Re: [users@httpd] Is httpd impacted by openssl asn1 CVE?

2015-03-22 Thread Fred K
> Sent by MailWise <http://www.mail-wise.com/installation/2> – See your > emails as clean, short chats. > > > Original Message > From: Fred K > Sent: Saturday, March 21, 2015 04:22 PM > To: users@httpd.apache.org > Subject: [users@httpd] Is httpd impacted by openssl asn1 CVE? > >

[users@httpd] Is httpd impacted by openssl asn1 CVE?

2015-03-21 Thread Fred K
Hi In this week's openssl security announcement were two moderate CVE related to asn1. - when/where does the Apache httpd server (e.g. 2.4.12) actually use asn1? - does apache rely on openssl for asn1 and do we need to be concerned about: Segmentation fault in ASN1_TYPE_cmp (CVE-2015-0286) ASN.1 s

Re: [us...@httpd] Apache2 startup error on Solaris 10

2009-06-25 Thread Fred K
On Tue, Jun 16, 2009 at 2:46 AM, Igor Cicimov wrote: > Hi all, > > I have compiled and installed apache2.2.11 with mod_security and SSL on > Solaris 10. All was fine until I moved it to jail I had built in /chroot. > The error I get is: > > [Tue Jun 16 16:19:47 2009] [info] Init: Seeding PRNG with

Re: [us...@httpd] How can I secure my apache server from DoS attack ?

2009-06-25 Thread Fred K
On Tue, Jun 23, 2009 at 8:30 AM, Damian Myerscough wrote: > Hello Neelesh, > > It is possible to use a modules called: mod_evasive this will help > prevent DOS attacks occurring. > > http://www.zdziarski.com/projects/mod_evasive/ > Hi, mod_evasive will not work for this... on another thread by N

Re: [us...@httpd] apache 2.2.3 - rhel 5.2 - mod_jk issue

2008-11-06 Thread Fred K
Hi, look at a file workers.properties and check the syntax with http://tomcat.apache.org/connectors-doc/reference/workers.html also look at examples in http://tomcat.apache.org/connectors-doc/generic_howto/loadbalancers.html balanced_worker is deprecated for balance_worker worker.balance1.balanc