Re: How To Incident Response

2017-05-12 Thread Gunnar Wolf
lann...@runbox.com dijo [Fri, May 12, 2017 at 04:31:11PM +0200]: > Hi, Hi, > I'm performing installation for a "secure" web app. OK, but I must first point to a minor contradiction here: Your mail's subject talks about incident response, but you talk here about "performing installation". Those a

How To Incident Response

2017-05-12 Thread lann...@runbox.com
Hi, I'm performing installation for a "secure" web app. I'm starting with psad, and suricata. Now I'd like to install Sguil or Snorby or any alternative for packet capturing. My problem is that I have to compile myself which we know is not the best solution for security. Does any alternative

Re: bind9 CVE-2017-3137

2017-05-12 Thread Adrian Minta
Hi On 05/11/2017 04:41 PM, Salvatore Bonaccorso wrote: Hi If possible test the test packages at https://people.debian.org/~carnil/tmp/bind9/ Regards, Salvatore I've rebuild the bind9 packages with your patch and installed them. They seems to work without any issues so far, at least on amd64.