search for: systemingenieur

Displaying 20 results from an estimated 101 matches for "systemingenieur".

2014 Apr 03
1
CTDB Error / tcp port 445 not repsonding
...44 / CTDB version: 2.1.0.95.gb5a8791.devel 1. What exactly ctdb checks during samba startup? (445?) 2. What exactly is wrong or missing ctdb? 3. Do we need update to a newer Version? Thanks for help... Sven Vogel --------------------------------------------- Sven Vogel Systemingenieur / Consultant Kupper Computer GmbH
2002 Sep 30
5
2.2.5 and NIS question
...igured (--with-nis) (NOT the --with-nisplus option) now i got 2.2.5 (source) - but in "configure" this option is missing Was this dropped in version 2.2.5 ? Which was the last version that's able to work with NIS ? Does anyone know how i can get this thing working ? Udo E. Foth - Systemingenieur - REIFF - Management- + Service- GmbH Tuebinger Str. 2 - 6 D-72762 Reutlingen Tel. 07121/323-283 Mobil 0179/2670262 Fax 07121/323-6283 Mail udo-edwin.foth@reiff-gmbh.de Web http://www.reiff-rms.de
2023 Jul 05
1
Subsystem sftp invoked even though forced command created
...If the sftp-server process turns out to be a child of the script, bingo. If not, the script could still be the culprit, but then we'd know that it must "exec" the sftp-server or somesuch, rather than calling it "normally" as a subprocess.) Kind regards, -- Jochen Bern Systemingenieur Binect GmbH -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/pkcs7-signature Size: 3449 bytes Desc: S/MIME Cryptographic Signature URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20230705/f437f348/attachment.p7...
2018 May 16
3
end-to-end encryption
...e near the MSA, I've used the "GPGPit" tool that's available on the web (and that I've made into an "SMIMEit" myself). The nontrivial problem with that is to retrieve recipients' pubkeys in an even remotely trustworthy manner, of course. Regards, -- Jochen Bern Systemingenieur www.binect.de www.facebook.de/binect -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/pkcs7-signature Size: 4278 bytes Desc: S/MIME Cryptographic Signature URL: <https://dovecot.org/pipermail/dovecot/attachments/20180516/8658631d/a...
2024 Apr 25
1
how to block brute force attacks on reverse tunnels?
...prod where devices on customer premises similarly create a tunnel(-end) on our server to connect to their sshd, *but* users have to authenticate as they SSH or VPN to that server in the first place and the tunnel is restricted to localhost or VPN client pool IPs.) Kind regards, -- Jochen Bern Systemingenieur Binect GmbH -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/pkcs7-signature Size: 3449 bytes Desc: S/MIME Cryptographic Signature URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20240425/c6981b43/attachment-00...
2020 Feb 10
6
question about pubkey and passphrase
Hi folks, Since Docker can bind-mount every .ssh directory I am looking for some way to forbid unprotected private keys. AFAICS it is currently not possible on the sshd to verify that the peer's private key was protected by a passphrase. Can you confirm? Regards Harri
2016 Aug 14
4
Windows 10 point and print restriction
...ment > > https://social.technet.microsoft.com/Forums/office/en-US/030ee94a-047d-460a-bc39-52351a199364/kb3163912-breaks-point-and-print-restrictions-gpo-settings?forum=winserverGP > > There are any information from the samba team about the problem? In > > Sven Vogel > Senior Systemingenieur > > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba >
2023 Jul 06
1
Subsystem sftp invoked even though forced command created
...as some command injection vulnerability. Does the exploit still work when you change the authorized_keys from command="/.../receive.ksh" to, e.g., command="/bin/ksh -c '/.../receive.ksh </dev/null'" to suppress the client's input? Kind regards, -- Jochen Bern Systemingenieur Binect GmbH -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/pkcs7-signature Size: 3449 bytes Desc: S/MIME Cryptographic Signature URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20230706/5dcfee75/attachment.p7...
2020 Feb 11
3
Identify multiple users doing reverse port FWD with their pubkeys
Hello, I hope it's the correct ML to get support for "advanced" ssh use (sorry if it's not the case) And I would be very grateful if someone could help me on this issue. Here is my challenge : - I have X devices (around 30) and one SSH server - Each of them have a unique public key and create one dynamic reverse port forwarding on the server - All of them connect with the
2016 Jul 14
5
controlling STARTTLS by IP address
> Seems like your firewall could redirect to a different port that doesn't > offer starttls. Yes, of course. But that would require multiple ports, making the client configuration cumbersome and error-prone. Michael
2023 Jul 07
1
Subsystem sftp invoked even though forced command created
...exit > logout > [root ~]# journalctl -t AutoHack > -- Logs begin at Thu 2023-06-22 11:07:33 CEST, end at Fri 2023-07-07 14:20:35 CEST. -- > Jul 07 14:19:35 cng-000121900000-010098-01 AutoHack[15837]: ... no SFTP login, but also no stdin being logged ... Kind regards, -- Jochen Bern Systemingenieur Binect GmbH -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/pkcs7-signature Size: 3449 bytes Desc: S/MIME Cryptographic Signature URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20230707/142c0374/attachment.p7...
2019 Feb 15
2
Can we disable diffie-hellman-group-exchange-sha1 by default?
On Fri, 2019-02-15 at 15:57 +1100, Darren Tucker wrote: > That was the original intent (and it's mentioned in RFC4419) however > each moduli file we ship (70-80 instances of 6 sizes) takes about 1 > cpu-month to generate on a lowish-power x86-64 machine. Most of it > is > parallelizable, but even then it'd likely take a few hours to > generate > one of each size. I
2006 Jul 26
1
ldapsam ignores "ldap user suffix" when doing username lookup
...g had time to compile and install the latest SVN trunk), I'm almost certain there's an obvious reason for this behavior, and/or an obvious workaround. Which I must have missed. Could a helpful subscriber enlighten me please? Thanks a lot. Best regards, Florian -- Mag.(FH) Florian G. Haas Systemingenieur Kapsch BusinessCom AG, Wienerbergstrasse 53, A-1121 Wien phone: +43 (5) 0811 5361 The information contained in this e-mail message is privileged and confidential and is for the exclusive use of the addressee. The person who receives this message and who is not the addressee, one of his employees o...
2020 Feb 12
2
Identify multiple users doing reverse port FWD with their pubkeys
...evice created the reverse forwarding port? Thanks, Clement > > Whereas the *IP* of the device in question can be read on demand from > the same netstat/ss output, just look for the incoming SSH connection > held by the same PID ... > > Kind regards, > -- > Jochen Bern > Systemingenieur > > Binect GmbH > > _______________________________________________ > openssh-unix-dev mailing list > openssh-unix-dev at mindrot.org > https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev
2018 Jun 19
2
Is there such a thing as "Password Safe Forwarding"?
...ew password failed, please retry" etc. etc. between the end points? (*) A still-to-be-written/-patched one, if need be ... (Yes, I'm pondering U2F, but *that* is *missing entirely* from the policy and would probably require a rewrite to happen upstairs ...) Kind regards, -- Jochen Bern Systemingenieur www.binect.de www.facebook.de/binect -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/pkcs7-signature Size: 4278 bytes Desc: S/MIME Cryptographic Signature URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20180...
2018 Sep 11
5
How to send mail to mailbox with disabled domain?
Given the following: mailboxes: user1 at example1.com user2 at example1.com user3 at example1.com etc. aliases: whatever at example1.com -> user1 at example1.com whatever at example2.com -> user1 at example1.com whatever at example3.com -> user1 at example1.com Now the problem: example1.com MX goes elsewhere (doesn't point to this server anymore). Domains example2.com and
2015 Mar 02
0
IP drop list
...b-1-2 # We've seen 1.2.3.4 and 1.2.2.1 ... [subchain sub-1-2] -d 1.2.2.1 -j DROP -d 1.2.3.4 -j DROP Regards, J. Bern -- *NEU* - NEC IT-Infrastruktur-Produkte im <http://www.linworks-shop.de/>: Server--Storage--Virtualisierung--Management SW--Passion for Performance Jochen Bern, Systemingenieur --- LINworks GmbH <http://www.LINworks.de/> Postfach 100121, 64201 Darmstadt | Robert-Koch-Str. 9, 64331 Weiterstadt PGP (1024D/4096g) FP = D18B 41B1 16C0 11BA 7F8C DCF7 E1D5 FAF4 444E 1C27 Tel. +49 6151 9067-231, Zentr. -0, Fax -299 - Amtsg. Darmstadt HRB 85202 Unternehmenssitz Weiterstadt,...
2015 Apr 09
0
Calendar and address book with Dovecot
...lution? MAPI? CalDAV? LDAP? (And I'm pretty sure I can't list even *half* of the contenders ...) Regards, J. Bern -- *NEU* - NEC IT-Infrastruktur-Produkte im <http://www.linworks-shop.de/>: Server--Storage--Virtualisierung--Management SW--Passion for Performance Jochen Bern, Systemingenieur --- LINworks GmbH <http://www.LINworks.de/> Postfach 100121, 64201 Darmstadt | Robert-Koch-Str. 9, 64331 Weiterstadt PGP (1024D/4096g) FP = D18B 41B1 16C0 11BA 7F8C DCF7 E1D5 FAF4 444E 1C27 Tel. +49 6151 9067-231, Zentr. -0, Fax -299 - Amtsg. Darmstadt HRB 85202 Unternehmenssitz Weiterstadt,...
2018 Mar 22
1
why is dovecot "Allowing any password"
...s-user access rights management, yadda yadda), the requirement to defeat authentication from SOGo to the IMAP server may become moot. But until then - Exchange takes its entire auth from AD, and SOGo's LDAP, *not* the IMAP server's passdb, is the analogue of that. Regards, -- Jochen Bern Systemingenieur www.binect.de www.facebook.de/binect -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/pkcs7-signature Size: 4278 bytes Desc: S/MIME Cryptographic Signature URL: <https://dovecot.org/pipermail/dovecot/attachments/20180322/836624b5/a...
2018 Sep 12
0
How to send mail to mailbox with disabled domain?
...n this port, *without* DNS lookups", whichever your (internal?) networking necessitates). http://www.postfix.org/transport.5.html With a bit of luck, that might already "contain" the weirdness to the point that neither the MX nor dovecot need config hacks. Regards, -- Jochen Bern Systemingenieur www.binect.de www.facebook.de/binect -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/pkcs7-signature Size: 4278 bytes Desc: S/MIME Cryptographic Signature URL: <https://dovecot.org/pipermail/dovecot/attachments/20180912/cbdf0dcc/a...