TIP: Click on subject to list as thread! ANSI
echo: wwb_sysop
to: Barry Blackford
from: Marc Lewis
date: 2005-06-20 00:47:20
subject: re: Hacked off

Hello Barry.



 BB> My server was hacked and trashed, so if you emailed me, thanks but
 BB> as yet I haven't got email up (it effected email and web services
 BB> for both here and work so my boss is pissed at me as well!) it's
 BB> taken 5 days to get a new linux install done and IP forwarding to
 BB> this computer running again, no web services as yet and there will
 BB> probably be no FTP server running from now on. 

Though I don't run Linux, I see where some folks increase the security of
various critical servers (like DNS, SMTP, etc.) by some moderately complex
process of running them "in jail".  

As I understand it, users are set up that own the various processes and
their files and are give fake root directories with the chroot command, or
some variation thereof.  An intruder cannot get past the fake root into the
actual system, or so I'm told.  

Have you considered something like this?

Best regards,
Marc

--- timEd/2 1.10.y2k+
* Origin: Sursum Corda! BBS New Orleans 1-504-897-6006 USR33k6 (1:396/45)
SEEN-BY: 633/267 270
@PATH: 396/45 106/2000 633/267

SOURCE: echomail via fidonet.ozzmosis.com

Email questions or comments to sysop@ipingthereforeiam.com
All parts of this website painstakingly hand-crafted in the U.S.A.!
IPTIA BBS/MUD/Terminal/Game Server List, © 2025 IPTIA Consulting™.