Re: File transfer using ssh

2001-08-23 Thread Tamas TEVESZ
On 22 Aug 2001, Hubert Chan wrote: > Rob> SSH for some reason ( as some do ), FTP uses two TCP ports, not one > Rob> : one for control ( commands ) and the other for data. > > Unless you use passive mode. of course ftp uses two channels in passive mode as well -- [-]

Re: File transfer using ssh

2001-08-22 Thread Tamas TEVESZ
On 22 Aug 2001, Hubert Chan wrote: > Rob> SSH for some reason ( as some do ), FTP uses two TCP ports, not one > Rob> : one for control ( commands ) and the other for data. > > Unless you use passive mode. of course ftp uses two channels in passive mode as well -- [-] -- To UNSUBSCRIBE,

Re: Pop3 proxy

2001-07-30 Thread Tamas TEVESZ
On Mon, 30 Jul 2001, Emmanuel Lacour wrote: > Is there anyone who used some of them. What is the best from a security view > (I will not have a lot of connections on it). www.balabit.hu/products/Zorp/ -- [-]

Re: Pop3 proxy

2001-07-30 Thread Tamas TEVESZ
On Mon, 30 Jul 2001, Emmanuel Lacour wrote: > Is there anyone who used some of them. What is the best from a security view (I will >not have a lot of connections on it). www.balabit.hu/products/Zorp/ -- [-] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". T

Re: CGI Perl Security

2001-07-25 Thread Tamas TEVESZ
On Wed, 25 Jul 2001, Jason Thomas wrote: > not that I know of, but I would suggest turning on tainted mode and > passing all external variables through a regex. , those that are set by the client. DOCUMENT_ROOT is set by the server, so it's just

Re: CGI Perl Security

2001-07-25 Thread Tamas TEVESZ
On Wed, 25 Jul 2001, Jason Thomas wrote: > not that I know of, but I would suggest turning on tainted mode and > passing all external variables through a regex. , those that are set by the client. DOCUMENT_ROOT is set by the server, so it's just

Re: iptables logging

2001-07-23 Thread Tamas TEVESZ
On Mon, 23 Jul 2001, Jeff Coppock wrote: >other than /var/log/syslog. I'd like these "Refected: " log >messages to go into /var/log/iptables.log instead. I can't >figure out what changes to make to /etc/syslog.conf to make >this happen. Any help is appreciated. apt-get inst

Re: iptables logging

2001-07-23 Thread Tamas TEVESZ
On Mon, 23 Jul 2001, Jeff Coppock wrote: >other than /var/log/syslog. I'd like these "Refected: " log >messages to go into /var/log/iptables.log instead. I can't >figure out what changes to make to /etc/syslog.conf to make >this happen. Any help is appreciated. apt-get ins

Re: CGI Buffer Overflow?

2001-07-20 Thread Tamas TEVESZ
On Thu, 19 Jul 2001, Brian Rectanus wrote: > xxx.xxx.xxx.xxx - - [19/Jul/2001:14:28:23 -0400] "GET > /default.ida?NNN http://www.eeye.com/html/Research/Advisories/AL20010717.html -- [-] "you're wasting my time, chatterbox."

Re: CGI Buffer Overflow?

2001-07-20 Thread Tamas TEVESZ
On Thu, 19 Jul 2001, Brian Rectanus wrote: > xxx.xxx.xxx.xxx - - [19/Jul/2001:14:28:23 -0400] "GET > /default.ida?NNN http://www.eeye.com/html/Research/Advisories/AL20010717.html -- [-] "you're wasting my time, chatterbox." -- To UN

Re: Sudo and Chown?

2001-07-12 Thread Tamas TEVESZ
On Thu, 12 Jul 2001, Ethan Benson wrote: > define `it' 'it' can, nonetheless :) -- [-] "you're wasting my time, chatterbox."

Re: Sudo and Chown?

2001-07-12 Thread Tamas TEVESZ
On Thu, 12 Jul 2001, Ethan Benson wrote: > ln -s / /place/chown/is/allowed/foo > sudo chown /place/chown/is/allowed/foo/etc/passwd it doesn't follow symlinks -- [-] "you're wasting my time, chatterbox."

Re: Sudo and Chown?

2001-07-12 Thread Tamas TEVESZ
On Thu, 12 Jul 2001, Ethan Benson wrote: > define `it' 'it' can, nonetheless :) -- [-] "you're wasting my time, chatterbox." -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Sudo and Chown?

2001-07-12 Thread Tamas TEVESZ
On Thu, 12 Jul 2001, Ethan Benson wrote: > ln -s / /place/chown/is/allowed/foo > sudo chown /place/chown/is/allowed/foo/etc/passwd it doesn't follow symlinks -- [-] "you're wasting my time, chatterbox." -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Troubl