Re: The same debian - different packages

2003-09-24 Thread Angus D Madden
Yogesh Sharma, Wed, Sep 24, 2003 at 09:14:52AM -0700: > As far as my understanding goes, ssh was patched recently for security > fixes, so it should be coming from security.debian.org not us.debian.org. > Now security.debian.org is not at all mirrored for security reason than > how he has 2 diff

Re: The same debian - different packages

2003-09-24 Thread Angus D Madden
Yogesh Sharma, Wed, Sep 24, 2003 at 09:14:52AM -0700: > As far as my understanding goes, ssh was patched recently for security > fixes, so it should be coming from security.debian.org not us.debian.org. > Now security.debian.org is not at all mirrored for security reason than > how he has 2 diff

Re: The same debian - different packages

2003-09-24 Thread Angus D Madden
[EMAIL PROTECTED], Wed, Sep 24, 2003 at 01:04:20PM +: > > Why the two servers, upgraded from the same server have different ssh > packages ? The same is with some other packages, e.g.: xfree86-common > I noticed the exact same behavior on one of my machines. After a number of updates apt w

Re: The same debian - different packages

2003-09-24 Thread Angus D Madden
[EMAIL PROTECTED], Wed, Sep 24, 2003 at 01:04:20PM +: > > Why the two servers, upgraded from the same server have different ssh > packages ? The same is with some other packages, e.g.: xfree86-common > I noticed the exact same behavior on one of my machines. After a number of updates apt w

Re: mod_ssl pass phrase related question

2002-03-22 Thread Angus D Madden
Robert van der Meulen, Fri, Mar 22, 2002 at 04:42:37PM +0100: > > Quoting eim ([EMAIL PROTECTED]): > > Should I keep my key files unencrypted, or is there another > > solution which preserves security ? > Yes, no. (unless you manually start your apache after booting, i.e. not from > init) > htt

Re: mod_ssl pass phrase related question

2002-03-22 Thread Angus D Madden
Robert van der Meulen, Fri, Mar 22, 2002 at 04:42:37PM +0100: > > Quoting eim ([EMAIL PROTECTED]): > > Should I keep my key files unencrypted, or is there another > > solution which preserves security ? > Yes, no. (unless you manually start your apache after booting, i.e. not from > init) > ht

Re: I've been hacked by DevilSoul

2002-01-11 Thread Angus D Madden
On Fri, Jan 11, 2002 at 03:43:11PM +0100, Preben Randhol wrote: > > agreed. full disk format and reinstall from backup is the only secure > ^ > > This is not safe at all if you mean reinstall programs too. You should > reinstall programs from th

Re: I've been hacked by DevilSoul

2002-01-11 Thread Angus D Madden
On Fri, Jan 11, 2002 at 03:43:11PM +0100, Preben Randhol wrote: > > agreed. full disk format and reinstall from backup is the only secure > ^ > > This is not safe at all if you mean reinstall programs too. You should > reinstall programs from t

Re: I've been hacked by DevilSoul

2002-01-10 Thread Angus D Madden
On Fri, Jan 11, 2002 at 05:07:02AM +0100, martin f krafft wrote: > you've been hacked -> backup -> re-mkfs -> reinstall -> re-config from > backup very carefully (i.e. file by file) -> restore user data -> do > some post-mortem with backup -> ensure security -> reopen server to > public and users -

Re: I've been hacked by DevilSoul

2002-01-10 Thread Angus D Madden
On Fri, Jan 11, 2002 at 05:07:02AM +0100, martin f krafft wrote: > you've been hacked -> backup -> re-mkfs -> reinstall -> re-config from > backup very carefully (i.e. file by file) -> restore user data -> do > some post-mortem with backup -> ensure security -> reopen server to > public and users

Re: Firewall Related Question

2001-10-22 Thread Angus D Madden
On Mon, Oct 22, 2001 at 07:30:56PM +0200, Alson van der Meulen wrote: > On Mon, Oct 22, 2001 at 10:17:59AM -0700, tony mancill wrote: > > I'd recommend the former (firewalling on each server). This will let you > > customize the firewall for that server alone, and spread the packet > > filtering l

Re: Firewall Related Question

2001-10-22 Thread Angus D Madden
On Mon, Oct 22, 2001 at 07:30:56PM +0200, Alson van der Meulen wrote: > On Mon, Oct 22, 2001 at 10:17:59AM -0700, tony mancill wrote: > > I'd recommend the former (firewalling on each server). This will let you > > customize the firewall for that server alone, and spread the packet > > filtering