Re: Firewall-troubleshooting

2005-07-05 Thread Raffaele D';Elia
Michael Stone wrote: On Tue, Jul 05, 2005 at 11:57:37PM +1000, Daniel Pittman wrote: As to trusting the firewall, or not, there has been at least one bug where attackers could manipulate the content of the conntrack expect table remotely. Other bugs, local or remote, are not out of the questi

FIle access auditing

2005-04-27 Thread Raffaele D';Elia
Hi all, I'm looking for an auditing method. I need to know who/if someone tried to access a group of file and if the action was permitted or denied. Any ideas? Thanks. Radel -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Hash database

2005-04-09 Thread Raffaele D';Elia
Almut Behrens wrote: Not exactly sure whether I understand what you need, but the most basic (and thus most flexible) way would be something like: Generate the list of checksums: $ find . -type f | xargs md5sum > chksums Some time later, verify them: $ md5sum -c chksums Source (here '.', i.e. $PWD)

Hash database

2005-04-09 Thread Raffaele D';Elia
Hello all, I'm looking for hash of installed files. I already know debsums, but I need a something undependent from local hash database... Some ideas? I know also about tripwire, but tripwire create his reference db from the system itself, not from an unwriteable media. Many thanks. Radel -- To

[OT]Re: unsubscribe

2004-12-03 Thread Raffaele D';Elia
Note: this went from the "tecnical support"... I want to know their customers! It was VERY OT, sorry... -Original Message- From: "Supporto Tecnico Protocomm" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Date: Fri, 3 Dec 2004 15:54:30 +0100 Subject: unsubscribe > > -- To UNSUBSCRIBE

Pseudo-cluster firewall

2004-11-02 Thread Raffaele D';Elia
Hi all, I have a firewall with 3 NICs (LAN,DMZ,ROUTER); this is a single point of failure, of course! I've decided to build a backup firewall, with similar hardware (just in case) and the same config. Now the problem: I have only a cross-over cable from the router to the firewall, so I cannot conn

Re: ssh chroot on debian documentation

2004-11-02 Thread Raffaele D';Elia
-Original Message- From: Vincent Tantardini <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Date: Tue, 2 Nov 2004 08:03:43 +0100 Subject: ssh chroot on debian documentation > Hello, > I juste write a little documentation about how I create a chrooted > environment > for ssh, you can find the d

Antivirus for proxy

2004-02-27 Thread Raffaele D';Elia
I'm replacing my windows proxy with a linux one. I'm using squid on debian (naturally); it works fine, but I need an antivirus. This antivirus should protect web clients, not the proxy itself: I'm quite sure I've already protected the server choosing debian... Regards Radel ***

Antivirus for proxy

2004-02-27 Thread Raffaele D';Elia
I'm replacing my windows proxy with a linux one. I'm using squid on debian (naturally); it works fine, but I need an antivirus. This antivirus should protect web clients, not the proxy itself: I'm quite sure I've already protected the server choosing debian... Regards Radel

Re: Mail processing tool

2004-01-27 Thread Raffaele D';Elia
-Original Message- From: Jonas J Linde <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Cc: debian-security@lists.debian.org Date: Mon, 26 Jan 2004 23:43:33 +0100 Subject: Re: Mail processing tool > > Great! 227kb of source tar ball... Netfilter's code is, much or less, > > the same. I think you c

Re: Mail processing tool

2004-01-27 Thread Raffaele D';Elia
-Original Message- From: Jonas J Linde <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Cc: [EMAIL PROTECTED] Date: Mon, 26 Jan 2004 23:43:33 +0100 Subject: Re: Mail processing tool > > Great! 227kb of source tar ball... Netfilter's code is, much or less, > > the same. I think you consider netfilt

Re: Mail processing tool

2004-01-26 Thread Raffaele D';Elia
-Original Message- From: Florent Rougon <[EMAIL PROTECTED]> To: debian-security@lists.debian.org Date: Sun, 25 Jan 2004 23:00:36 +0100 Subject: Re: Mail processing tool > Jonas J Linde <[EMAIL PROTECTED]> wrote: > > >> Procmail is a big tool, I need something different: small, reliable,

Re: Mail processing tool

2004-01-25 Thread Raffaele D';Elia
-Original Message- From: Florent Rougon <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Date: Sun, 25 Jan 2004 23:00:36 +0100 Subject: Re: Mail processing tool > Jonas J Linde <[EMAIL PROTECTED]> wrote: > > >> Procmail is a big tool, I need something different: small, reliable, > >> secure.

Re: Mail processing tool

2004-01-25 Thread Raffaele D';Elia
-Original Message- From: "s. keeling" <[EMAIL PROTECTED]> To: debian-security@lists.debian.org Date: Sun, 25 Jan 2004 11:06:08 -0700 Subject: Re: Mail processing tool > Incoming from Jonas J Linde: > > And [EMAIL PROTECTED] spoke unto the world. And said: > > > I need a tool that does th

Re: Mail processing tool

2004-01-25 Thread Raffaele D';Elia
-Original Message- From: "s. keeling" <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Date: Sun, 25 Jan 2004 11:06:08 -0700 Subject: Re: Mail processing tool > Incoming from Jonas J Linde: > > And [EMAIL PROTECTED] spoke unto the world. And said: > > > I need a tool that does the following wor

Mail processing tool

2004-01-25 Thread Raffaele D';Elia
I need a tool that does the following work: checks for new mail in a maibox via pop3; verify the digital signature and decrypts the mail; parse the body; executes 1 or more action (completely customizzable); delete (archives) the mail; in an endless loop. Something like this already exists or I n

Mail processing tool

2004-01-25 Thread Raffaele D';Elia
I need a tool that does the following work: checks for new mail in a maibox via pop3; verify the digital signature and decrypts the mail; parse the body; executes 1 or more action (completely customizzable); delete (archives) the mail; in an endless loop. Something like this already exists or I n