running potato btw.
thanks for reading this long message...
far does not look like its going to be anytime soon
either) netatalk as you can see has not been modified in quite a
long time (2, 3 years now?) and has some problems on the mac side...
(if a mac user uses a OS 8.5 utility to see a linux box there machine
will freeze up solid)
that rely on it to install too...
I am not certain you are having the same problem I was but it sure
sounds like it from what you said.
1) is this option relevant on potato with PAM? and 2)
what is the maximum number of characters a md5 password may contain?
I definitely think there is something fishy with the potato emacs
packages, maybe you/we should bring this up on devel? (I am not yet
totally familier with the debian procedures for possible bugs like
cs19 along with 20 but as soon as my
system was configured it was out of there because it was causing
too many conflicts with version 20.
ok, so basically what we are looking at are a set of broken emacs packages no?
perly install xf86config? I'm pretty
sure that I installed all the x packages in dselect. Could someone help me
in layman's terms?
Thank you all very much.
you want /etc/X11/XF86Config
you do know that Un*x filesystems are case sensitive right? (that
includes GNU/Linux)
ct gcc 2.95 and do that
automagically 2.2.13 is trickling through my slow modem so I do not
know for sure :)
p, bookmarks for instance.)
now if you are the only user then your the only one with these files
rm -rf fred should take care of it. (just make sure you point to the
right fred :-) )
On 21/10/99 Rune Linding Raun wrote:
xfree86 server for matrox g400max does it exist?
The SVGA server supports this card, it is listed in the XF86Config
program so you should have no problems. (if you do upgrade to Xfree
tion impossible.
generally you can expect alot of software to install a configuration
file or directory in the user's home but its up to the user to keep
track of that and clean up as needed.
X is unconfigured
and forgo starting it.
n way then the vmlinuz.old symlink
should be taken care of for you but check it anyway :)
dhat XF86Config file made by
Xconfigurator to get it right...
would be to use PAM but I will leave that to a excercise for
the reader.
etween runlevels 2-5. Are you by
any chance a RedHat user (RedHat does set up these differences)? ;)
not only that debian does not start xdm through init but rather
through an initscript in /etc/init.d
ctory) or
they don't (because init doesn't directly spawn the process).
well to pick nits yeah init is doing it one way or another, just
debian uses an initscript and redhat spawns it directly with init
though an inittab line.
On 22/10/99 Andrei Ivanov wrote:
cd to that directory, then type gunzip monitors.gz
Then you can view the file.
nah, use zless or zmore then you do not have to recommpress it again
(or have it wasting extra space)
ve you the normal virtual consoles if thats
what you mean.
ed on
what other ftpds are available for GNU/Linux? (and/or debian packaged)
am going to look at the OpenBSD ftpd and see what it can do, if it
has not been done already I may try and get it to run on GNU/Linux,
that would probably be the most secure one there is :-)
o all sorts of undesirable things.
also make sure to have a good working boot disk that will let your
restore lilo because win95 WILL destroy your current lilo
but SCSI disks are
limited to 15 partitions total (primary and extended) at least in
the linux kernel.
ating XFree
by make install and dpkg did not take well to that, his system ended
up in a state of ruination...
is the username your are removing and group is of what
group you are removing said user.
On 29/10/99 Onno wrote:
At 03:59 AM 10/29/99 -0800, Ethan Benson wrote:
On 29/10/99 Onno wrote:
I can't find one on the net...
Can somebody help me?
do you mean do manage the /etc/rc?.d symlinks?
I asked about this earlier too, the answer was `mv' :-)
redhat has
them in the configuration you want, not that
much more convenient then using mv...
/lost+found and my /etc/rc.d/rc6.d was
changed to a ordinary file and all its contents were orphaned to
/lost+found. its a mess when this type of problem happens...
its probably easier to just reinstall the affected packages.
figured out what script is printing these messages..
does anyone have any insight?
Look at the man page for update-rc.d:
-f Force removal of symlinks even if /etc/init.d/name still exists.
This sounds exactly like what you need...
yes I read the man page, yes I tried this, no it didn't work :|
nging these defaults?
very large disks they will raise the bar past 512MB
but usually not to the entire disk.
thanks a lot
o get gcc 2.7.2 ( i think 2.7 something) as 2.0
kernels will not compile with any iteration of egcs (including gcc
2.95 which is what potato has)
you have a small / partition that makes it easy to
keep within the BIOS limits.
these man pages be available as their are
related to packages that where installed in the system during the
default installation?
sounds like the a2ps man page file permissions are wrong, they should
be world readable, if not chmod 444 should do the trick.
if I missed a piece of documentation somewhere please point me in
that direction :)
also will it work to restore my current /var/cache/apt/ with the one
i have now to save downloading packages that are there now?
does anyone know what is broken? is it apt-get or is it the non-US
site, it looks to me like the non-US site is in order...
if i do not set the sources.list like above apt reports it cannot
find anything there.
On 9/11/99 Bob Nielsen wrote:
deb unstable/non-US main
contrib non-free
thanks, this works perfectly.
why is still broken?
by root to take care of an obnoxious
user (or user accident)
it would be nice to hear from people about what a reasonable limit
is for the various limits in pam_limits.
On 10/11/99 T.V.Gnanasekaran wrote:
how do i mount a mac format floppy?
mount -t hfs /dev/fd0 /floppy
this assumes you have compiled in support for hfs in your kernel or
have it as a kernel module, if not you will have to recompile the
kernel with hfs fs support.
, and ftp
also note that i did not install qmail on this system, so why are
qmail users present? there are several users installed here that
have to do with packages i do not have installed...
what is the deal here?
answer my other question, why are these accounts
installed with a valid shell? is this considered a bug in
sure that qmail's are supposed to be
/bin/true or false)
files are postfix sockets) and did a mke2fs on that partition and
restored the files. fsck still reports these errors.
is there something really wrong or is this just a bug in fsck?
system is potato e2fsprogs/libs 1.17-2 kernel 2.2.13
then you can use apt-get source to download and unpack the
source for any .deb into your current directory. (unless its a non
opensource non-free package)
staff anyway...
ool period :-)
On 15/11/99 Phil Brutsche wrote:
You're just being paranoid. I have all those files too, and my server
has, most definitely, been cracked.
so these files were not left by the cracker who cracked your system :-)
Ethan B
ything satan does only
corrections welcome of course.
x27;m adventurous.
unknown, udp 800 mdbs_daemon and, udp 1024 unknown,
and that 1025 blackjack too.
I have gone though the rcS.d and rc2.d and just cannot seem to identify these.
800 mdbs_daemon is...
On 17/11/99 Noella Pierlet wrote:
Maybe a stupid question, but how do I boot my debian-linux (slink)
in single-user-mode?
if its x86 and you use lilo just type linux single at the lilo prompt
(unless you call the default image something else)
does anyone have any suggestions for how to do this? does there
happen to be a replacement software for these UPSs (that works in
smart mode) ?
.. (and i cannot recommend wu-ftpd or proftpd anymore as
they have just too many security problems)
at once by adding a line:
export PS1 HISTSIZE to the bottom of the .bashrc instead of exporting
each one individually, but it really does not matter which way you
export them just so you do.
i was using 2.2.12 (or maybe 11) but its a redhat system have not
tried quotas on debian yet. (i really have no use for them other
then for my own amusement)
hange pam.d/other to deny access (which the
developers should do so they notice when they have a pam bug...))
I am using wdm and it works fine. (except for not loading the environment)
r snooping on networks.
kernel or being loaded as a module before netatalk loads.
personally I would ditch appletalk and make the server TCP/IP only,
but if you have stubborn mac users who won't type a IP address then
this may not be an option..
IMParanoidO anyway.
age won't touch your config file you could
extract the .deb manually and grab the file yourself i suppose.
oblem for them.
I mentioned this on the devel list and i think they already figured
out what was wrong and presumably fixed it. but i had just discovered
that /usr/lib/ was mode 777 (world writable) for
those not on devel it might not be a bad idea to do a quick check on
your system's l
On 25/11/99 Mark Wagnon wrote:
I recently upgraded to potato, and just noticed thant I'm still using
the .95 version of mutt (potato has the 1.0 v.). I did and apt-get
update/upgrade and a bunch of packages are being held back. Is there a
way to get them to install via apt-get?
did you try apt
assword from
/etc/passwd (or /etc/shadow if you enabled shadow passwds) so you have
root::0:0 instead of trying to run the passwd command. if you do this
skip the steps about mounting /usr
see above, one way without a reboot (but not by much) is go to single
user mode and come back, that kills pretty much all processes.
an extra argument i cannot remember at the moment.
boot floppy (which you already made right? :) ) to boot
linux and reinstall lilo. AFAIK win98 does not do anything stupid
like reinstalling the MBR every time it boots...
On 28/11/99 Dave Wiard wrote:
After upgrading to potato, it appears as though who may be broken:
[EMAIL PROTECTED]/home/dave] who --count
# users=0
Any idea why this might have happened or how I can fix it?
works for me TM
perhaps your utmp file is corrupt?
have not totally figured out this alternatives thing) it sounds like
a bug in the package not fixing these symlinks.
Thanks for any suggestions.
settle for nosuid on /var/tmp, /tmp /home, /var
(/var sometimes has suids though check first)
in /etc are in every linux systems /etc so getting
filenames is trivial.
though, but this is less then convenient... at least it does not ruin
uptimes :-)
On 30/11/99 Martin Dickopp wrote:
Read the section "Restricted Shell" in the bash documentation; this
might be what you're looking for. In restricted mode, you can
control what commands bash can execute, so you could limit them
to telnet and ssh.
I tried this out once, it was interesting, but
On 30/11/99 Shaul Karl wrote:
Your lines are exactly as mine, aren't they? However I do not think
that I have a problem similar to yours because remounting manually
before and after apt-get runs is working.
Maybe some other setting in /etc/apt/apt.conf changes the behavior
of these lines. Can
is would be
of much use since i have not seen a stuffit 1.5.1 archive in years.
sorry for the rantish post this topic is a bit of a thorn for me :|
package `general' explain in a calm and
reasonable way what the request or problem is.
p helpful in cases where /home is NFS mounted and i want to
compile something, then to find the clocks on the two machines are
slightly out of sync which pisses off make...)
the /var/tmp partition would be more helpful security wise if /var was
not so full of world writable directories... (/var/lock,
evel about changing this so you can
multiple MTAs installed at the same time.. personally i think this is
insane but...
ht direction?
i would say what your looking for is NFS for file sharing, just read
up on it and do what you can to maintain security.
then change /etc/fstab.
you should probably create a tarball of /usr/local/* so you can
restore it when you change over, once your sure it worked remove all
the /var files from the new /usr/local.
il in the empty mailboxes till i change to them at
least once, then it no longer sees phantom new mail. its as if some
sort of update never occurs over NFS..
the javascript pages that crash netscape but it's a bit slow.
if it were not for that XUL crap, and the lack of a working
./configure --prefix=/usr/local and make install function mozilla
would be perfect. the part that is slow is the interface which can be
squarly blamed on that XUL crud
reasons he mentioned..) and just
now adopted by another.
128 bit key. because i
downloaded the strong crypto version and replaced the debian binary
with it.
> I'd hate to go through the hassle of getting fortify to work if I've
> already got a strong crypto browser.
you don't have a strong crypto browser.
> Thanks!
no problem.
On Mon, Aug 21, 2000 at 05:19:08PM -0700, Mark Wagnon wrote:
> On 08/20/00 19:13:32 -0800, Ethan Benson wrote:
> > its not the debian packages that are at fault, its fortify, fortify
> > does not and will not support netscape past 4.72. you have to do one
> > of 3 thing
On Mon, Aug 21, 2000 at 06:19:03PM -0700, Mark Wagnon wrote:
> On 08/21/00 16:48:51 -0800, Ethan Benson wrote:
> > be aware that you are probably still vulnerable to at least the java
> > security hole in 4.74 and previous since the java files were not
> > updated (and i th
y to stop it from happening.
i would suggest not fscking DOS filesystems at boot, look in your
/etc/fstab and find the line(s) for your dos partitions and make sure
they end with:
0 0
as in:
/dev/hda11 /local msdosdefaults,noexec 0 0
0 2 or 0 1 would cause it to
gt; which should treat your data and multi-disk sets consistantly.
> Otherwise, I really can't help you.
are gnu tar, gzip and friends available for windows wastelands^Wenvironments?
BTW your Mail-Follow-Up header is broken, mutt ends up trying to send
mail to user `karston' which d
be able to kill
and bury ftp until there is a sftp implementation that is Free
(speech) and the popular ftp clients support that protocol (read
Anarchie on MacOS and whatever it is Win* lusers insist on)
/me who wants the OpenBSD guys to add a fourth grave for ftp to the
OpenSSH t-shirt.
privileges and drops them
immediatly before even connecting to the X server, this means it will
not have access to the X cookies (~/.Xauthority) and will thus be
refused permission to connect to the X server. this is a good thing.
so the solution is (as BSDers say) `don't login as root use su'
main contrib
deb-src potato/non-US main contrib
add non-free to taste.
n your
scheme every user on the system will lose data, you might as well have
all your admins running around as root all the time.
> In SuSE, the number of groups is limited (AFAIK to 20), so I can't use
> this concept. What about debian?
this is a kernel issue not a distribution one,
othing. only way to change owners
is to be root or have CAP_CHOWN.
On Thu, Aug 24, 2000 at 12:10:42PM +, Lars O. Grobe wrote:
> Addressed to: Ethan Benson <[EMAIL PROTECTED]>
> ** Reply to note from Ethan Benson <[EMAIL PROTECTED]> Thu, 24 Aug 2000
> 01:47:32 -0800
> Hi!
