Package: harden-servers
Version: 0.1.17
Severity: wishlist

Hi,

I see that the harden-servers package is supposed to conflict against
insecure services running on the host.  Therefore could you please
add the "pawserv" package to the list of Conflicts?  It is similar to an
FTP server (although it is specialized for certain types of
Cernlib-related files), and it transmits passwords in cleartext.

Please let me know if you are aware of any other security metapackages
in Debian similar to this one that should Conflict against pawserv.
For what it's worth I am the maintainer of pawserv (part of the
cernlib source package).

-- System Information:
Debian Release: 3.1
Architecture: i386 (i686)
Kernel: Linux 2.6.8-2-386
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)

regards,

-- 
Kevin B. McCarty <[EMAIL PROTECTED]>   Physics Department
WWW: http://www.princeton.edu/~kmccarty/    Princeton University
GPG: public key ID 4F83C751                 Princeton, NJ 08544


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to