From owner-freebsd-security@FreeBSD.ORG Sat Apr 16 09:28:25 2011 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 3FDBE1065670 for ; Sat, 16 Apr 2011 09:28:25 +0000 (UTC) (envelope-from przemyslaw@frasunek.com) Received: from lagoon.freebsd.lublin.pl (lagoon.freebsd.lublin.pl [IPv6:2a02:2928:a::3]) by mx1.freebsd.org (Postfix) with ESMTP id BF8B08FC15 for ; Sat, 16 Apr 2011 09:28:24 +0000 (UTC) Received: from [IPv6:2a02:2928:a:ffff:70a6:6b28:ff4e:bb7b] (unknown [IPv6:2a02:2928:a:ffff:70a6:6b28:ff4e:bb7b]) by lagoon.freebsd.lublin.pl (Postfix) with ESMTPSA id BBA0E239455; Sat, 16 Apr 2011 11:28:23 +0200 (CEST) Message-ID: <4DA96137.5050100@frasunek.com> Date: Sat, 16 Apr 2011 11:28:23 +0200 From: Przemyslaw Frasunek Organization: frasunek.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; pl; rv:1.9.2.15) Gecko/20110303 Thunderbird/3.1.9 MIME-Version: 1.0 To: Michael Scheidell References: <4DA95938.7050608@secnap.com> In-Reply-To: <4DA95938.7050608@secnap.com> X-Enigmail-Version: 1.1.1 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Cc: freebsd-security@freebsd.org, Emerging Threats Signatures Subject: Re: 193.138.118.3 ? lagoon.freebsd.lublin.pl /cache, freebsd, lublin, pl on TOR end point list? X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 16 Apr 2011 09:28:25 -0000 > This concerns me if freebsd is using a mirror that has possible ties to hacker > or other nefarious network related activity. Well, this is my network and my box, so I will try to clarify all issues. > A) this might be a FP? that lagoon.freebsd.lublin.pl is NOT associated with > this type of activity? freebsd.lublin.pl does not host any FreeBSD mirrors. It's a shell server with ~300-400 accounts, running for 14 years. I personally know (almost) every person having account here. We have TOR installed (without exit node functionality), but it's not used for any kind of illegal activities. -- * Fido: 2:480/124 ** WWW: http://www.frasunek.com ** NICHDL: PMF9-RIPE * * Jabber ID: venglin@nette.pl ** PGP ID: 2578FCAD ** HAM-RADIO: SQ5JIV *