[EMAIL PROTECTED] Apache mod_negotiation Input Validation Hole Permits Cross-Site Scripting Attacks

2008-01-23 Thread Lindsay Hausner
FYI http://www.securitytracker.com/alerts/2008/Jan/1019256.html lh.. - The official User-To-User support forum of the Apache HTTP Server Project. See URL:http://httpd.apache.org/userslist.html for more info. To unsubscribe,

[EMAIL PROTECTED] SSL key mismatch error but keys match

2007-10-29 Thread Lindsay Hausner
A client of ours just renewed his ssl certificate. When we installed the new cert, apache gave the old: saero44 ~ tail /usr/local/apache/logs/error_log [Fri Oct 26 14:27:36 2007] [error] ApacheSSLSetCertStuff failed [Fri Oct 26 14:28:11 2007] [crit] unable to set private key [Fri Oct 26 14:28:11

[EMAIL PROTECTED] SSL Key mismatch error but keys match

2007-10-26 Thread Lindsay Hausner
A client of ours just renewed his cert. When we installed the new cert, apache gave the old: saero44 ~ tail /usr/local/apache/logs/error_log [Fri Oct 26 14:27:36 2007] [error] ApacheSSLSetCertStuff failed [Fri Oct 26 14:28:11 2007] [crit] unable to set private key [Fri Oct 26 14:28:11 2007]

RE: [EMAIL PROTECTED] SSL pass phrase

2007-10-17 Thread Lindsay Hausner
Many Unixes (such as FreeBSD) allow you to chmod 000 a file and root can still access and modify it. It works on my box anyway. -- Aaron Dalton http://perlkonig.com You can also use the '-nodes' switch when generating the private key. This however, leaves it unencrypted so you must be

RE: [EMAIL PROTECTED] Alias versus Symbolic Links

2007-07-26 Thread Lindsay Hausner
-Original Message- From: news [mailto:[EMAIL PROTECTED] On Behalf Of Crash Dummy Sent: Thursday, July 26, 2007 4:52 PM To: users@httpd.apache.org Subject: [EMAIL PROTECTED] Alias versus Symbolic Links The Apache documentation says, There are frequently circumstances where it is

RE: [EMAIL PROTECTED] Apache 2.2.3: You don't have permission to access the requested directory for public_html directories w/o index.html

2007-07-06 Thread Lindsay Hausner
-Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Friday, July 06, 2007 4:26 PM To: users@httpd.apache.org Subject: [EMAIL PROTECTED] Apache 2.2.3: You don't have permission to access the requested directory for public_html directories w/o index.html I am

RE: [EMAIL PROTECTED] Application using Apache and URL schema inquiry

2007-06-29 Thread Lindsay Hausner
-Original Message- From: Steve Finkelstein [mailto:[EMAIL PROTECTED] Sent: Thursday, June 28, 2007 11:06 PM To: users@httpd.apache.org Subject: [EMAIL PROTECTED] Application using Apache and URL schema inquiry Hi all, Hope this forum is appropriate for my dilemma. I'm currently

RE: [EMAIL PROTECTED] mod_proxy for rpc over https

2007-06-26 Thread Lindsay Hausner
-Original Message- From: Lokesh K B Reddy [mailto:[EMAIL PROTECTED] Sent: Tuesday, June 26, 2007 9:56 AM To: users@httpd.apache.org Cc: [EMAIL PROTECTED] Subject: RE: [EMAIL PROTECTED] mod_proxy for rpc over https Hi, Forgot to update Apache details.. Server version: