MESSAGE
DATE | 2014-09-15 |
FROM | From: "Paul Robert Marino"
|
SUBJECT | Re: [NYLXS - HANGOUT] Apache Security tips
|
From owner-hangout-outgoing-at-mrbrklyn.com Mon Sep 15 09:10:33 2014 Return-Path: X-Original-To: archive-at-mrbrklyn.com Delivered-To: archive-at-mrbrklyn.com Received: by mrbrklyn.com (Postfix) id A5543161139; Mon, 15 Sep 2014 09:10:32 -0400 (EDT) Delivered-To: hangout-outgoing-at-mrbrklyn.com Received: by mrbrklyn.com (Postfix, from userid 28) id 9077916113E; Mon, 15 Sep 2014 09:10:32 -0400 (EDT) Delivered-To: hangout-at-mrbrklyn.com Received: from mail-pa0-f45.google.com (mail-pa0-f45.google.com [209.85.220.45]) by mrbrklyn.com (Postfix) with ESMTP id DA90F161139 for ; Mon, 15 Sep 2014 09:10:31 -0400 (EDT) Received: by mail-pa0-f45.google.com with SMTP id rd3so6374340pab.32 for ; Mon, 15 Sep 2014 06:10:29 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:to:subject:in-reply-to:mime-version :content-type; bh=9X26B3qcFhatDnzkUYFynBOh6umOFYmZzLHReXs61bE=; b=crmao2W1D8ZvpDakRUyheoOpNG7LJy6loWFWNuRg2UyWZda8p6Tz5Vp5tfGYY8QRtT 44bhlog1cCYHHw0JLdV1XQHFutf7sJLf7/urZREWREonWCMioC7BXnodIIMclKeXZ4zG BBfxVjImUZmL6YMG/C/aYhWnvj2RQv8STRkutgYztdGNPwQLfdsg1wsEO0B8E5EbIu4D joVOJUQvFy0RuIGLPOgb5VxJS6EbFmAEE3OQTu1Uio/Oe2g/z4/iBHfbTbKYMpE35DmI vCf2kqllHiBKFk/g3Kd+5GEFVxW5WlzCT/oKpKlQCKe45r9DT9rj2EwqQBKQ7Ol/hDHg ba+A== X-Received: by 10.70.3.194 with SMTP id e2mr4046103pde.161.1410786629690; Mon, 15 Sep 2014 06:10:29 -0700 (PDT) Received: from www.palm.com ([172.56.33.112]) by mx.google.com with ESMTPSA id n15sm2292943pdj.34.2014.09.15.06.10.27 for (version=TLSv1 cipher=RC4-SHA bits=128/128); Mon, 15 Sep 2014 06:10:28 -0700 (PDT) Message-ID: <5416e544.2f24460a.3a45.6c5f-at-mx.google.com> Date: Mon, 15 Sep 2014 09:10:27 -0400 From: "Paul Robert Marino" To: Subject: Re: [NYLXS - HANGOUT] Apache Security tips In-Reply-To: <54166E36.40000-at-panix.com> X-Mailer: Palm webOS MIME-Version: 1.0 Content-Type: multipart/alternative; boundary="Alternative_=_Boundary_=_1410786626" Sender: owner-hangout-at-mrbrklyn.com Precedence: bulk Reply-To: hangout-at-mrbrklyn.com
--Alternative_=_Boundary_=_1410786626 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable
Rubin Are you still custom compiling your own copy of Apache? I would= have hoped you would have stopped doing that by now. Its a lot of hassle a= nd a massive security risk if you aren't keeping up with the CVE's >
n>-size: 12px;color: #999999;">-- Sent from my HP Pre3 style=3D"color:navy; font-family:Prelude, Verdana, san-serif; "> =3D"left" style=3D"width:75%">On Sep 15, 2014 12:41 AM, Ruben Safir <mrb= rklyn-at-panix.com> wrote:
On 09/14/2014 10:21 PM, Chris Kna= dle wrote:=0D > On Sunday, September 14, 2014 20:43:05 Ruben Safir wr= ote:=0D >> http://perishablepress.com/eight-ways-to-blacklist-with= -apaches-mod_rewrite/=0D >>=0D >> mod_rewrite=0D >&= gt;=0D >> Too bad I can't get it to work!=0D >>=0D >= ;> It is not a compiled in module.=0D > The loading of the module = needs to be included in your configuration; e.g.:=0D >=0D > = LoadModule rewrite_module /usr/lib/apache2/modules/mod_rewrite.so=0D >= ;=0D > -- Chris=0D >=0D > --=0D >=0D > Chri= s Knadle=0D > Chris.Knadle-at-coredump.us=0D >=0D that only wor= ks if it is compiled=0D =0D
--Alternative_=_Boundary_=_1410786626--
--Alternative_=_Boundary_=_1410786626 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable
Rubin Are you still custom compiling your own copy of Apache? I would= have hoped you would have stopped doing that by now. Its a lot of hassle a= nd a massive security risk if you aren't keeping up with the CVE's >
n>-size: 12px;color: #999999;">-- Sent from my HP Pre3 style=3D"color:navy; font-family:Prelude, Verdana, san-serif; "> =3D"left" style=3D"width:75%">On Sep 15, 2014 12:41 AM, Ruben Safir <mrb= rklyn-at-panix.com> wrote:
On 09/14/2014 10:21 PM, Chris Kna= dle wrote:=0D > On Sunday, September 14, 2014 20:43:05 Ruben Safir wr= ote:=0D >> http://perishablepress.com/eight-ways-to-blacklist-with= -apaches-mod_rewrite/=0D >>=0D >> mod_rewrite=0D >&= gt;=0D >> Too bad I can't get it to work!=0D >>=0D >= ;> It is not a compiled in module.=0D > The loading of the module = needs to be included in your configuration; e.g.:=0D >=0D > = LoadModule rewrite_module /usr/lib/apache2/modules/mod_rewrite.so=0D >= ;=0D > -- Chris=0D >=0D > --=0D >=0D > Chri= s Knadle=0D > Chris.Knadle-at-coredump.us=0D >=0D that only wor= ks if it is compiled=0D =0D
--Alternative_=_Boundary_=_1410786626--
|
|