Berkeley CSUA MOTD:Entry 19220
Berkeley CSUA MOTD
 
WIKI | FAQ | Tech FAQ
http://csua.com/feed/
2025/05/25 [General] UID:1000 Activity:popular
5/25    

2000/9/10-12 [Computer/SW/OS/FreeBSD] UID:19220 Activity:high
9/10    using: win2k  wanted: good firewall pkg.  recommendationsP
        good defind as something you have used, and are comfortable
        with and have the least amount of hatred for.
        \_ I recommend ipf, you need to install a helper environment
           in order to get it running, a little environment named
           OpenBSD!
                \_ Dork.  The person wants WinRoute.  --openbsd/win2k user
                   \_ Running a firewall using Lose2k or an MS OS
                      is like building a castle, but leaving the
                      drawbridge down, the portcullius up and the
                      doors open. There is no point. What he needs
                      is ipf, and he should be running it using
                      OpenBSD. For him, ipf is the app, and OpenBSD
                      is the lib. Yeah, installing the lib wipes
                      Lose2K, but that is a good thing.
                      \_ Paolo, shut the fuck up.
                         \_ I'm not Paolo, I'm #1 *BSD FAN!
                        \_ Hi.  I really did mean 2k.  I run
                           ipf on the other half of the machine
                           and no, it's not buff enough for vmware.
                        \_ Like if you ever used WinRoute or w2k you might
                           know what you're talking about.  OpenBSD isn't the
                           answer to every question unless your toolshed only
                           has a hammer.
                           \_ Lose2K isn't the answer to any question.
                              In fact if M$ is the answer to any question,
                              you are asking the wrong question.
                                \_ Some of us live and work in the real world
                                   where your religious point of view won't
                                   fly.  So what's the answer for the busdev
                                   and sales people who want powerpoint style
                                   presentations, excel style spreadsheets,
                                   and exchange style calendaring?  There isn't
              plug in. Needless to say, they don't use the openbsd side
                                   a better set of apps on the unix side for
                                   these sorts of things than MS has.  It's
                                   time to leave the church and try something
                                   secular.  -unix admin
        \_ You're apparently looking for something free, but numerous
           colleagues of mine (mostly unix-heavy) have liked Axent Raptor
           pretty well.  Of course, it pretty much rips out all the Wincrap
           and leaves the pretty interface.  Regarding IPF, is there any
           possibility you can put a dedicated OpenBSD/ipf box in front of
           the Windows machine?  Leaving a Windows box on an open net is
           a fairly risky proposition, especially since Win2k probably
           hasn't most of its security bugs exposed yet...  -John
           \_ rock on. thanks. this was the type of answer I was looking
              for.  This is a laptop.  It dual boots w/ 2k.  At work,
              it's jacked in behind an openBSD firewall; so no problem
              the issue is that this z505s is a presentation machine and
              the biz team likes to take it to various locales and
              plug in. Needless to say, they don't use the unix side
              of the machine.
                \_ What I was getting at though is that I don't know whether
                   you can really use Win2k as such under Raptor, since it
                   really claims to rip everything out, install its own "OS"
                   and leaves the Windows GUI.  If you're using the laptop
                   productively, I'd recommend looking for some sort of
                   hardening programs that close ports and kill services.
                   You may want a look at http://securityfocus.com to see what you
                   can do manually.  -John
2025/05/25 [General] UID:1000 Activity:popular
5/25    

You may also be interested in these entries...
2009/5/4-6 [Computer/SW/OS/Linux, Computer/SW/OS/FreeBSD] UID:52939 Activity:moderate
5/4     I would appreciate a reliability ranking between:
        1) OpenBSD
        2) OpenSolaris
        3) FreeBSD
        4) Debian-Stable
        5) Suse Linux Enterprise Server
	...
2009/4/17-23 [Computer/SW/OS/FreeBSD] UID:52867 Activity:low
4/17    If you have a general access AssOS machines, this is worth
        taking this seriously. --psb
  http://c-skills.blogspot.com/2009/04/udev-trickery-cve-2009-1185-and-cve.html
        <DEAD>admin.fedoraproject.org/updates/udev-127-5.fc10<DEAD>
        \_ What does this have to do with MS Windows?
           \_ psb is a bsd lover.
	...
2008/12/10-16 [Computer/HW/CPU, Computer/HW/Drives] UID:52220 Activity:moderate
12/9    Another idea for the CSUA that lets you spend money and maybe get some
    cool toys. Instead of buying a beefy server (like say, a massive server
    with 20 386DX processors), buy a few cheap machines (like the ones
    mentioned below) that have good disks and work on failover / load
    balancing. A netscaler or other piece of hardware is complete overkill,
    but maybe hacking an OpenBSD box could do the trick. The idea is that
	...
2007/7/17 [Computer/SW/Languages/C_Cplusplus] UID:47312 Activity:nil
7/13    CSUA Life Roster
1 point each for:                                               key:
                significant other (out of county rule applies)   G
                car (Chevy Novas do count)                       C
                housing (dorms DO NOT count)                     H
                own computer running reasonable multi-tasking OS U
	...
2007/7/13-16 [Computer/Networking] UID:47279 Activity:nil
7/13    I'm thinking about getting a Soekris 4501 to replace my the P2-400
        that is currently acting as my home firewall. Has anyone used a
        Soekris system for this purpose? If so, how well does it work? Also,
        if there are any alternatives (similar power/form factor), I would
        appreciate links to those as well. tia.
        \_ John got me to use a WRAP box similar to Soekris.  I use this one:
	...
2007/3/15-17 [Computer/SW/OS/FreeBSD] UID:45977 Activity:nil
3/14    http://www.csua.org/u/i8o
        Remote exploit in OpenBSD kernel.  Security is hard.  And yes, it
        would be really difficult to exploit this in practice. -dans
	...
2007/3/13-14 [Computer/SW/OS/FreeBSD] UID:45949 Activity:nil
3/13    OpenBSD 4.1 preorder is up:
        http://www.openbsd.org/items.html#41
	...
2007/3/13-14 [Computer/SW/Security] UID:45950 Activity:nil
3/13    OpenSSH 4.6 is out:
        http://undeadly.org/cgi?action=article&sid=20070308183425
        Portable Version:
        ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/openssh-4.6p1.tar.gz
        OpenBSD Version:
        ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/openssh-4.6.tar.gz
	...
2006/11/8-9 [Computer/SW/Security] UID:45263 Activity:nil
11/8    OpenSSH 4.5 is out:
        http://www.openssh.org/txt/release-4.5
        ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/openssh-4.5.tar.gz
        ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/openssh-4.5p1.tar.gz
	...
2006/9/27-28 [Computer/SW/OS/FreeBSD, Computer/SW/Security] UID:44580 Activity:nil
9/27    OpenSSH 4.4 is leftist
        http://www.openssh.org/txt/release-4.4
        OpenBSD src:
        http://ftp.openbsd.org/pub/OpenBSD/OpenSSH/openssh-4.4.tar.gz
        OpenBSD src signature:
        http://ftp.openbsd.org/pub/OpenBSD/OpenSSH/openssh-4.4.tar.gz.asc
	...
2006/9/22-25 [Computer/SW/OS/FreeBSD] UID:44496 Activity:nil
9/22    OpenBSD 4.0 available for pre-order:
        http://www.openbsd.org/40.html
	...
2006/8/16-18 [Computer/SW/OS/FreeBSD] UID:44024 Activity:nil
8/16    Greatest piece of software ever written is 4.3 BSD:
        http://tinyurl.com/go7lv (informationweek.com)
        \_ Windows is run by more computers than all other OS combined.
           \_ that only makes it common, not great.
              \_ If it wasn't great people wouldn't use it.  They'd use 4.3
                 BSD.
	...
Cache (770 bytes)
securityfocus.com
Automating Windows Patch Mngt: Part III By Jonathan Hassell May 10, 2004 The final installment of this series discusses two alternative, low cost tools to manage the application of patches to Windows systems, and also provides information on the upcoming, revised Software Update Services (SUS) from Microsoft. Common Security Vulnerabilities in e-commerce Systems By K K Mookhey Apr 26, 2004 This article discusses common attacks and vulnerabilities in e-commerce shopping cart systems, with reference to SecurityFocus vulnerability reports where relevant. Introduction to Nessus By Harry Anderson Oct 28, 2003 This article describes the installation, configuration and features of the latest version of Nessus, a powerful and free client-server based security scanner.