Security

src/usr.sbin/timed/timedc/timedc.c MFC Requested for 4.10-R

| Security

I have requested src/usr.sbin/timed/timedc/timedc.c, v 1.5 to be MFC’ed to RELENG_4 and RELENG_4_10 so it will get its way into the upcoming release. It has not decided whether this will be merged into RELENG_4_10 yet, however, it is very likely that this will.

阅读全文…( 本文约 88 字,阅读大致需要 1 分钟 )

beastie.frontfree.net spam filtering policy

| Security

Currently the settings are:

Strict RFC821 Envelop.

阅读全文…( 本文约 197 字,阅读大致需要 1 分钟 )

彻底晕倒……OpenBSD...

| Security

刚刚揭露的那个TCP漏洞OpenBSD在1999年就修正了……和FreeBSD现在用的方法类似,只是更严厉一些。折服了……

参与评论

Is it practical to trust my mail system?

| Security

Yesterday someone has asked me about my diary system, I told her that my diary is managed by my own diary software, which is a close-source system (written in C#) and I do not want to share it with others because it is technically not a friendly one.

阅读全文…( 本文约 180 字,阅读大致需要 1 分钟 )

Recent vulnerablity of TCP/IP implementation

| Security

TCP is vulnerable?! Yes if your system relays on persist TCP connections, for example, routers supporting BGP. CERT has released a advisory about this.

阅读全文…( 本文约 195 字,阅读大致需要 1 分钟 )

Finally my post appeared on BugTraq :)

| Security

Finally the phpBB issue was posted to BugTraq, as a follow-up to the original post by Wang.

阅读全文…( 本文约 97 字,阅读大致需要 1 分钟 )

Enforcing more strict anti-spam rules on beastie.frontfree.net

| Security

I have turned on several anti-spam settings on beastie.frontfree.net to ease my life. They stand for “most evident spam characters” and hence should not go to the content filtering subsystem and should be directly dropped.

阅读全文…( 本文约 181 字,阅读大致需要 1 分钟 )

Microsoft released four critical updates for Windows 2003

| Security

Today Microsoft has released four critical security updates, their KB numbers are: 835732, 828741, 837009, 837001.

阅读全文…( 本文约 48 字,阅读大致需要 1 分钟 )

SINA's antispam system is bogous

| Security

It seems that sina’s bad-brainly designed anti-spam system is going to do more foolishnesses. By applying their RFC-violence, they did not blocked spam and in addition, make normal mail slow and even not deliverable.

阅读全文…( 本文约 159 字,阅读大致需要 1 分钟 )

postfix to have greylisting in 2.1-RELEASE!

| Security

It seems that postfix 2.1-RELEASE will include an amazing feature called “policy server”, which can be used to implement greylisting, a brand new and effective technique to fight against spammers.

阅读全文…( 本文约 107 字,阅读大致需要 1 分钟 )