[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

libwrapfix.pl



-----BEGIN PGP SIGNED MESSAGE-----


After many delays, I finally finished the script to fix /etc/hosts.allow
should something ever happen to it.  It's unforeturnately suid root
(required of course), but I think it's pretty secure, since everything is
hardcoded into the script and doesn't take any input that is exploitable.  

It will also email core@linuxkb.org with the IP of the culprit and save
the original /etc/hosts.allow file.

Note, that if you run this, not everyone will be assured access.
Currently, myself and users with access on Pluto will be able to ssh in.
All other clients will be denied.  I felt that this was important, since
if the /etc/hosts.allow file was ever overwritten, it may indicate a crack
attempt in progress.

Feel free to take a look at the script, it's pretty straight forward.

/home/http/production/admin/cgi-bin/libwrapfix.pl

Oh, you'll find the form off of http://admin.linuxkb.org/

- -- 
Aaron Turner           | Either which way, one half dozen or another. 
aturner@pobox.com      | Check out the Red Hat Linux User's FAQ Online!
www.pobox.com/~aturner | http://www.pobox.com/~aturner/RedHat-FAQ/
All emails from this account are PGP signed.  Lack of a signature is "bad".
PGP Key fingerprint = FB E1 CE ED 57 E4 AB 80  59 6E 60 BF 45 1B 20 E8



-----BEGIN PGP SIGNATURE-----
Version: 2.6.2

iQCVAwUBNuLufDM3jpXy1kJtAQGB3AQAqr2RhPfQ63+y7BsEZRJTLolF/64OCwzL
n73Nz1lAnhqWtfGIyvOTsNgVBeverYivJWkCQMDiQBBUkz8RPQCVCmbQYi7ARaCM
tpUkO7St1rqTjzJAOf6bz/GNnmfdZEqey1/HbY+5odTkb04WR0KQlktc/85xLFZS
9GwKp1xVk+M=
=rJeo
-----END PGP SIGNATURE-----