it would slow down an attacker and cause them to make more noise.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how

Re: Review: sect. 4.16.2 of the Securing Debian manual

2003-03-13 Thread Peter Cordes
loadable modules for that to be bulletproof. (unless the commonly used rootkits already do this, it would slow down an attacker and cause them to make more noise.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how

Re: Way off topic: Hijacked airplanes and the no-good US govt

2003-03-07 Thread Peter Cordes
/cspinarch.html, but they have more Free Software-friendly mp3s: http://www.fair.org/counterspin/mp3.html. I guess I'd better stop now, because debian-security isn't really about this kind of security. Sorry to fill up your mailboxes with this stuff, but it's important. -- #define X(x,y) x##y Peter

Re: [work] Integrity of Debian packages

2003-03-07 Thread Peter Cordes
safety seems to be what is going on, but people don't seem to admit that. vote for who I want etc. Too bad so few sane people ever make it onto a ballot in the first place, in the US or Canada. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man

Re: Way off topic: Hijacked airplanes and the no-good US govt

2003-03-07 Thread Peter Cordes
/cspinarch.html, but they have more Free Software-friendly mp3s: http://www.fair.org/counterspin/mp3.html. I guess I'd better stop now, because debian-security isn't really about this kind of security. Sorry to fill up your mailboxes with this stuff, but it's important. -- #define X(x,y) x##y Peter

Re: [work] Integrity of Debian packages

2003-03-07 Thread Peter Cordes
safety seems to be what is going on, but people don't seem to admit that. vote for who I want etc. Too bad so few sane people ever make it onto a ballot in the first place, in the US or Canada. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man

Re: [work] Integrity of Debian packages

2003-03-06 Thread Peter Cordes
not for a reasonable level of security). I really hope sarge will do by default. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack

Re: [work] Integrity of Debian packages

2003-03-06 Thread Peter Cordes
not for a reasonable level of security). I really hope sarge will do by default. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack

Re: Sarge freeze and security updates

2003-02-24 Thread Peter Cordes
into testing is obviously bad under all circumstances, right? -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so

Re: Sarge freeze and security updates

2003-02-24 Thread Peter Cordes
On Mon, Feb 24, 2003 at 11:11:43AM +0100, Adrian 'Dagurashibanipal' von Bidder wrote: On Mon, 2003-02-24 at 11:06, Peter Cordes wrote: On Mon, Feb 24, 2003 at 10:13:57AM +0100, Adrian 'Dagurashibanipal' von Bidder wrote: Now, foo 1.4-1 moves to testing with the security problem still

Re: Sarge freeze and security updates

2003-02-24 Thread Peter Cordes
move into testing is obviously bad under all circumstances, right? -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day

Re: Sarge freeze and security updates

2003-02-24 Thread Peter Cordes
On Mon, Feb 24, 2003 at 11:11:43AM +0100, Adrian 'Dagurashibanipal' von Bidder wrote: On Mon, 2003-02-24 at 11:06, Peter Cordes wrote: On Mon, Feb 24, 2003 at 10:13:57AM +0100, Adrian 'Dagurashibanipal' von Bidder wrote: Now, foo 1.4-1 moves to testing with the security problem still

Re: raw disk access

2003-02-10 Thread Peter Cordes
(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC -- To UNSUBSCRIBE, email

Re: raw disk access

2003-02-10 Thread Peter Cordes
(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: Question about snort binaries..

2003-01-31 Thread Peter Cordes
(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: I'm searching for a network wide system update tool

2003-01-20 Thread Peter Cordes
allready written a script like the one described above or maybe knows an allready existing application which could perform this task? Thanks. Here's a bash script I wrote that starts a given command on all workstations at school (on Solaris): #!/bin/bash # copyright Peter Cordes 1999. License: GPL

Re: I'm searching for a network wide system update tool

2003-01-19 Thread Peter Cordes
allready written a script like the one described above or maybe knows an allready existing application which could perform this task? Thanks. Here's a bash script I wrote that starts a given command on all workstations at school (on Solaris): #!/bin/bash # copyright Peter Cordes 1999. License: GPL

Re: X Security Issues? [SOLVED]

2002-11-22 Thread Peter Cordes
for xserverrc, or making X symlink point to a script instead of the server (actually, to Xwrapper, I think).) simple answer: just use startx or *DM unless you want to customize your X-starting setup. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man

Re: Odd iptstate entry

2002-11-18 Thread Peter Cordes
the weekend, but I logged out cleanly (I thought). I have heard of rootkits that hide their tracks from ps and such, but over ssh? Probably someone scanned you, and then left their end of the connection hanging. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca

Re: Odd iptstate entry

2002-11-17 Thread Peter Cordes
the weekend, but I logged out cleanly (I thought). I have heard of rootkits that hide their tracks from ps and such, but over ssh? Probably someone scanned you, and then left their end of the connection hanging. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods

Re: unsubscribe

2002-11-15 Thread Peter Cordes
-List: [EMAIL PROTECTED] OR * ^X-Mailing-List: [EMAIL PROTECTED] } Anyone...? How about: :0: * ^Subject: (un)?subscribe$ unsub-idiots -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours

Re: unsubscribe

2002-11-15 Thread Peter Cordes
-List: debian-devel@lists.debian.org OR * ^X-Mailing-List: debian-security@lists.debian.org } Anyone...? How about: :0: * ^Subject: (un)?subscribe$ unsub-idiots -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how

Re: Fwd: Apache Security Vulnerabilities on IRIX

2002-11-14 Thread Peter Cordes
to multiply by the ratio of work needed to use apt (really easy :)/work needed to use windows update (half the time you need to reboot)) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him

Re: Fwd: Apache Security Vulnerabilities on IRIX

2002-11-14 Thread Peter Cordes
to multiply by the ratio of work needed to use apt (really easy :)/work needed to use windows update (half the time you need to reboot)) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him

Re: spam

2002-11-13 Thread Peter Cordes
message is US/ASCII... -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus

Re: spam

2002-11-13 Thread Peter Cordes
message is US/ASCII... -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus

Re: XFree86 4.2 bug in Debian Testing

2002-11-11 Thread Peter Cordes
hoop!) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: XFree86 4.2 bug in Debian Testing

2002-11-11 Thread Peter Cordes
hoop!) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small pieces! -- Plautus, 200 BC

Re: Fwd: iDEFENSE Security Advisory 11.01.02: Buffer Overflow Vulnerability in Abuse

2002-11-05 Thread Peter Cordes
statoverride to effect the change itself.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small

Re: Fwd: iDEFENSE Security Advisory 11.01.02: Buffer Overflow Vulnerability in Abuse

2002-11-04 Thread Peter Cordes
statoverride to effect the change itself.) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set up a sundial, to cut and hack my day so wretchedly into small

Re: DHCP - rootkit

2002-11-01 Thread Peter Cordes
. Nobody can modify a binary so that it has different contents but the same MD5 hash, unless they are _very_ _very_ lucky. The task becomes even more difficult if you check the length of the file as well as the hash. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca

Re: DHCP - rootkit

2002-11-01 Thread Peter Cordes
. Nobody can modify a binary so that it has different contents but the same MD5 hash, unless they are _very_ _very_ lucky. The task becomes even more difficult if you check the length of the file as well as the hash. -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca

[OT: humour] Re: Securing Apache: vserver or chroot ?

2002-10-20 Thread Peter Cordes
://www.google.com/search?q=bill+gates+character+sheet, like http://www.lanceandeskimo.com/brothers/bill.shtml) -- #define X(x,y) x##y Peter Cordes ; e-mail: X([EMAIL PROTECTED] , ns.ca) The gods confound the man who first found out how to distinguish the hours! Confound him, too, who in this place set

Re: harden-clients idea

2002-10-08 Thread Peter Cordes
it without either going through the wrapper or typing the fact that telnet is not secure. You wouldn't need the wrapper to be setuid or gid, because what I propose is enough to prevent people from blithely using telnet without having any idea that it's bad. -- #define X(x,y) x##y Peter Cordes ; e

  1   2   3   4   >