Re: nsupdate not working at all with keys.

From: Martin McCormick (martin@dc.cis.okstate.edu)
Date: 06/08/02


To: freebsd-security@FreeBSD.ORG
Date: Fri, 07 Jun 2002 20:11:05 -0500
From: Martin McCormick <martin@dc.cis.okstate.edu>


        I did get an answer and it is something everyone should
watch for if they install bind9.2.1 .

        The port is fine but a few of the executables such as
nsupdate end up in /usr/local/bin instead of /usr/local/sbin
where the older nsupdate lives. Bind and dig on the other hand
replace the older applications so they are okay.

        The new port puts man pages in /usr/local/man where as
the older port had the same pages in /usr/share/man which makes
your documentation out of sync.

        Just move the suspect man pages somewhere else or delete
them if you are brave and chmod -x the left-over executables so
they don't chime in when they shouldn't and things work a lot
better.

Martin McCormick WB5AGZ Stillwater, OK
OSU Center for Computing and Information Services Network Operations Group

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages

  • Re: A new kind of security needed
    ... Providing primitives to subdivie applications isn't easy, but once you've done that you still have to rewrite lots of applications to take advantage of it, and in a way that shows a lot more application programmer discipline. ... your view of the 'filesystem' is fully mutable. ... Both files and directories can be bind targets, and the source of the bind can as easily be a program as a file or directory; the ability to create secure synthetic filesystems just naturally falls out of this paradigm. ...
    (FreeBSD-Security)
  • Re: Buffer overflow and DoS i BIND
    ... It is important to note that this issue applies to more than BIND. ... As described in the CERT advisory, this can also affect network ... applications that makes use of vulnerable resolver libraries are ...
    (NT-Bugtraq)
  • login_ldap security announcement
    ... Information Management has found a serious issue ... "An unauthenticated bind results in an anonymous authorization. ... As a number of LDAP applications mistakenly generate ... authentication service this is probably what most people want. ...
    (Bugtraq)
  • Re: A new kind of security needed
    ... your view of the 'filesystem' is fully mutable. ... Both files and directories can be bind targets, and the source of the bind can as easily be a program as a file or directory; the ability to create secure synthetic filesystems just naturally falls out of this paradigm. ... UNIX presupposes lots of special-purpose applications doing rather specific and well-defined things, and that is a decreasingly accurate reflection of the way people write applications. ...
    (FreeBSD-Security)
  • Re: "zero" biased polarized coupling caps
    ... capacitors for continuous reversed bias, even when the bias is very ... I've used aluminum electrolytics in such applications with no ... 10% of rated voltage or 0.5V max is okay. ... with AVX pdf. ...
    (sci.electronics.design)