Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread ocean
Squirrel wrote: My server was hacked, and the hacker was nice enough to not cause damage except changing index.php of couple of my websites. The index.php had the following info: "Hacked By Top First Warning That's Bug From Your Servers Next Time You Must Be Careful And Fixed Your Site Before C

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Jeremy Chadwick
On Wed, Dec 09, 2009 at 06:40:17PM -0600, Squirrel wrote: > My server was hacked, and the hacker was nice enough to not cause damage > except changing index.php of couple of my websites. The index.php had the > following info: > > "Hacked By Top > First Warning That's Bug From Your Servers > Ne

Re: PCengines ALIX boot0sio serial input failes

2009-12-10 Thread Stefan Bethke
Am 09.12.2009 um 17:13 schrieb Daniel Braniss: [B]ooting off the CF (using boot0sio), the input 'screwy' at the selection of partition it is ignored, at the OK: prompt from the boot (i had no kernel in the slice), the input is usually doubled: sshooww instead of show which is probably si

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Paul Procacci
>> But far as rtld vulnerability, doesn't it require at least a local user account? No, it requires a script and a kiddie. ;) You'd expect your "index.php" (or similar) files would require a ftp/ssh/telnet connection, but useful "kids" have useful resources 'n which these things are not always

Re: Dell PowerEdge Virtual Media

2009-12-10 Thread Miroslav Lachman
Stuart Barkley wrote: On Tue, 8 Dec 2009 at 20:07 -, Miroslav Lachman wrote: Virtual Media / Virtual Console from all vendors is paint in the [...] So I am disapointed by this hyped feature ;( Does anyone here find this stuff useful? We have a vendor pushing "Virtual Media" on us and

Re: Dell PowerEdge Virtual Media

2009-12-10 Thread Steven Hartland
- Original Message - From: "Stuart Barkley" Does anyone here find this stuff useful? Yes its is very useful for remote installs etc but it doest have its limitations when it doesnt play nice with the OS. This e.mail is private and

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Markiyan Kushnir
As long as you have to re-install everything from scratch, you can consider installing 8.0 and having your services jailed. The new jail is announced to be much improved. Markiyan. Paul Procacci wrote: >> But far as rtld vulnerability, doesn't it require at least a local user account? No, i

cannot alter 'to' addess in email on 8.0

2009-12-10 Thread Pete French
Only just noticed this, but there seems to be a small, but annoying, pieece of breakage in email under 8.0 try and send a simple piece of email, type a few lines, then use '~h' to try and change the 'to' header (or any of them actually). what you get is a set of blank headers, instead of the origi

Re: PCengines ALIX boot0sio serial input failes

2009-12-10 Thread Jim Pingle
On 12/10/2009 2:32 AM, Daniel Braniss wrote: >> Which ALIX board exactly? There are some differences (even various BIOSes). >> Any chance you have vga driver in kernel? TinyBIOS emulates VGA a bit, >> redirects output to serial port. If at the beginning you are trying both VGA >> and serial port,

Re: PCengines ALIX boot0sio serial input failes

2009-12-10 Thread Jim Pingle
On 12/10/2009 2:28 AM, Daniel Braniss wrote: >> On 12/9/2009 11:13 AM, Daniel Braniss wrote: >>> hi, >>> FreeBSD-8 works great on these boards, but there are some >>> gotchas, the boot and the serial: output works fine, but input >>> is 'problematic'. the pxeboot serial handling is ok, the boot

Re: ACPI Error: A valid RSDP was not found 20090521 tbxfroot-309

2009-12-10 Thread John Baldwin
On Wednesday 09 December 2009 8:52:06 pm Chris H wrote: > On Wed, December 9, 2009 6:50 am, John Baldwin wrote: > > On Tuesday 08 December 2009 7:06:18 pm Chris H wrote: > > > >> Greetings, > >> I am receiving the following in dmesg (verbose) during boot in 8-RELEASE > >> (GENERIC) > >> cvsuped 200

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Squirrel
I do have most of measure you've mentioned implemented. There is one website that is required to have register_global, which I have set on his directory/.htaccess to prevent site-wide. Currently, I'm in process of upgrading all my ports. Thanks for info. -Original message- From: Mat

Re: Hacked - FreeBSD 7.1-Release

2009-12-10 Thread Ganbold
Squirrel wrote: > I do have most of measure you've mentioned implemented. There is one website > that is required to have register_global, which I have set on his > directory/.htaccess to prevent site-wide. Currently, I'm in process of > upgrading all my ports. > Don't forget to check vuln

Re: ACPI Error: A valid RSDP was not found 20090521 tbxfroot-309

2009-12-10 Thread Mark Linimon
On Thu, Dec 10, 2009 at 08:48:31AM -0500, John Baldwin wrote: > Hmmm, there isn't anything CPU-specific in ULE vs 4BSD, and I would expect > ULE to work fine on a PIII. I would generally expect device timeouts to be > more of a driver issue than a scheduler issue. We've run nodes in the package b

Re: pf: unlocked lookup

2009-12-10 Thread Max Laier
Hello Derek, On Thursday 10 December 2009 04:45:12 Derek Kulinski wrote: > My console gets flooded by "pf: unlocked lookup" message anyone knows > what circumstances cause this message, so I could figure out which pf > rule is causing it? this is a generic informational message that was put into

Re: pf: unlocked lookup

2009-12-10 Thread Derek Kulinski
Hello Max, Thursday, December 10, 2009, 9:38:41 AM, you wrote: > this is a generic informational message that was put into the code to figure > out if the hack that is "debug.pfugidhack" is actually required. You can get > rid of the message by setting the debug level of pf to something below "m

Re: atheros problem

2009-12-10 Thread Pete Carah
I found more - apparently 802.11a works (there are no 11a nodes at work, but the box connects at home where I have a dual-band AP.) So the problem I see is specific to g (and not auth mode since at work we have all of open, wpa, wpa2, wep visible.) wlandebug sheds no light on the problem. I stil

Re: pf: unlocked lookup

2009-12-10 Thread Maxim Dounin
Hello! On Thu, Dec 10, 2009 at 10:22:09AM -0800, Derek Kulinski wrote: > Hello Max, > > Thursday, December 10, 2009, 9:38:41 AM, you wrote: > > > this is a generic informational message that was put into the code to figure > > out if the hack that is "debug.pfugidhack" is actually required. Yo

Re: FreeBSD 7.1: QUOTA: kernel panics in jailed()

2009-12-10 Thread Mikolaj Golub
On Wed, 9 Dec 2009 15:52:23 -0600 Mike Pritchard wrote: > On Mon, Dec 07, 2009 at 10:23:49AM +0200, Mikolaj Golub wrote: >> On Sun, 6 Dec 2009 20:18:13 +0200 Kostik Belousov wrote: >> >> > The kernel paniced because chkdq was supplied NULL credentials and >> > _positive_ blocks use count change.

Re: vge problem

2009-12-10 Thread Pyun YongHyeon
On Tue, Dec 08, 2009 at 10:08:36AM -0800, Pyun YongHyeon wrote: > On Tue, Dec 08, 2009 at 10:52:07AM +0900, Yoshiaki Kasahara wrote: > > On Fri, 4 Dec 2009 10:43:01 -0800, > > Pyun YongHyeon said: > > > > >> before I replaced vge(4). I guess the system froze while initializing > > >> vge(4),

Re: vge problem

2009-12-10 Thread Pyun YongHyeon
On Thu, Dec 10, 2009 at 01:52:49PM -0800, Pyun YongHyeon wrote: > On Tue, Dec 08, 2009 at 10:08:36AM -0800, Pyun YongHyeon wrote: > > On Tue, Dec 08, 2009 at 10:52:07AM +0900, Yoshiaki Kasahara wrote: > > > On Fri, 4 Dec 2009 10:43:01 -0800, > > > Pyun YongHyeon said: > > > > > > >> before I re

IPv6 - bad neighbor solicitation messages

2009-12-10 Thread Tom Pusateri
I'm having intermittent IPv6 issues on one FreeBSD 8-stable box. I've tried to ping6 the FreeBSD-8 stable (crag) (as of 12/9/09) from snow leopard (glow) and from a freebsd 7.2 box (gw). I've tried replacing the fxp0 interface in the FreeBSD-8 stable box with an em0 interface and it works with

RE: IPv6 - bad neighbor solicitation messages

2009-12-10 Thread Li, Qing
I haven't made any significant changes in the IPv6 code for 3 months now. Could you please get a packet capture and email it to me? Thanks, -- Qing From: owner-freebsd-sta...@freebsd.org on behalf of Tom Pusateri Sent: Thu 12/10/2009 7:15 PM To: freebsd-stabl

Re: IPv6 - bad neighbor solicitation messages

2009-12-10 Thread Tom Pusateri
Its been happening for a while. I've attached the tcpdump textual output, the tcpdump raw saved file, and before and after netstat -s output. Thanks, Tom On Dec 10, 2009, at 10:22 PM, Li, Qing wrote: > I haven't made any significant changes in the IPv6 code > for 3 months now. Could you please

Re: ACPI Error: A valid RSDP was not found 20090521 tbxfroot-309

2009-12-10 Thread Chris H
Hello, and thank you very much for your reply. On Thu, December 10, 2009 5:48 am, John Baldwin wrote: > On Wednesday 09 December 2009 8:52:06 pm Chris H wrote: > >> On Wed, December 9, 2009 6:50 am, John Baldwin wrote: >> >>> On Tuesday 08 December 2009 7:06:18 pm Chris H wrote: >>> >>> Greet

RE: proxy arp and MPD in RELENG_8

2009-12-10 Thread Li, Qing
Hi, I think I managed to reproduce this issue. The root cause appears to be the SIN_PROXY usage, which is no longer part of any routing entry after the L2/L3 rewrite. As such, the RTM_GET command should be issued once in the ARP utility, not twice. In addition, since ARP does not apply to PPP li

Re: PCengines ALIX boot0sio serial input failes

2009-12-10 Thread Daniel Braniss
> On 12/10/2009 2:32 AM, Daniel Braniss wrote: > >> Which ALIX board exactly? There are some differences (even various BIOSes). > >> Any chance you have vga driver in kernel? TinyBIOS emulates VGA a bit, > >> redirects output to serial port. If at the beginning you are trying both > >> VGA > >>