Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 18 Nov 1996 11:11:29 -0500 (EST)
From:      pgiffuni@fps.biblos.unal.edu.co
To:        Marc Slemko <marcs@znep.com>
Cc:        Warner Losh <imp@village.org>, Mark Newton <newton@communica.com.au>, freebsd-security@freebsd.org
Subject:   Re: BoS: Exploit for sendmail smtpd bug (ver. 8.7-8.8.2). 
Message-ID:  <Pine.A41.3.95.961118110342.22356D-100000@fps.biblos.unal.edu.co>
In-Reply-To: <Pine.BSF.3.95.961117221653.223D-100000@alive.ampr.ab.ca>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, 17 Nov 1996, Marc Slemko wrote:

> 
> This would be implemented with either one big program or, more likely,
> a bunch of little programs with a consistent pretty (ie. sysinstall
> like, although libdialog is ugly) interface and a parent program that
> lets you run any of them.  Perhaps some day I will get around to
> trying to make such a program.
> 
AIX has a nice program (probably just a script) called securetcpip. You
run it once and it closes tftp, rlogin, and a bunch of services. The
disavantage is that you if you run it you`ll probably have to reinstall to
open one of the "unsecure" services. Probably it`s a complement to a C2
security package.
For the time being the logical choice is to correctly configure the newest
sendmail, port other mailers and pray !

Pedro





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.A41.3.95.961118110342.22356D-100000>