Mailinglist Archive: opensuse-security (231 mails)
| < Previous | Next > |
Re: [suse-security] Fwd: DOS against SuSE's identd
- From: Mark Lutz <luma@xxxxxxxxxxx>
- Date: Tue, 17 Aug 1999 13:33:23 +0200 (CEST)
- Message-id: <Pine.LNX.4.05.9908171326300.634-100000@xxxxxxxxxxxxxxxx>
* Chrissy LeMaire <chrissy@xxxxxxxxxxxx> writes:
> This was forwarded to me by a friend.. i dont know if it was ever
> addressed on this list.. but here yall go.
It's on "todays" BUGTRAQ Digest - 13 Aug 1999 to 16 Aug 1999 (#1999-36)
> The inetd.conf starts the identd with the options -w -t120 -e.
That's also true for SuSE 6.0. What's the solution? Change the -t to ten
seconds? Or less? Since I don't need this service I commented it out in
"/etc/inetd.conf" some time ago. This is recommended for all services
one doesn't need.
> SuSE seems not to be interested in this bug becaus they did not
> answer any of my mails.
Now THIS is a HUGE security problem. SuSE what's going on?
--
Mark Lutz
Accept German and English
> This was forwarded to me by a friend.. i dont know if it was ever
> addressed on this list.. but here yall go.
It's on "todays" BUGTRAQ Digest - 13 Aug 1999 to 16 Aug 1999 (#1999-36)
> The inetd.conf starts the identd with the options -w -t120 -e.
That's also true for SuSE 6.0. What's the solution? Change the -t to ten
seconds? Or less? Since I don't need this service I commented it out in
"/etc/inetd.conf" some time ago. This is recommended for all services
one doesn't need.
> SuSE seems not to be interested in this bug becaus they did not
> answer any of my mails.
Now THIS is a HUGE security problem. SuSE what's going on?
--
Mark Lutz
Accept German and English
| < Previous | Next > |