Re: [leaf-user] tftpd

2006-01-12 Thread J.L. Blom
> > when the thin client tries to access it. > > I tried adding nobody to /etc/group but that had no effect. > > KK > > > > > > J.L. Blom wrote: > > >Short reply: > >inetd is a daemon which will start tftpd when a signal arrives at port

Re: [leaf-user] DNS problems?

2006-10-31 Thread J.L. Blom
On Tue, 2006-10-31 at 05:35 -0800, Craig Caughlin wrote: > Hi Eric, > Hmmm, this looks suspicious. > > cat /var/log/daemon.log showed this entry (among others): failed to access > /etc/dhcpc/resolve.conf: no such file or directory > > Thank you, > Craig > > > > -Original Message- > Fr

Re: [leaf-user] Bering-uClibc_3.0.2_usb_bering-uclibc-iso.bin.img.gz not found

2007-03-16 Thread J.L. Blom
One small remark: older systems don't recognize usb-devices as boot-device. My - easy - solution is to make a floppy with initrd.lrp, linux, ldlinux.sys, leaf.cfg, syslinux.cfg and syslinux.dpy and copy the rest with every package you can think of to the usb-stick which I also use for stuff I want

Re: [leaf-user] Extended MARK Target Question.

2007-07-18 Thread J.L. Blom
On Wed, 2007-07-18 at 09:51 +0300, Harry Lachanas wrote: > >> > >> > >> One thing I've always hated was to search netfilter.org and find patches > >> or whatever, > >> > > > > True, but there is no way around :-( > > > > Kernel 2.6 has most of the modern goodies, but it is substantially > > l

Re: [leaf-user] Extended MARK Target Question.

2007-07-18 Thread J.L. Blom
Giovanni, How do you do that? (short of making some hardware to connect an USB-stick or flashcard to an IDE interface). Joep On Wed, 2007-07-18 at 11:31 +0200, giovanni wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > J.L. Blom wrote: > > ... > > Using a fl

Re: [leaf-user] Extended MARK Target Question.

2007-07-18 Thread J.L. Blom
Everybody, Thanks for the advice. I found I have a supplier round the corner!. I will go out and get me one. Thanks for all the advice. Joep On Wed, 2007-07-18 at 13:05 +0200, giovanni wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > J.L. Blom wrote: > > Giovanni,

[leaf-user] mhttpd forms a security problem

2007-08-20 Thread J.L. Blom
HI, I came upon a problem due to the use of mhttpd. I have my IP-adress registered with one of the dynamic net adress providers. By accident - you never try to login on your own system from the outside - I did a login and to my amazement the login prompt of mhttpd came up. I thought that it exclusi

Re: [leaf-user] mhttpd forms a security problem

2007-08-20 Thread J.L. Blom
Erich, Thanks. I will do that. I will have to setup a DMZ to give people securely access to a public area, Oh, well I wanted to do that anyway. Joep On Mon, 2007-08-20 at 11:51 +, Erich Titl wrote: > Joep > > J.L. Blom wrote: > > HI, > > I came upon a problem due to the

Re: [leaf-user] mhttpd forms a security problem

2007-08-20 Thread J.L. Blom
Eh, correction: I have only "ACCEPT fw net" for port 80 NOT net fw. Why is the port 80 request accepted? Joep On Mon, 2007-08-20 at 11:51 +, Erich Titl wrote: > Joep > > J.L. Blom wrote: > > HI, > > I came upon a problem due to the use of mhttpd. > > I

Re: [leaf-user] mhttpd forms a security problem

2007-08-21 Thread J.L. Blom
Erich & Kwon, Thanks for the reply. Kwon, I have those rules in my policy file and Erich, The only net - fw rules are: SSH/ACCEPT net:blomm.homeip.net fw SSH/ACCEPT net:jlblom.homeip.net fw and Ping/ACCEPT net fw But I think I know my error in thinking. I used my local brows

Re: [leaf-user] LEAF Print Server

2007-10-18 Thread J.L. Blom
Andy, To overcome the space restrictions, use your floppy only to bootstrap load LEAF and use an USB-stick for all the packages. You can even use it for temporary files of any program. Erich, USB-sticks are easier to manage than flash-disks (in my opinion) and only systems from before 1998 don't ha

[leaf-user] submitting logs to DShield

2008-06-29 Thread J.L. Blom
Members, I was browsing my firewall log and, looking for more information of the attacked ports, I came upon the site isc.incidents.org. This site give a wealth of information on ports attacked and more. Among others found I was vigorously attacked by "Adore" a Linux trojan (of course dropped by le

Re: [leaf-user] submitting logs to DShield

2008-06-29 Thread J.L. Blom
On Sun, 2008-06-29 at 13:52 +0200, J.L. Blom wrote: > Members, > I was browsing my firewall log and, looking for more information of the > attacked ports, I came upon the site isc.incidents.org. > This site give a wealth of information on ports attacked and more. Among > oth

Re: [leaf-user] submitting logs to DShield

2008-06-29 Thread J.L. Blom
making the net safer. Joep On Sun, 2008-06-29 at 14:44 +0200, KP Kirchdoerfer wrote: > Am Sonntag, 29. Juni 2008 14:29:08 schrieb J.L. Blom: > > On Sun, 2008-06-29 at 13:52 +0200, J.L. Blom wrote: > > > Members, > > > I was browsing my firewall log and, looking for m

Re: [leaf-user] submitting logs to DShield

2008-06-29 Thread J.L. Blom
wall port opening. > > ISC seem very keen not to have duplicate submissions of the same log > entries from the same firewall. Would the best thing be to integrate > with the existing LEAF log rotation, perhaps submitting shorewall.log.0 > just after the log rotation happens? That