IWETHEY v. 0.3.0 | TODO
1,095 registered users | 0 active users | 0 LpH | Statistics
Login | Create New User
IWETHEY Banner

Welcome to IWETHEY!

New GAH... Sorry folks
The the Extended Internet Super Daemon did a coredump sometime recently.

Bug submitted to Debian. All fixed for now, it is down to one service it manages due to the known bug.

[link|mailto:greg@gregfolkert.net|greg] - IT Grand-Master for Anti-President
[link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!]

THEY ARE WATCHING YOU.
The time has come for you to take the last step.
You must love THEM.
It is not enough to obey THEM.
You must love THEM.

PEACE BEGETS WAR, SLAVERY IS FREEDOM, STRENGTH IN IGNORANCE.
New xinetd?
-drl
New Suggestion
Monitor for core dump, and auto-reboot.
-drl
New Re: Suggestion
Are you kidding?

The bug had to do with xinetd not using /etc/xinet.d/* vs haveing all the stanza's in the /etc/xinetd.conf and if in the /etc/xinetd.conf and you had all but one stanza disabled.

I now have one stanza period and is the only service being run by xinetd. And yes, I choose to use xinetd vs. inetd mainly because I like the extra control.

[link|mailto:greg@gregfolkert.net|greg] - IT Grand-Master for Anti-President
[link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!]

THEY ARE WATCHING YOU.
The time has come for you to take the last step.
You must love THEM.
It is not enough to obey THEM.
You must love THEM.

PEACE BEGETS WAR, SLAVERY IS FREEDOM, STRENGTH IN IGNORANCE.
New Re: Suggestion
reboot - restart bad processes. No one ever acutally reboots, do they?

The symptom on XP was odd - would pop up the login dialog with the password filled in, then pop it up with no password, then again with password, finally error screen.
-drl
New xinetd vs. inetd
"..more control.."

Could you give an example of this?
-drl
New What xinetd can do for you.
1) It can do access control on all services based on:
a. address of remote host
b. time of access
c. name of remote host
d. domain name of remote host
2) Access control works on all services, whether multi-threaded or single-threaded and for both the TCP and UDP protocols. All UDP packets can be checked as well as all TCP connections.

3) It provides hard reconfiguration:
a. kills servers for services that are no longer in the configuration file
b. kills servers that no longer meet the access control criteria
4) It can prevent denial-of-access attacks by
a. placing limits on the number of servers for each service (avoids process table overflows)
b. placing an upper bound on the number of processes it will fork
c. placing limits on the size of log files it creates
d. placing limits on the number of connection a single host can initiate
e. place limits on the rate of incoming connections
f. discontinue services if the load exceeds specified limit
5) Extensive logging abilities:
a. for every server started it can log:
i) the time when the server was started
ii) the remote host address
iii) who was the remote user (if the other end runs a RFC-931/RFC-1413 server)
iv) how long the server was running
(i, ii and iii can be logged for failed attempts too).
b. for some services, if the access control fails, it can log information about the attempted access (for example, it can log the user name and command for the rsh service)
6) No limit on number of server arguments

7) You can bind specifc services to specific IP's on your host machine

Any other questions?

[link|mailto:greg@gregfolkert.net|greg] - IT Grand-Master for Anti-President
[link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!]

THEY ARE WATCHING YOU.
The time has come for you to take the last step.
You must love THEM.
It is not enough to obey THEM.
You must love THEM.

PEACE BEGETS WAR, SLAVERY IS FREEDOM, STRENGTH IN IGNORANCE.
New Take this to another forum please.
Regards,

-scott anderson

"Welcome to Rivendell, Mr. Anderson..."
     GAH... Sorry folks - (folkert) - (7)
         xinetd? -NT - (deSitter)
         Suggestion - (deSitter) - (5)
             Re: Suggestion - (folkert) - (4)
                 Re: Suggestion - (deSitter)
                 xinetd vs. inetd - (deSitter) - (2)
                     What xinetd can do for you. - (folkert) - (1)
                         Take this to another forum please. -NT - (admin)

Like, HEL-LOO... Anyone at home behind that beard???
49 ms