Re: certificate server

2003-11-04 Thread Rick Moen
der. Reviewing my article, I find that it already said: It's important that the hostname match what's specified in httpd.conf, or users will get a warning about the mismatch. Did you miss that? -- Cheers, find / -user your -name base -print | xargs chown us:us Rick Moen [EMAIL PROTECTED]

Re: Improved Debian Project Emergency Communications

2003-11-28 Thread Rick Moen
Quoting Roland Mas ([EMAIL PROTECTED]): > /me suggests the Debian Planet and Debian Help (both .org) websites. ^^^ "Session initialisation failed." Problems? -- Cheers,A: No. Rick Moen

Re: Improved Debian Project Emergency Communications

2003-11-29 Thread Rick Moen
, so I think the site is effectively hung. -- Cheers, "Don't use Outlook. Outlook is really just a security Rick Moenhole with a small e-mail client attached to it." [EMAIL PROTECTED]-- Brian Trosko in r.a.sf.w.r-j

Re: Improved Debian Project Emergency Communications

2003-11-29 Thread Rick Moen
Quoting Rick Moen ([EMAIL PROTECTED]): > [http://www.debianhelp.org/ :] > > Sadly, that hypothesis doesn't check out, so I think the site is > effectively hung. And no soon do I say that than I notice the site being usable again! -- Cheers,

Re: [SECURITY] [DSA-403-1] userland can access Linux kernel memory

2003-12-02 Thread Rick Moen
ines that would be delighted to publish your analyses and advisories. Or I guess you could pay someone to do likewise. Did you have in mind some third alternative? I'm not aware of one, given the community nature of the kernel project. -- Cheers,A: No. Rick Moen

Re: [SECURITY] [DSA-403-1] userland can access Linux kernel memory

2003-12-02 Thread Rick Moen
http://linuxmafia.com/faq/Security/breakin-without-remote-vulnerability.html See also Wichert's very canny list of recommendations at the bottom of http://www.wiggy.net/debian/developer-securing/ -- Cheers, find / -user your -name base -print | xargs chown us:us Rick Moen [EMAIL PROTECTED]

Re: Will 2.4.20 Source be patched for the latest kernel vulnerability?

2003-12-03 Thread Rick Moen
of installation. -- Cheers, * Contributing Editor, Linux Gazette * Rick Moen -*- See the Linux Gazette in its new home: -*- [EMAIL PROTECTED] <http://linuxgazette.net/>

Re: Will 2.4.20 Source be patched for the latest kernel vulnerability?

2003-12-03 Thread Rick Moen
hat I never _said_ the latter. > I suspect that over 50% of debian installs use the default > installation kernel until there is some good reason to change it (ie, > something doesn't work). They might, indeed. If so, they lose. -- Cheers,Before enli

Re: Will 2.4.20 Source be patched for the latest kernel vulnerability?

2003-12-03 Thread Rick Moen
l) for long-term use. Your wording makes it conceivable that you are unaware of those. You might wish to browse in {dselect|aptitude|synaptic} among the available kernel-image-2.4* packages. -- Cheers, Paranoia is the delusion that your enemies are organised. Rick Moen [EMAIL PROTECTED]

Re: Will 2.4.20 Source be patched for the latest kernel vulnerability?

2003-12-03 Thread Rick Moen
* Contributing Editor, Linux Gazette * Rick Moen -*- See the Linux Gazette in its new home: -*- [EMAIL PROTECTED] <http://linuxgazette.net/>

Re: 2.4.18-bf2.4 version confusion, patches?

2004-01-04 Thread Rick Moen
y following the end of installation. Since you didn't, you should do so now. Alternatively, use make-kpkg and roll your own. -- Cheers, "By reading this sentence, you agree to be bound by the Rick Moen terms of the Internet Protocol, version 4, or, at y

Re: 2.4.18-bf2.4 version confusion, patches?

2004-01-04 Thread Rick Moen
The cynics among us might say: "We laugh, Rick Moen monkeyboys -- Linux IS the mainstream UNIX now! [EMAIL PROTECTED] MuaHaHaHa!" but that would be rude. -- Jim Dennis

Re: suspicious files in /tmp

2004-01-05 Thread Rick Moen
uilding software. > How can I check what happened and if the attacker succeeded? Read the advisories from your well-tuned IDS. ;-> http://linuxgazette.net/issue98/moen.html -- Cheers,"A raccoon tangled with a 23,000 volt line, today. The results Rick Moen b

Re: suspicious files in /tmp

2004-01-05 Thread Rick Moen
act, to add an extra frisson of generalised paranoia to your day. ;-> -- Cheers, Rick Moen This .signature intentionally left blank. [EMAIL PROTECTED]

Re: GnuPG can not read some pgp signatures

2004-01-06 Thread Rick Moen
idea.c is still available at ftp://ftp.gnupg.dk/pub/contrib-dk/ for anyone who really needs it -- though it's been dropped from the upstream tarball. -- Cheers, * Contributing Editor, Linux Gazette * Rick Moen -*- See the Linux Gazette i

Re: Mail processing tool

2004-01-25 Thread Rick Moen
I can see. I suggested the > fetchmail/procmail combination exactly because it is small, reliable > and customizable. And yet, ironically, using fetchmail necessitates running an MTA. Thus my point. -- Cheers,I've been suffering de

Re: Mail processing tool

2004-01-25 Thread Rick Moen
Quoting Adeodato Simó ([EMAIL PROTECTED]): > Am I missing something? http://www.catb.org/~esr/fetchmail/ includes: "Fetchmail retrieves mail from remote mail servers and forwards it via SMTP" -- Cheers, Rick Moen "vi is my shepherd; I shall

Re: Mail processing tool

2004-01-25 Thread Rick Moen
;Does not cause mail loops by doing SMTP injection, and therefore does not require that you run an MTA (like qmail or sendmail) on your host." -- Cheers, The cynics among us might say: "We laugh, Rick Moen monkeyboys -- Linux IS the mainstream UNIX now! [EM

Re: blocking AXFR record query

2004-01-28 Thread Rick Moen
.ca/staff/magi/doc/bind9/Bv9ARM.ch04.html#AEN725 -- Cheers,"Send a policeman, and have it arrested." Rick Moen -- Otto von Bismarck, when asked what he [EMAIL PROTECTED] would do if the British Army landed.

Re: How To Set Up Mail-out-only System ?

2004-02-10 Thread Rick Moen
Quoting Murray J. Brown ([EMAIL PROTECTED]): > You might want to check out ssmtp. Also nullmailer and smtppush. See: "Nullmailers" on http://linuxmafia.com/kb/Mail/ -- Cheers,There are only 10 types of people in this world -- Rick Moen those who unde

Re: How To Set Up Mail-out-only System ?

2004-02-10 Thread Rick Moen
9 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=227981 -- Cheers,There are only 10 types of people in this world -- Rick Moen those who understand binary arithmetic and those who don't. [EMAIL PROTECTED]

Re: How To Set Up Mail-out-only System ?

2004-02-11 Thread Rick Moen
on is loopback. I think everyone's so used to giving the "remove the symlinks" answer that they didn't stop to consider better ways, in light of Nick's described situation. -- Cheers,There are only 10 types of people in this world -- Rick Moen thos

Re: How To Set Up Mail-out-only System ?

2004-02-12 Thread Rick Moen
ndled immediately, the crontab fragment in /etc/cron.d/exim > will do a queue run every 15 minutes. Good to know; thanks. (I've never needed to run that configuration.) -- Cheers, The cynics among us might say: "We laugh, Rick Moen monkeyboys

Re: SMTP and POP3 with ssl + login/password

2002-10-10 Thread Rick Moen
.20/doc/html/spec_38.html Sendmail http://www.sendmail.org/~ca/email/starttls.html Courier-MTA http://www.courier-mta.org/ -- Cheers,Emacs is a good operating system, but I prefer Linux. Rick Moen [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Re: SMTP and POP3 with ssl + login/password

2002-10-10 Thread Rick Moen
l security comparisons qmail/postfix (modular) and exim/sendmail/courierd (monolithic)? My attempt at relatively dispassionate MTA-comparison notes: http://linuxmafia.com/~rick/linux-info/mtas -- Cheers, Rick Moen FORTH heart if honk then. [EMAIL P

Re: SMTP and POP3 with ssl + login/password

2002-10-10 Thread Rick Moen
Quoting Scott Moynes ([EMAIL PROTECTED]): > Thanks, that was enlightening. Yr. very welcome. I count it a major success when I can add clarity to a traditionally flame-shrouded subject. ;-> -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAI

Re: Vulnerabilities found by Nessus

2002-10-15 Thread Rick Moen
re aren't DSAs for its contents, the security.debian.org host does include a branch for "testing", and that branch does furnish packages on occasion. What's the deal? -- Cheers, "That article and its poster have been cancelled." Rick Moen

Re: DHCP

2002-10-28 Thread Rick Moen
ding the ifconfig manpage. Acquiring one to "borrow" requires nothing more than unning tcpdump or equivalent. -- Cheers, Before enlightenment, caffeine. Rick Moen After enlightenment, caffeine. [EMAIL PROTECTED] -- To UNS

Re: DHCP

2002-10-28 Thread Rick Moen
ootkit 1. That's not what a rootkit does. 2. The sophistication required to read an ifconfig manpage is mighty low. -- Cheers, "Learning Java has been a slow and tortuous process for me. Every Rick Moen few minutes, I start screaming 'No, you fools!' and have to go [

Re: DHCP - rootkit

2002-10-28 Thread Rick Moen
. It's something the intruder uses _after_ breaking in. -- Cheers, "Learning Java has been a slow and tortuous process for me. Every Rick Moen few minutes, I start screaming 'No, you fools!' and have to go [EMAIL PROTECTED] read something from _Structure and In

Re: DHCP

2002-10-28 Thread Rick Moen
an agent of Satan, Rick Moenbut my duties are largely ceremonial. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: XFree86 4.2 bug in Debian Testing

2002-11-09 Thread Rick Moen
re as the normal user. It's a little simpler to do: $ ssh -X root@localhost -- Cheers, Right to keep and bear Rick Moen Haiku shall not be abridged [EMAIL PROTECTED] Or denied. So there. -- To UNS

Re: spam

2002-11-10 Thread Rick Moen
- Cheers, Live Faust, die Jung. Rick Moen [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: [SECURITY] [DSA 195-1] New Apache-Perl packages fix several vulnerabilities

2002-11-13 Thread Rick Moen
s have been made. Others will be blamed. Rick Moen [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: unsubscribe

2002-11-17 Thread Rick Moen
e mailing list. _Always_ to the list daemon's address. Those are always distinct, and the distinction is vital. -- Cheers,My pid is Inigo Montoya. You kill -9 Rick Moen my parent process. Prepare to vi. [EMAIL PROTECTED] -- To UNSUBSCRI

Re: X Security Issues?

2002-11-19 Thread Rick Moen
yourself. -- Cheers, "Get the facts first. You can distort them later." Rick Moen -- Mark Twain [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: File system integrity checkers - comparison?

2002-12-05 Thread Rick Moen
t. AIDE, by comparison, is pure C, with autoconf support, and thus very portable. -- Cheers,Open-source SourceForge retakes the lead: Rick Moen http://gforge.org/ Thank you, Tim Perdue. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PRO

Re: smtp-auth

2002-12-15 Thread Rick Moen
above is from personal experience; I'm just reading docs.) -- Cheers, "Reality is not optional." Rick Moen -- Thomas Sowell [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subj

Re: smtp-auth

2002-12-16 Thread Rick Moen
pauth.shtml The author does take into account the chroot environment. -- Cheers, Chaos, panic, & disorder - my work here is done. Rick Moen [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: FTP-SSL

2002-12-18 Thread Rick Moen
Cheers,There are only 10 types of people in this world -- Rick Moen those who understand binary arithmetic and those who don't. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: FTP-SSL

2002-12-18 Thread Rick Moen
just Kerberos. o SRP -- but that's not SSH at all Am I missing something? -- Cheers, "Transported to a surreal landscape, a young girl kills the first Rick Moen woman she meets, and then teams up with three complete strangers [EMAIL PROTECTED] to kill again

Re: FTP-SSL

2002-12-18 Thread Rick Moen
eat deal more universally supported than is sftp.) -- Cheers, Chaos, panic, & disorder - my work here is done. Rick Moen [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: FTP-SSL

2002-12-18 Thread Rick Moen
Quoting Xavier Santolaria ([EMAIL PROTECTED]): > Because sftp(1) understands a set of commands similar to those of > ftp(1). I'm unclear on why this is such an attraction, but whatever Works for Him[tm]. > It may also use many features of ssh. sftp is really an odd beast, which is part of why

Re: Need an advise about isolating a host in the DMZ

2002-12-18 Thread Rick Moen
secure enough)? These files may help: http://linuxmafia.com/pub/linux/security/ftp-daemons http://linuxmafia.com/~rick/faq/#djb http://linuxmafia.com/~rick/linux-info/mtas -- Cheers,There are only 10 types of people in this world -- Rick Moen those who understand binary ar

Re: FTP-SSL

2002-12-18 Thread Rick Moen
Win does include working ssh and scp. I'm guessing that would be Corinna Vinschen's port to Cygwin, right? Or is it Jarle Aase's or Mark Bradshaw's? -- Cheers, "Besides, Debian runs Web sites, Red Hat runs Rick Moen Quake, and

Re: FTP-SSL

2002-12-18 Thread Rick Moen
Quoting Jeffrey Taylor ([EMAIL PROTECTED]): > Quoting Rick Moen <[EMAIL PROTECTED]>: > > Quoting Alvin Oga ([EMAIL PROTECTED]): > > > > > otherwise secure windoze clients ... > > > ( winscp and equivalent ... > > > http://www.linux-s

Re: FTP-SSL

2002-12-26 Thread Rick Moen
ers, We write preciselyWe say exactly Rick Moen Since such is our habit inHow to do a thing or how [EMAIL PROTECTED] Talking to machines; Every detail works. Excerpt from Prof. Touretzky's decss-haiku.txt @ http://www.cs.cmu.edu/~dst/ -- To UNSU

Re: How to get the current security updates on CD?

2003-01-04 Thread Rick Moen
Real Programmers don't use Python. Rick Moen Thorfinn: Real Programmers don't use *whitespace*. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: ACLs

2003-02-06 Thread Rick Moen
well as for the two server-end alternatives. The bigger problem for heterogeneous sites is that there's no agreed-upon standard in the NFS definition for exactly how ACCESS is to be implemented, so such tend to be vendor-specific. -- Resize your browser so the following line touches b

Re: what this logs means?

2003-02-19 Thread Rick Moen
--log-level DEBUG --log-prefix "IPT FORWARD packet died: " -- Cheers, It is by caffeine alone I set my mind in motion. Rick Moen It is by the beans of Java that thoughts acquire speed, rick@The hands acquire shaking, the shaking becomes a warnin

Re: OT: Is it so easy to break into an NIS?

2003-03-18 Thread Rick Moen
AFS/Kerberos (entailing non-free server-end software). Substituting LDAP-SSL for NIS is arguably a step forward, but then NFS remains a problem (No Friggin' Security). -- Cheers, The genius of you Americans is that you never make Rick Moen clear-cut stupid moves,

Re: OT: Is it so easy to break into an NIS?

2003-03-19 Thread Rick Moen
e. A quick perusal of that site plus some Google hits suggests that such is not the case now, if it ever was. Can someone confirm from experience that AFS can be done with all open source, both ends? (Yes, I do consider IBM PL code to qualify.) -- Cheers

Re: OT: Is it so easy to break into an NIS?

2003-03-19 Thread Rick Moen
Cheers, kill -9 them all. Rick Moen Let init sort it out. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: is iptables enough?

2003-03-19 Thread Rick Moen
pace. -- Cheers, "Java is COBOL 2.0." Rick Moen -- Deirdre Saoirse Moen [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: OT: Is it so easy to break into an NIS?

2003-03-19 Thread Rick Moen
s that changed? -- Cheers, "Not using Microsoft products is like being a non-smoker Rick Moen 40 or 50 years ago: You can choose not to smoke, yourself, [EMAIL PROTECTED] but it's hard to avoid second-hand smoke." -- M. Tiemann -- To UNSUBSCRIBE, emai

Re: looking for a good source to start learning about kerberos

2003-03-20 Thread Rick Moen
Kerberos Authentication System", Proceedings of the 1991 USENIX Conference, Dallas, TX 1991. -- Cheers, A host is a host, from coast to coast. Rick Moen And nobody talks to a host that's close, [EMAIL PROTECTED] Unless the host that isn't close is

Re: Daylight Saving

2003-03-28 Thread Rick Moen
(File gets updated from time to time, and therefore changes filenames.) You'll find there a set of time rulesets for various parts of the world, including rulesets that specify the details of DST changeovers. -- Cheers, A: No. Rick Moen Q: Sho

Re: cracked? "rm uses obsolete (PF_INET,SOCK_PACKET)"

2003-06-15 Thread Rick Moen
ity, if the process modified /bin/*, yes? -- Cheers, First they came for the verbs, and I said nothing, for Rick Moenverbing weirds language. Then, they arrival for the nouns [EMAIL PROTECTED] and I speech nothing, for I no verbs. - Peter Ellis -- To UNSUBSCRIBE,

Re: recommendations for FTP server

2003-06-20 Thread Rick Moen
ented in Midnight Commander, KD3 3.1's kio_fish plugin, and lftp (ftp-like browsing over generic SSH transport). http://linuxmafia.com/~rick/linux-info/fish-protocol -- Cheers, First they came for the verbs, and I said nothing, for Rick Moenverbing weirds language.

Re: [d-security] Re: ssh vulnerability in the wild

2003-09-16 Thread Rick Moen
n.org/debian/pool/main/g/glibc/libc6_2.3.2-7_i386.deb -- Cheers, Wall Street has all the emotional stability of a Rick Moenthirteen-year-old girl. -- Louis Rukeyser [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: [d-security] Re: ssh vulnerability in the wild

2003-09-16 Thread Rick Moen
quot;=" syntax to fetch a specified package version: apt-get install somepackage=12.17.4-4 Tutorial: http://jaqque.sbih.org/kplug/apt-pinning.html -- Cheers, "I don't like country music, but I don't mean to denigrate Rick Moen those who do. And, for the people wh

Re: [d-security] Re: ssh vulnerability in the wild

2003-09-17 Thread Rick Moen
.debian.org/ssh_3.6.1p2-8_powerpc.deb ...and would guess they're built from upstream's v. 3.7.1. (The two latter arrived within the last fifteen minutes.) -- Cheers, Founding member of the Hyphenation Society, a grassroots-based, Rick Moen not-for-profit, locally-owned-and-operated,

Re: Watch out! vsftpd anonymous access always enabled!

2003-09-21 Thread Rick Moen
Quoting Bernd Eckenfels ([EMAIL PROTECTED]): > Actually one should think about using FTP at all :) http://linuxmafia.com/~rick/linux-info/ftp-justification -- Cheers, Founding member of the Hyphenation Society, a grassroots-based, Rick Moen not-for-profit, locally-owned-and-opera

Re: FTP in general (Re: Watch out! vsftpd anonymous access always enabled!)

2003-09-21 Thread Rick Moen
"wget -c" fixes many ills.) -- Cheers, The cynics among us might say: "We laugh, Rick Moen monkeyboys -- Linux IS the mainstream UNIX now! [EMAIL PROTECTED] MuaHaHaHa!" but that would be rude. -- Jim Dennis -- To UNSUBSCRIBE, email to [EMAIL

Re: FTP in general (Re: Watch out! vsftpd anonymous access always enabled!)

2003-09-24 Thread Rick Moen
to what I was referring to. -- Cheers,Linux: It is now safe to turn on your computer. Rick Moen [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Can anyone help me ID who is trying to hack my system?

2003-10-03 Thread Rick Moen
Quoting Alderbrook ([EMAIL PROTECTED]): > Can anyone help me identify who is trying to get into my system? > > 9/1/03 7:14:51 PM Deny unknown 1080 TCP 64.222.178.231 64.222.178.231 > 9/1/03 7:14:50 PM Deny unknown 1080 TCP 64.222.178.231 64.222.178.231 > 9/1/03 7:14:49 PM Deny unknown 1080 TCP 64

Re: certificate server

2003-11-04 Thread Rick Moen
tart Apache. -- Cheers, * Contributing Editor, Linux Gazette * Rick Moen -*- See the Linux Gazette in its new home: -*- [EMAIL PROTECTED] <http://linuxgazette.net/> -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: certificate server

2003-11-04 Thread Rick Moen
* Important that during CSR the Common Name match the web server name > that browsers will use. Indeed. I've been intending to revise my article to insert mention of that fact. Thanks for the reminder. -- Cheers, * Contributing Editor, Linux Gazette * Rick Moe

Re: certificate server

2003-11-04 Thread Rick Moen
fix I spoke of. -- Cheers, * Contributing Editor, Linux Gazette * Rick Moen -*- See the Linux Gazette in its new home: -*- [EMAIL PROTECTED] <http://linuxgazette.net/> -- To UNSUBSCRIBE, email to [EMAIL PROTECTE

Re: certificate server

2003-11-04 Thread Rick Moen
der. Reviewing my article, I find that it already said: It's important that the hostname match what's specified in httpd.conf, or users will get a warning about the mismatch. Did you miss that? -- Cheers, find / -user your -name base -print | xargs chown us:us Rick Moen

Re: Improved Debian Project Emergency Communications

2003-11-28 Thread Rick Moen
Quoting Roland Mas ([EMAIL PROTECTED]): > /me suggests the Debian Planet and Debian Help (both .org) websites. ^^^ "Session initialisation failed." Problems? -- Cheers,A: No. Rick Moen

Re: Improved Debian Project Emergency Communications

2003-11-29 Thread Rick Moen
, so I think the site is effectively hung. -- Cheers, "Don't use Outlook. Outlook is really just a security Rick Moenhole with a small e-mail client attached to it." [EMAIL PROTECTED]-- Brian Trosko in r.a.sf.w.r-j -- To UNSUBSCRIBE, email

Re: Improved Debian Project Emergency Communications

2003-11-29 Thread Rick Moen
Quoting Rick Moen ([EMAIL PROTECTED]): > [http://www.debianhelp.org/ :] > > Sadly, that hypothesis doesn't check out, so I think the site is > effectively hung. And no soon do I say that than I notice the site being usable again! -- Cheers,

Re: [SECURITY] [DSA-403-1] userland can access Linux kernel memory

2003-12-02 Thread Rick Moen
ines that would be delighted to publish your analyses and advisories. Or I guess you could pay someone to do likewise. Did you have in mind some third alternative? I'm not aware of one, given the community nature of the kernel project. -- Cheers,A: No. Rick Moen

Re: [SECURITY] [DSA-403-1] userland can access Linux kernel memory

2003-12-02 Thread Rick Moen
http://linuxmafia.com/faq/Security/breakin-without-remote-vulnerability.html See also Wichert's very canny list of recommendations at the bottom of http://www.wiggy.net/debian/developer-securing/ -- Cheers, find / -user your -name base -print | xargs chown us:us Rick Moen [EMAIL PROTECTED] -

Re: Will 2.4.20 Source be patched for the latest kernel vulnerability?

2003-12-03 Thread Rick Moen
of installation. -- Cheers, * Contributing Editor, Linux Gazette * Rick Moen -*- See the Linux Gazette in its new home: -*- [EMAIL PROTECTED] <http://linuxgazette.net/> -- To UNSUBSCRIBE, email to [EMAIL PROTEC

Re: Will 2.4.20 Source be patched for the latest kernel vulnerability?

2003-12-03 Thread Rick Moen
hat I never _said_ the latter. > I suspect that over 50% of debian installs use the default > installation kernel until there is some good reason to change it (ie, > something doesn't work). They might, indeed. If so, they lose. -- Cheers,Before enli

Re: Will 2.4.20 Source be patched for the latest kernel vulnerability?

2003-12-03 Thread Rick Moen
l) for long-term use. Your wording makes it conceivable that you are unaware of those. You might wish to browse in {dselect|aptitude|synaptic} among the available kernel-image-2.4* packages. -- Cheers, Paranoia is the delusion that your enemies are organised. Rick Moen [EMAI

Re: Will 2.4.20 Source be patched for the latest kernel vulnerability?

2003-12-03 Thread Rick Moen
* Contributing Editor, Linux Gazette * Rick Moen -*- See the Linux Gazette in its new home: -*- [EMAIL PROTECTED] <http://linuxgazette.net/> -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: 2.4.18-bf2.4 version confusion, patches?

2004-01-04 Thread Rick Moen
y following the end of installation. Since you didn't, you should do so now. Alternatively, use make-kpkg and roll your own. -- Cheers, "By reading this sentence, you agree to be bound by the Rick Moen terms of the Internet Protocol, version 4, or, at y

Re: 2.4.18-bf2.4 version confusion, patches?

2004-01-04 Thread Rick Moen
The cynics among us might say: "We laugh, Rick Moen monkeyboys -- Linux IS the mainstream UNIX now! [EMAIL PROTECTED] MuaHaHaHa!" but that would be rude. -- Jim Dennis -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscr

Re: suspicious files in /tmp

2004-01-05 Thread Rick Moen
uilding software. > How can I check what happened and if the attacker succeeded? Read the advisories from your well-tuned IDS. ;-> http://linuxgazette.net/issue98/moen.html -- Cheers,"A raccoon tangled with a 23,000 volt line, today. The results Rick Moen b

Re: suspicious files in /tmp

2004-01-05 Thread Rick Moen
act, to add an extra frisson of generalised paranoia to your day. ;-> -- Cheers, Rick Moen This .signature intentionally left blank. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: GnuPG can not read some pgp signatures

2004-01-06 Thread Rick Moen
idea.c is still available at ftp://ftp.gnupg.dk/pub/contrib-dk/ for anyone who really needs it -- though it's been dropped from the upstream tarball. -- Cheers, * Contributing Editor, Linux Gazette * Rick Moen -*- See the Linux Gazette i

Re: Mail processing tool

2004-01-25 Thread Rick Moen
I can see. I suggested the > fetchmail/procmail combination exactly because it is small, reliable > and customizable. And yet, ironically, using fetchmail necessitates running an MTA. Thus my point. -- Cheers,I've been suffering de

Re: Mail processing tool

2004-01-25 Thread Rick Moen
Quoting Adeodato Simó ([EMAIL PROTECTED]): > Am I missing something? http://www.catb.org/~esr/fetchmail/ includes: "Fetchmail retrieves mail from remote mail servers and forwards it via SMTP" -- Cheers, Rick Moen "vi is my shepherd; I shall

Re: Mail processing tool

2004-01-25 Thread Rick Moen
;Does not cause mail loops by doing SMTP injection, and therefore does not require that you run an MTA (like qmail or sendmail) on your host." -- Cheers, The cynics among us might say: "We laugh, Rick Moen monkeyboys -- Linux IS the mainstream UNIX now! [EM

Re: blocking AXFR record query

2004-01-28 Thread Rick Moen
.ca/staff/magi/doc/bind9/Bv9ARM.ch04.html#AEN725 -- Cheers,"Send a policeman, and have it arrested." Rick Moen -- Otto von Bismarck, when asked what he [EMAIL PROTECTED] would do if the British Army landed. -- To UNSUBSCRIBE, e

Re: How To Set Up Mail-out-only System ?

2004-02-10 Thread Rick Moen
Quoting Murray J. Brown ([EMAIL PROTECTED]): > You might want to check out ssmtp. Also nullmailer and smtppush. See: "Nullmailers" on http://linuxmafia.com/kb/Mail/ -- Cheers,There are only 10 types of people in this world -- Rick Moen those who unde

Re: How To Set Up Mail-out-only System ?

2004-02-10 Thread Rick Moen
9 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=227981 -- Cheers,There are only 10 types of people in this world -- Rick Moen those who understand binary arithmetic and those who don't. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTEC

Re: How To Set Up Mail-out-only System ?

2004-02-11 Thread Rick Moen
on is loopback. I think everyone's so used to giving the "remove the symlinks" answer that they didn't stop to consider better ways, in light of Nick's described situation. -- Cheers,There are only 10 types of people in this world -- Rick Moen thos

Re: How To Set Up Mail-out-only System ?

2004-02-11 Thread Rick Moen
ndled immediately, the crontab fragment in /etc/cron.d/exim > will do a queue run every 15 minutes. Good to know; thanks. (I've never needed to run that configuration.) -- Cheers, The cynics among us might say: "We laugh, Rick Moen monkeyboys

Re: Recent minor vulnerabilities in Apache: status in woody?

2004-05-27 Thread Rick Moen
t. (/me waves to the Web Guys.) [1] Which I'd somehow missed until now. Thus my point. -- Cheers, No trees were destroyed in the sending of this message. Rick Moen We do concede, though, that a large number of electrons [EMAIL PROTECTED] were terribly i

Re: Recent minor vulnerabilities in Apache: status in woody?

2004-05-27 Thread Rick Moen
Quoting Luk Claes ([EMAIL PROTECTED]): > Well, it is linked from the www.d-o/security page (at the bottom click > on woody). Ah, mea culpa. I'd somehow managed to miss that. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Unusual spam recently - hummm

2004-06-03 Thread Rick Moen
Quoting s. keeling ([EMAIL PROTECTED]): > However, I _would_ like to STOP it from being delivered at all, as > defined by simple rules like those above. As far as I can tell, this > must be done in the SMTP negotiation phase. Mostly. > What's it going to cost my ISP to implement this? Is it fe

Re: Unusual spam recently - hummm

2004-06-03 Thread Rick Moen
ir head on > backwards and thinks blocking port 25 outbound will reduce spam abuse. http://spf.pobox.com/srs.html http://www.linuxjournal.com/article.php?sid=7328 (Tell your ISP: "Adapt or die." ;-> ) -- Cheers, find / -user your -name base -print | xargs chown us:us

Re: Unusual spam recently - hummm

2004-06-03 Thread Rick Moen
ot;die". If death becomes you, enjoy! > For a big organization with thousands of users, what's Spam is not > really all that easy to quantify. And another fine, ruddy herring! Delicious, thanks. -- Cheers, Rick Moen Age, baro, fac ut gaudeam. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Unusual spam recently - hummm - postprocess

2004-06-03 Thread Rick Moen
lready accepted the mail and handed it off to an LDA or MDA -- so the opportunity is lost. -- Cheers, Rick MoenBu^so^stopu min per kulero. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Unusual spam recently - hummm

2004-06-03 Thread Rick Moen
dark overnight because so many > admins were still running Sendmail versions that had been obsoleted > years before. > > Ah, those were the days. :-P Yes, indeed! http://linuxmafia.com/pub/humour/500-mile-e-mail -- Cheers,Remember: The day after tomorrow is the third day Rick Moen of the rest of your life. [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Unusual spam recently - hummm - postprocess

2004-06-03 Thread Rick Moen
Quoting Michael Stone ([EMAIL PROTECTED]): > Yeah, big difference. If the spam is going through a relay, the relay > will send the same bounce and the same person will get the bounce > message. Oh, oh! Gee, I guess that relay should have rejected the spam instead of relaying it, right? Then,

<    1   2   3   >