On Mon, Jan 12, 2015 at 10:35:39AM +0200, Pasi Kärkkäinen wrote:
> On Mon, Jan 12, 2015 at 09:15:39AM +0100, Petr Lautrbach wrote:
> > On 01/11/2015 09:22 PM, Pasi Kärkkäinen wrote:
> > > Hello,
> > >
> > > People who have their names in the Fedora tcp_wrappers changelog added to
> > > CC list..
On Mon, Jan 12, 2015 at 05:17:08PM +0100, Lennart Poettering wrote:
> On Sun, 11.01.15 21:29, Tomasz Torcz (to...@pipebreaker.pl) wrote:
>
> > On Sat, Jan 10, 2015 at 12:16:38AM +0200, Pasi Kärkkäinen wrote:
> > > Hello,
> > >
> > > I recently noticed Debian/Ubuntu has had support for "aclexec" i
On Sun, 11.01.15 21:29, Tomasz Torcz (to...@pipebreaker.pl) wrote:
> On Sat, Jan 10, 2015 at 12:16:38AM +0200, Pasi Kärkkäinen wrote:
> > Hello,
> >
> > I recently noticed Debian/Ubuntu has had support for "aclexec" in
> > tcp_wrappers via a custom patch since 2006,
> > so you can do this in /et
On Mon, Jan 12, 2015 at 09:15:39AM +0100, Petr Lautrbach wrote:
> On 01/11/2015 09:22 PM, Pasi Kärkkäinen wrote:
> > Hello,
> >
> > People who have their names in the Fedora tcp_wrappers changelog added to
> > CC list..
> >
> > Any comments about the below? Obviously aclexec feature would be use
On 01/11/2015 09:22 PM, Pasi Kärkkäinen wrote:
> Hello,
>
> People who have their names in the Fedora tcp_wrappers changelog added to CC
> list..
>
> Any comments about the below? Obviously aclexec feature would be useful for
> all services using tcpwrappers/libwrap (ftp,telnet,tftp,ident,nfs,
On Sun, Jan 11, 2015 at 09:29:08PM +0100, Tomasz Torcz wrote:
> On Sat, Jan 10, 2015 at 12:16:38AM +0200, Pasi Kärkkäinen wrote:
> > Hello,
> >
> > I recently noticed Debian/Ubuntu has had support for "aclexec" in
> > tcp_wrappers via a custom patch since 2006,
> > so you can do this in /etc/host
On Sat, Jan 10, 2015 at 12:16:38AM +0200, Pasi Kärkkäinen wrote:
> Hello,
>
> I recently noticed Debian/Ubuntu has had support for "aclexec" in
> tcp_wrappers via a custom patch since 2006,
> so you can do this in /etc/hosts.allow or hosts.deny:
>
>
> What do people feel about that? I'd like to
Hello,
People who have their names in the Fedora tcp_wrappers changelog added to CC
list..
Any comments about the below? Obviously aclexec feature would be useful for all
services using tcpwrappers/libwrap (ftp,telnet,tftp,ident,nfs, and many others),
and thus very nice to have.
Thanks,
-- P
On Sat, Jan 10, 2015 at 12:57:22AM +0200, Pasi Kärkkäinen wrote:
> On Fri, Jan 09, 2015 at 11:47:52PM +0100, Michael Stahl wrote:
> > On 09.01.2015 23:16, Pasi Kärkkäinen wrote:
> > > Hello,
> > >
> > > I recently noticed Debian/Ubuntu has had support for "aclexec" in
> > > tcp_wrappers via a cus
On Fri, Jan 09, 2015 at 11:47:52PM +0100, Michael Stahl wrote:
> On 09.01.2015 23:16, Pasi Kärkkäinen wrote:
> > Hello,
> >
> > I recently noticed Debian/Ubuntu has had support for "aclexec" in
> > tcp_wrappers via a custom patch since 2006,
> > so you can do this in /etc/hosts.allow or hosts.den
On 09.01.2015 23:16, Pasi Kärkkäinen wrote:
> Hello,
>
> I recently noticed Debian/Ubuntu has had support for "aclexec" in
> tcp_wrappers via a custom patch since 2006,
> so you can do this in /etc/hosts.allow or hosts.deny:
>
> sshd: ALL: aclexec /usr/local/bin/sshfilter.sh %a
>
> if sshfilter
Hello,
I recently noticed Debian/Ubuntu has had support for "aclexec" in tcp_wrappers
via a custom patch since 2006,
so you can do this in /etc/hosts.allow or hosts.deny:
sshd: ALL: aclexec /usr/local/bin/sshfilter.sh %a
if sshfilter.sh returns true the access is allowed, if sshfilter.sh return
12 matches
Mail list logo