| From | Subject | Date |
|---|---|---|
| Rob Wilson | Travelbully.com Cheap International Airfare & Hotels
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> | Jul 9, 5:25 pm 2008 |
| Unix Fan | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
Why haven't the developers posted a formal annoncement clearifing If so, where the hell is the patch? -Nix Fan. | Jul 9, 11:48 am 2008 |
| Giancarlo Razzolini | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
Pal, i believe you won't even BE affected by this issue. If so, it will | Jul 9, 1:06 pm 2008 |
| Daniel A. Ramaley | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
Just curious, how much did you pay for your support contract? Clearly if Though i've given a few meager donations to OpenBSD, i have not paid for ------------------------------------------------------------------------ | Jul 9, 12:35 pm 2008 |
| bofh | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
Love your gimme gimme attitude. If you spent half a second thinking about this: 1). They didn't contact openbsd about this -- | Jul 9, 12:22 pm 2008 |
| Andreas Maus | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
Hehehe ;) Furthermore you can see in the US-CERT that this VULN was: Date First Published 07/08/2008 02:46:15 PM As you know some developers may live outside .us in a different You can accelerate proceedings by a) donating to OpenBSD And OpenBSD doesn't have a SLA .... | Jul 9, 1:17 pm 2008 |
| David Wilk | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
I'm not one to condone shitty attitudes. However, I think in this case it's unfair to claim that one can have Additionally, loyal OpenBSD users may be interested in the details of | Jul 9, 1:58 pm 2008 |
| STeve Andre' | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
You know what I expect? I expect the OpenBSD response will be excellent, and out on its own More than "expect", I trust OpenBSD. --STeve Andre' | Jul 9, 2:40 pm 2008 |
| Theo de Raadt | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
And we will continue to try to stay ahead of the curve. But please, First off, in this case just like in some other cases, you can Meanwhile, I _expect_ that our developers will do a proper job, on I also _expect_ tha... | Jul 9, 2:19 pm 2008 |
| David Wilk | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
easy, Theo. I actually very much agree with you, and had not intended I think perhaps you have an inflated impression of my expectations of | Jul 9, 4:05 pm 2008 |
| Steve Shockley | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
The Cert Advisory document (the MS Word doc file) claims that "OpenBSD" The notification timeline in the document is somewhat interesting. | Jul 9, 1:16 pm 2008 |
| Theo de Raadt | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
You really should adjust your extremely pathetic attitude. | Jul 9, 12:02 pm 2008 |
| Zamri Besar | Vulnerability Note VU#800113 - Multiple DNS implementations ...
Good morning, Today, I'm received alert from one of my friends regarding to I checked the above site, and found that most of the *BSD status are I'm don't know either the above bug is similar to this thread or not. -- Yours truly, | Jul 9, 10:45 am 2008 |
| Andreas Maus | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
I think named on OpenBSD 4.3 is affected too. So long, Andreas. -- | Jul 9, 11:20 am 2008 |
| Mathieu SEGAUD | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
OpenBSD's named is affected. -- | Jul 9, 10:52 am 2008 |
| David Terrell | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
Credit where credit is due: djbdns isn't. Without specifics on the issue, I can't tell if OpenBSD's bind is truly -- | Jul 9, 11:29 am 2008 |
| Mathieu SEGAUD | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
Stuart Henderson already answered this question on misc@ (12:10 UTC, -- | Jul 9, 12:14 pm 2008 |
| Zamri Besar | Re: Vulnerability Note VU#800113 - Multiple DNS implementati...
On Thu, Jul 10, 2008 at 12:14 AM, Mathieu SEGAUD I'm just finish re-read it right now. Thank you for the input and I And probably a minor update for those who are deploying it over Have a nice day! -zamri- | Jul 9, 1:02 pm 2008 |
| Stuart Henderson | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
thanks to those who pointed out (self) includes 127.0.0.1, so you e.g. "nat on egress proto udp from (self) to any port 53 -> (egress)", if you have a larger address space available you can use more | Jul 9, 9:17 am 2008 |
| Stuart Henderson | Re: ntpd.conf with nmea
it's not a server, it's a sensor. | Jul 9, 8:29 am 2008 |
| riwanlky | Re: ntpd.conf with nmea
Thanks you to point it out. Minor mistake big different. It working. Best regards, | Jul 9, 8:53 am 2008 |
| Stuart Henderson | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
named is. the stub resolver isn't. mcbride@ pointed out that you can give named some more protection nat on egress proto udp from (self) to any port 53 -> (self) there - if you need to tell people you're doing something | Jul 9, 8:10 am 2008 |
| Ted Unangst | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
I don't think this actually accomplishes much. It still lets poisoned | Jul 9, 1:19 pm 2008 |
| Steve Tornio | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
But does it allow a poisoned reply from the spoofed address? As I understand the threat, based on the limited information: 1. Attacker sends valid user a www.badman.com link to click on | Jul 9, 1:44 pm 2008 |
| Ted Unangst | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
oh, right. I think I forgot even UDP packets have IP addresses. :( | Jul 9, 2:09 pm 2008 |
| openbsd misc | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
http://cr.yp.to/djbdns/run-cache.html I never understood the mix of authoritive server and resolver ... Use dnscache Regards | Jul 9, 3:49 pm 2008 |
| mark reardon | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
doxpara.com reports no issues with unbound FWIW. Thanks to Stuart for this suggestion during the previous DJBware for ports | Jul 9, 8:26 am 2008 |
| riwanlky | ntpd.conf with nmea
I want my OpenBSD 4.3 to get clock from my serial GPS device. The device is working | Jul 9, 7:52 am 2008 |
| Otto Moerbeek | Re: ntpd.conf with nmea
server != sensor See man ntpd.conf -Otto | Jul 9, 8:14 am 2008 |
| Martin Schröder | altq and interface groups
Hi, I know that altq doesn't support interface groups (and that support is Best | Jul 9, 7:15 am 2008 |
| O. Griener | ochi (-current)
hi @misc any suggestions beside UKC disable? /bsd: ohci0: 1 scheduling overruns | Jul 9, 6:26 am 2008 |
| Andreas Maus | Actual BIND error - Patching OpenBSD 4.3 named ?
Hi. I guess OpenBSDs named is affected by the actual issue: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1447 So I hope a patch is in progress ? So long, Andreas. | Jul 9, 5:10 am 2008 |
| Rod Whitworth | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
# tcpdump -nettti rl0 dst port 53 # uname -a | Jul 9, 5:53 am 2008 |
| Steve Tornio | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
I get a different result using the external interface of my caching frank# tcpdump -nettti em1 dst port 53 | Jul 9, 6:58 am 2008 |
| Mike M | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
On 7/9/2008 at 5:58 AM Steve Tornio wrote: |On Jul 9, 2008, at 4:53 AM, Rod Whitworth wrote: | Jul 9, 8:11 am 2008 |
| mark reardon | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
Hi Andreas, Aren't you dumping on the wrong interface here? | Jul 9, 6:19 am 2008 |
| Andreas Maus | Re: Actual BIND error - Patching OpenBSD 4.3 named ?
Hi Mark. Excuse me? The tcpdump was provided by Rod Whitworth So long, Andreas. -- | Jul 9, 6:52 am 2008 |
| Markus Wernig | isakmpd times out on rolled-over client certificate
Hi all I have an OBSD4.3 VPN gateway that authenticates users based on their | Jul 9, 4:13 am 2008 |
| my mail | Can't install using pkg_add from FTP mirror and from Local M...
I have success install OpenBSD 4.3, but when i want install packages using pkg_add, why i can't install it? first i try from local ssh server from my LAN ------------------------------------------- | Jul 9, 4:04 am 2008 |
| Jacob Meuser | Re: Can't install using pkg_add from FTP mirror and from Loc...
you have libiconv.so.5.0 installed, but you are trying to install libiconv.so.5.0 is from -current (since May 28, 2008), but you appear looks like you are experiencing confusion with -release and snapshots. http://www.openbsd.org/faq/faq5.html#Flavors -- | Jul 9, 4:27 am 2008 |
| Louis V. Lambrecht | Re: Can't install using pkg_add from FTP mirror and from Loc...
Definitely a libraries mixup with gettext and libiconv versions. Just curious, what is the output of: | Jul 9, 10:53 am 2008 |
| David Schulz | Identifying Bandwidth Hogs
Hello, can someone recommend me a good way to quickly determine who on the I have a 4.3 Machine, which is the Firewall and Router for a Network | Jul 9, 1:51 am 2008 |
| Martin Schröder | Re: Identifying Bandwidth Hogs
ntop? Best | Jul 9, 4:47 am 2008 |
| Theo de Raadt | PCI-e system
Brad in Toronto needs a PCI-e system (he prefers a desktop, i386 or If anyone can get him one soon, please drop him a note. Thanks. | Jul 8, 11:15 pm 2008 |
| Top Shop | Ko su favoriti i dobitnici?
Nagradni kviz Top Shop Proveri ko je pobednik ... Euro 2008 je zavr | Jul 8, 9:04 pm 2008 |
| Jose Fragoso | trouble with running spamd on 4.4 BETA
Hi, I am having some problems while trying to run spamd in greylisting For some reason, spamd is not greylisting, and the all the connections | Jul 8, 8:00 pm 2008 |
| Michael | Re: trouble with running spamd on 4.4 BETA
Hi, Jose Fragoso schrieb: Just out of curiosity, is modulate state working for you? Michael | Jul 9, 1:22 am 2008 |
| Tom Le Page | Re: Digital IO - Phidgets support? alternatives?
Thanks for that, I had not come across the Barix range of devices before. | Jul 9, 4:46 am 2008 |
| previous day | today | next day |
|---|---|---|
| None | July 9, 2008 | None |
| Srivatsa Vaddagiri | containers (was Re: -mm merge plans for 2.6.23) |
| Greg KH | [GIT PATCH] driver core patches against 2.6.24 |
| Tarkan Erimer | Re: Dual-Licensing Linux Kernel with GPL V2 and GPL V3 |
| Benjamin Herrenschmidt | Re: [PATCH] Remove process freezer from suspend to RAM pathway |
git: | |
| Jarek Poplawski | [PATCH take 2] pkt_sched: Protect gen estimators under est_lock. |
| David Miller | [GIT]: Networking |
| Gerhard Pircher | 3c59x: shared interrupt problem |
| Gerrit Renker | [PATCH 27/37] dccp: Integration of dynamic feature activation - part 2 (server side) |
