Re: [CentOS] Reboot problem with Apache

2011-12-11 Thread Alex Milojkovic
Telnet into port 80 and issue a get / and see what answers. Look for headers A -- Sent from my Android phone with K-9 Mail. Please excuse my brevity. Weplica wrote: I have CentOS 6 and with webmin/virtualmin panel, and each time that I reboot Apache can't start: Starting httpd: (98)Address a

Re: [CentOS] what percent of time are there unpatched exploits against default config?

2011-12-30 Thread Alex Milojkovic
There is a concept called dynamic firewall i am working on that should eliminate any brute force attempts. If you think about it, if you know someone is trying to break in there is no need to give them access to the server any more. So after a hundred wrong passwords you cut them off. Reindl H

Re: [CentOS] what percent of time are there unpatched exploits against default config?

2011-12-30 Thread Alex Milojkovic
I think the best password policy is the one you've never told anyone and never posted on a public mailing list. How many of you out there know of cases where administrators' passwords were compromised by brute force? Can we take a count of that? I believe in passwords. I don't believe in PKI.

Re: [CentOS] what percent of time are there unpatched exploits against default config?

2011-12-31 Thread Alex Milojkovic
centos-boun...@centos.org [mailto:centos-boun...@centos.org] On Behalf Of Johnny Hughes Sent: Saturday, December 31, 2011 6:14 AM To: centos@centos.org Subject: Re: [CentOS] what percent of time are there unpatched exploits against default config? On 12/30/2011 11:02 PM, Alex Milojkovic wrote: >

Re: [CentOS] what percent of time are there unpatched exploits against default config?

2011-12-31 Thread Alex Milojkovic
The good thing about PKI is that it takes longer to break. The bad thing about PKI is many admins keep many private keys in the same spot. So you figure out one password, many doors are open. --Alex -Original Message- From: centos-boun...@centos.org [mailto:centos-boun...@centos.org] On

Re: [CentOS] what percent of time are there unpatched exploits against default config?

2011-12-31 Thread Alex Milojkovic
Yes, but this is left to every server admin to do. Then if some don't do it and get hacked it pretty much defeats the rest if their "home" based servers are used as bots. What I'm talking about is a national policy using perimeter routers and better netblock allocation. The reason netblocks should

Re: [CentOS] what percent of time are there unpatched exploits against default config?

2012-01-01 Thread Alex Milojkovic
loits against default config? On 12/30/2011 09:02 PM, Alex Milojkovic wrote: > Scenario of botnet with 1000 PCs making attempts to crack are password ain't gonna happen. > On one system that I run, for a fairly popular domain, I see botnet attacks trying to break in to the pop and ftp