Displaying 5 results from an estimated 5 matches for "dubit".
Did you mean:
dubin
2024 Jul 03
1
Request for a Lockdown option
Dear Christian,
>How is this different to configuring /etc/securetty and tunnelling
>Telnet over SSH Port Forwarding which I don't recommend BTW?
In case your SSH is remotely attackable for instance
- because your LDAP is configured wrongly,
- your run into some problem like CVE-2008-0166
- some users private keys are lost
And you want to lock down the sshd and investigate and
2006 Jan 13
2
Mass Mailing
Has anyone found a good method of mass mailing a bunch of people (100k)
using RoR yet?
I have always used a scheduled task to run a ColdFusion page every x
minutes to send out blocks of about 7500 (sending the full 100k crashed
the page) and this worked pretty well and now we are migrating all out
sites to ruby, I seed to do something similar.
Thanks in advance,
James
2014 Apr 14
0
About the "nologin" extra field
...is immediately emitted:
-ERR [AUTH] Maintenance!
Again, this is the kind of behavior I was expecting.
With:
enabled set to true,
nologin set to '!',
an incorrect password provided,
there's the failure delay but the output still is:
-ERR [AUTH] Maintenance!
Here, I'm a bit dubitative... ;-)
The delay seems to make the code's intent clear: to act as in the case of an authentication failure.
But, notwithstanding the somewhat misleading explanation provided to a legitimate user with such a reply, isn't one unduly disclosing information about an account existence?
Is...
2024 Jul 04
1
Request for a Lockdown option
...ot;
task *then* to go hunt it down.
> And you want to lock down the sshd and investigate and fix the problem
Then block SSH wherever you can *except* for a jump host that you set up
with a known good version and grant your fellow sysadmins access to.
"Lock down sshd 'cause it's dubitable" and "trust a rarely-used
mechanism inside it to do so" don't mix - after all, the backdoor of
CVE-2024-3094 allowed the attacker to bypass *some* of the normal crypto
routines, too.
(And since you mention "port knocking", I'd like to repeat how fond I am
o...
2006 May 09
0
Rails Developer Wanted
Hi. Sorry to send this out here, but I am having trouble sourcing a
rails developer for a 3 week contract. We are overloaded with work at
the moment and need to contract out a full website build (including
CSS/XHTML if possible!). The total build time including CSS/HTML we
estimate to be three weeks, so the rails will be approximately half of
that. The start date will be around 15th May (next