Re: more details on the recent compromise of debian.org machines

2003-12-08 Thread Andreas Barth
Hi, * Marc Haber ([EMAIL PROTECTED]) [031128 10:55]: > I would like to know whether the attacker was able to log in to auric, > even as unprivilieged user. Did she actively try to compromise auric? > > What kind of verification of auric's integrity was done / is planned > to be done? > > [more q

Re: [debian-devel] Re: more details on the recent compromise of debian.org machines

2003-12-03 Thread Magosányi Árpád
A levelezőm azt hiszi, hogy Matt Zimmerman a következőeket írta: > On Fri, Nov 28, 2003 at 10:08:45AM +0100, Bernd Eckenfels wrote: > > > In the final announcement I would add also a statement about reducing the > > number of trust relations between the machines and perhaps limiting shell > > acce

Re: more details on the recent compromise of debian.org machines

2003-12-02 Thread Matt Zimmerman
On Fri, Nov 28, 2003 at 10:08:45AM +0100, Bernd Eckenfels wrote: > In the final announcement I would add also a statement about reducing the > number of trust relations between the machines and perhaps limiting shell > access. It seems fairly clear that this was not an issue because the compromis