Re: Novell Pandora Hack

From: Iain P.C. Moffat (ipmat_private)
Date: Tue Apr 13 1999 - 13:08:07 PDT

  • Next message: David Brumley: "aDSL routers"

    Yes this is why the console log (and any other log files for that
    matter) should be redirected to a quota restricted directory or better
    yet another volume "var" perhaps.  Hmmm...what a concept.  While
    this is still less than ideal, it will at least minimize the impact.
    
    -Iain
    
    On 13 Apr 99, at 12:03, Simple Nomad wrote:
    
    Much stuff Cut.....
    
    > Of course spoofing the source of a Pandora attack can have other effects
    > with these security measures in place, since you could fill up the SYS
    > volume (stopping all server processing) with "invalid security signature"
    > messages. There is no "last message repeated 200,000 times" log entry in
    > Netware....
    >
    >     Simple Nomad    //
    >  thegnomeat_private  //  ....no rest for the Wicca'd....
    >     www.nmrc.org    //
    
    
    *******************************************
    Iain P.C. Moffat
    College of Health Professions
    University of Florida
    E-mail:  ipmat_private
    Voice:   352.392.0965
    Fax:     352.392.6529
    *******************************************
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:42:23 PDT