Joseph Scott | 30 Jan 13:56 2002

Re: Cyrus+pam_radius. How to make work?


On Fri, 18 Jan 2002, Pavel A Crasotin wrote:

# Hi
# 
# I'v a asked in cyrus-info but seems none knows why cyrus-imap 2.0.16
# (cyrus-sasl-1.15.27) dont work with pam_radius.
# 
# Can anyone help me?

	Just in case no one has answered this.

	The trick is to make the pwcheck daemon support PAM.  The current
version of the cyrus-sasl port has an option to build a PAM version of
pwcheck.  Before that there was a patch that did it in a slightly
different way.

-Joseph

To Unsubscribe: send mail to majordomo <at> FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message

Joe Clarke | 3 Jan 22:07 2002

Re: TCP Sequence-Prediction (4.5-PRE)

On Thu, 2002-01-03 at 15:59, Matthias Schuendehuette wrote:
> Hello,
> 
> my machine at work was scanned with the ISS Scanner, Vers. 6.2.1 and it 
> complained about TCP Sequence Prediction:
> 
> 'The TCP sequence was found to be predictable.'
> 
> I was advised to install FreeBSD 4.1.1-STABLE after 2000-09-28 or later 
> :-) as listed in FreBSD-SA-00:52.
> 
> I looked at the published Patch in FreBSD-SA-00:52 but couldn't find 
> the Sourcecode Sequence to be patched any more (I wasn't wondering).
> 
> But so, what shall I do, who's to blame? Is the ISS lying? Is there any 
> advice from the FreeBSD Security Officer or the developers how to 
> proceed further?

Is this what you're looking for:

ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-00%3A52/tcp-iss.patch

Joe

> 
> TIA - Matthias
> 
> -- 
> ***************************************************************************
> * Matthias Schuendehuette	msch <at> snafu.de	      	 		  *
(Continue reading)

Matthias Schuendehuette | 3 Jan 21:59 2002
Picon

TCP Sequence-Prediction (4.5-PRE)

Hello,

my machine at work was scanned with the ISS Scanner, Vers. 6.2.1 and it 
complained about TCP Sequence Prediction:

'The TCP sequence was found to be predictable.'

I was advised to install FreeBSD 4.1.1-STABLE after 2000-09-28 or later 
:-) as listed in FreBSD-SA-00:52.

I looked at the published Patch in FreBSD-SA-00:52 but couldn't find 
the Sourcecode Sequence to be patched any more (I wasn't wondering).

But so, what shall I do, who's to blame? Is the ISS lying? Is there any 
advice from the FreeBSD Security Officer or the developers how to 
proceed further?

TIA - Matthias

--

-- 
***************************************************************************
* Matthias Schuendehuette	msch <at> snafu.de	      	 		  *
* Solmsstrasse 44							  *
* D-10961 Berlin		Engineering Systems Support and Operation *
* Germany		      	(Powered by FreeBSD 4.5-PRERELEASE)   	  *
***************************************************************************

To Unsubscribe: send mail to majordomo <at> FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message

(Continue reading)


Gmane