Re: Help for a first time user...


Subject: Re: Help for a first time user...
From: Florian Kohl (floh@blafasel.org)
Date: Wed Nov 15 2000 - 07:17:49 MST


<snip>
>there's telnet. Remote admin is something Unix was doing via telnet since
>day one.
</snip>

telnet is evil!!

use ssh... Telnet sends clear text passwords and the traffic is not
encrypted... so it is easy for a man in the middle to sniff your passwords
and/or takeover your telnet season

WuFTPd which is the standard FTPd for most linux Distributions has more
holes (securitywise) then a good piece of swiss chesse (sorry, but itīs
slightly after lunchtime over here, and I guess I had to skip lunch ;-( )
Use ProFTPd or similar
http://www.securityfocus.com and search for WuFTPd and you find more
exploits then you can read throgh

(and you might consider not running all of the services on one machine, as
this would mean a single point of failure for web, mail, ftp, internet
connectivity)

just my 2c (or 10Pfennig)

-floh

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
http://blafasel.org - as geeky as it gets

submit your story - http://blafasel.org/submit-a-story/
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-



This archive was generated by hypermail 2a24 : Wed Nov 15 2000 - 07:18:42 MST