Fwd: [RHSA-2003:093-01] Updated MySQL packages fix vulnerabilities

2003-04-29 Thread Phillip Hofmeister
Someone recently posted a concern relating to this RedHat Security Advisory. [EMAIL PROTECTED]:~$ ls -l /etc/mysql/ total 8 -rw---1 root root 146 Dec 17 09:19 debian.cnf -rw-r--r--1 root root 1962 Jan 2 15:43 my.cnf [EMAIL PROTECTED]:~$ Debian's better file

Re: mysql update for Woody?

2003-04-29 Thread Carl Fink
On Tue, Apr 29, 2003 at 04:29:54PM -0500, Drew Scott Daniels wrote: > Are you referring to > http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=173337 (more info in > DSA 212) or something else? Something else. > Where did you get the information that said mysql was vulnerable? Several places, fo

Security with clusters

2003-04-29 Thread Ricardo Sousa
Hi. Lately i am doing some works about Clusters (especially beowulf), and i start to consider putting it (to really know how it works) in my network. All the stuff about DSM (Distributed Shared Memory), and making the OS to distinguish the user from system processes among other things make me thoug

PPTPD

2003-04-29 Thread Sean McAvoy
Hello, I was wondering if there was any more info on status of a DSA for PPTPD (poptop)? -Sean

Re: mysql update for Woody?

2003-04-29 Thread Drew Scott Daniels
Are you referring to http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=173337 (more info in DSA 212) or something else? Where did you get the information that said mysql was vulnerable? http://www.securityfocus.com/cgi-bin/sfonline/vulns.pl and some security scanners sometimes doesn't update their

Proposed guidelines and procedure for "Team to patch vulnerabilities"

2003-04-29 Thread Drew Scott Daniels
As promissed in http://lists.debian.org/debian-security/2003/debian-security-200304/msg00373.html I've written a rough plan... Bugs get filed using appropriate procedure then... The "team to patch vulnerabilities" finds the bugs and starts its procedure... I still need to work on the procedure, an

mysql update for Woody?

2003-04-29 Thread Carl Fink
I'm administering a server that runs mysql as the back end. When will patches to cover the recently-discovered security problems be released? Thanks. -- Carl Fink [EMAIL PROTECTED] I-Con Internet Liason and Postmaster

Re: Secure remote syslogging?

2003-04-29 Thread Sven . Riedel
On Tue, Apr 29, 2003 at 10:54:51PM +1000, Sam Couter wrote: > Stefan Neufeind <[EMAIL PROTECTED]> wrote: > > what is the best way to remotely syslog? In > > Use a dedicated machine. Cut the 'transmit' pair in the CAT5 cable. > syslog is UDP, which is only one-way, so it doesn't need to transmit. >

Re[2]: Port forwarding wrong after days

2003-04-29 Thread Kay-Michael Voit
-BEGIN PGP SIGNED MESSAGE- Hash: MD5 >> I've search for something like this, but did not find anything. How do >> I flush it? RK> It would have been the NAT table anyway (my RK> mistake). You flush it with iptables -F -t nat. RK> The reboot done the job, so it must be something RK> else.

Re: [despammed] Re: Secure remote syslogging?

2003-04-29 Thread Ed McMan
Tuesday, April 29, 2003, 8:54:51 AM, Sam Couter (Sam) wrote: Sam> Stefan Neufeind <[EMAIL PROTECTED]> wrote: >> what is the best way to remotely syslog? In Sam> Use a dedicated machine. Cut the 'transmit' pair in the CAT5 cable. Sam> syslog is UDP, which is only one-way, so it doesn't need to tra

Re: Secure remote syslogging?

2003-04-29 Thread Sam Couter
Stefan Neufeind <[EMAIL PROTECTED]> wrote: > what is the best way to remotely syslog? In Use a dedicated machine. Cut the 'transmit' pair in the CAT5 cable. syslog is UDP, which is only one-way, so it doesn't need to transmit. Obviously you'll have no remote access to the syslog server, but neith

Re: Port forwarding wrong after days

2003-04-29 Thread Rolf Kutz
* Quoting Kay-Michael Voit ([EMAIL PROTECTED]): > Then I stopped trying But now, without changing anything, it > works. As anyone an explanation for this behavior? Did you flush the conntracktable? - rk

Port forwarding wrong after days

2003-04-29 Thread Kay-Michael Voit
-BEGIN PGP SIGNED MESSAGE- Hash: MD5 Hi, I'm running a small router and firewall at home. eth0 -> LAN eth1 -> access point -> WLAN eth2 -> WAN On a client im running a donkeyclient, so I had to forward port (it works without, but then you get a so called "low id" with result in worse downl