MESSAGE
DATE | 2014-09-15 |
FROM | einker
|
SUBJECT | Re: [NYLXS - HANGOUT] Apache Security tips
|
From owner-hangout-outgoing-at-mrbrklyn.com Mon Sep 15 12:45:13 2014 Return-Path: X-Original-To: archive-at-mrbrklyn.com Delivered-To: archive-at-mrbrklyn.com Received: by mrbrklyn.com (Postfix) id 6519F161144; Mon, 15 Sep 2014 12:45:13 -0400 (EDT) Delivered-To: hangout-outgoing-at-mrbrklyn.com Received: by mrbrklyn.com (Postfix, from userid 28) id 52FB4161147; Mon, 15 Sep 2014 12:45:13 -0400 (EDT) Delivered-To: hangout-at-mrbrklyn.com Received: from mail-ie0-f170.google.com (mail-ie0-f170.google.com [209.85.223.170]) by mrbrklyn.com (Postfix) with ESMTP id 9826B161144 for ; Mon, 15 Sep 2014 12:45:12 -0400 (EDT) Received: by mail-ie0-f170.google.com with SMTP id tp5so4978710ieb.29 for ; Mon, 15 Sep 2014 09:45:11 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :content-type; bh=/q54C4LRGzZ/n7L43k7Rq31TFMdy8LodDeNWnzfjW3o=; b=ekSdbE0INqubbHu8zpWDba1di+FcwJ4sgBCsE+DehKr5QHWE8JS0tvvwY90aI4C4Mz nI60ZTsjxviwY2XQEBukck9U3b8uGIKIcx79K3UjVqWWCWJOCSaypPuHk877MB53IQG8 I6yPhWazlvjXgQKdB7Olg8oikXin0hPUtX5scNax7ksjMcIA+1EDnS12yKNopggr75au rfLkXhn7Hp/eDImyPjTzsTV/iEZAZD+lNO6ansrJzgpdv5E/1rVtK12AsBcu/15EZYIv 5TrIZ9qQg46xT3zr8Axi0oeon0+eLXZKeKXCNnoAhpLvtyvZ143ES8Tu2LCob0rI54Ko rT6Q== MIME-Version: 1.0 X-Received: by 10.50.79.132 with SMTP id j4mr23825550igx.9.1410799511005; Mon, 15 Sep 2014 09:45:11 -0700 (PDT) Received: by 10.64.233.229 with HTTP; Mon, 15 Sep 2014 09:45:10 -0700 (PDT) In-Reply-To: <5416e544.2f24460a.3a45.6c5f-at-mx.google.com> References: <54166E36.40000-at-panix.com> <5416e544.2f24460a.3a45.6c5f-at-mx.google.com> Date: Mon, 15 Sep 2014 12:45:10 -0400 Message-ID: Subject: Re: [NYLXS - HANGOUT] Apache Security tips From: einker To: "hangout-mrbrklyn. com" Content-Type: multipart/alternative; boundary=089e01228e0cb3fa0605031d5bcc Sender: owner-hangout-at-mrbrklyn.com Precedence: bulk Reply-To: hangout-at-mrbrklyn.com
--089e01228e0cb3fa0605031d5bcc Content-Type: text/plain; charset=UTF-8
I agree with Rob. If it were a joint, I'd say go right ahead and clean out the seeds. With Apache, use the distro pre-compiled version. You'll be happier in the long run ....
On Mon, Sep 15, 2014 at 9:10 AM, Paul Robert Marino wrote:
> Rubin > Are you still custom compiling your own copy of Apache? > I would have hoped you would have stopped doing that by now. Its a lot of > hassle and a massive security risk if you aren't keeping up with the CVE's > > > > -- Sent from my HP Pre3 > > ------------------------------ > On Sep 15, 2014 12:41 AM, Ruben Safir wrote: > > On 09/14/2014 10:21 PM, Chris Knadle wrote: > > On Sunday, September 14, 2014 20:43:05 Ruben Safir wrote: > >> > http://perishablepress.com/eight-ways-to-blacklist-with-apaches-mod_rewrite/ > >> > >> mod_rewrite > >> > >> Too bad I can't get it to work! > >> > >> It is not a compiled in module. > > The loading of the module needs to be included in your configuration; > e.g.: > > > > LoadModule rewrite_module /usr/lib/apache2/modules/mod_rewrite.so > > > > -- Chris > > > > -- > > > > Chris Knadle > > Chris.Knadle-at-coredump.us > > > that only works if it is compiled > >
-- Regards,
Evan M. Inker
--089e01228e0cb3fa0605031d5bcc Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: quoted-printable
I agree with Rob. If it were a joint, I'd say go = right ahead and clean out the seeds.
With Apache, use the distro = pre-compiled version. You'll be happier in the long run .... <= div class=3D"gmail_extra">
On Mon, Sep 15, 20= 14 at 9:10 AM, Paul Robert Marino <rmarino1-at-gmail.com" target=3D"_blank">prmarino1-at-gmail.com> wr= ote: -left:1px #ccc solid;padding-left:1ex">Rubin Are you still custom compil= ing your own copy of Apache? I would have hoped you would have stopped d= oing that by now. Its a lot of hassle and a massive security risk if you ar= en't keeping up with the CVE's=C2=A0
ily:Prelude,Verdana,san-serif">
-- Regards,
Ev= an M. Inker
--089e01228e0cb3fa0605031d5bcc--
--089e01228e0cb3fa0605031d5bcc Content-Type: text/plain; charset=UTF-8
I agree with Rob. If it were a joint, I'd say go right ahead and clean out the seeds. With Apache, use the distro pre-compiled version. You'll be happier in the long run ....
On Mon, Sep 15, 2014 at 9:10 AM, Paul Robert Marino wrote:
> Rubin > Are you still custom compiling your own copy of Apache? > I would have hoped you would have stopped doing that by now. Its a lot of > hassle and a massive security risk if you aren't keeping up with the CVE's > > > > -- Sent from my HP Pre3 > > ------------------------------ > On Sep 15, 2014 12:41 AM, Ruben Safir wrote: > > On 09/14/2014 10:21 PM, Chris Knadle wrote: > > On Sunday, September 14, 2014 20:43:05 Ruben Safir wrote: > >> > http://perishablepress.com/eight-ways-to-blacklist-with-apaches-mod_rewrite/ > >> > >> mod_rewrite > >> > >> Too bad I can't get it to work! > >> > >> It is not a compiled in module. > > The loading of the module needs to be included in your configuration; > e.g.: > > > > LoadModule rewrite_module /usr/lib/apache2/modules/mod_rewrite.so > > > > -- Chris > > > > -- > > > > Chris Knadle > > Chris.Knadle-at-coredump.us > > > that only works if it is compiled > >
-- Regards,
Evan M. Inker
--089e01228e0cb3fa0605031d5bcc Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: quoted-printable
I agree with Rob. If it were a joint, I'd say go = right ahead and clean out the seeds.
With Apache, use the distro = pre-compiled version. You'll be happier in the long run .... <= div class=3D"gmail_extra">
On Mon, Sep 15, 20= 14 at 9:10 AM, Paul Robert Marino <rmarino1-at-gmail.com" target=3D"_blank">prmarino1-at-gmail.com> wr= ote: -left:1px #ccc solid;padding-left:1ex">Rubin Are you still custom compil= ing your own copy of Apache? I would have hoped you would have stopped d= oing that by now. Its a lot of hassle and a massive security risk if you ar= en't keeping up with the CVE's=C2=A0
ily:Prelude,Verdana,san-serif">
-- Regards,
Ev= an M. Inker
--089e01228e0cb3fa0605031d5bcc--
|
|