Re: ftp server limit ?
From: Ben Measures (saint_abroadremove_at_removehotmail.com)
Date: 03/05/04
- Next message: David: "Re: run as different user"
- Previous message: Walter Mautner: "Re: Samba Question for group permissions"
- In reply to: charly: "Re: ftp server limit ?"
- Next in thread: charly: "Re: ftp server limit ?"
- Reply: charly: "Re: ftp server limit ?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Fri, 05 Mar 2004 18:57:47 +0000
charly wrote:
>> Not unless they are specifically targetting root access. Usually a
>> crash will just close the application.
>
> Some kind of DOS then :) very useful indeed :)
>
>>
>> However that's not to say they weren't trying for a buffer overflow
>> (or similar. (However, proftp runs as nobody by default so they'd just
>> get nobody access.)
>> Ok for that.
>>
>>> My ftp server is proftpd ?
>>
>>
>>
>> I really hope that isn't a question lol. ;)
>> No it was a typo :)
>
>
>> You might want to look at restricting connections by ip (see either
>> xinetd or proftp docs).
>
> Since the faulty ip is bound to change, I'd like to create a rule which
> would dynamically ban an ip who tried to connect more than 20 times in
> less than 20 seconds. Any links on this since it is not really a syn
> signal but a complete transaction... ?
>
> thx !
>
Google Groups search: proftpd hammer
http://tinyurl.com/23l4k
Requires a little knowledge in shell scripting though.
-- Ben M. ---------------- What are Software Patents for? To protect the small enterprise from bigger companies. What do Software Patents do? In its current form, they protect only companies with big legal departments as they: a.) Patent everything no matter how general b.) Sue everybody. Even if the patent can be argued invalid, small companies can ill-afford the typical $500k cost of a law-suit (not to mention years of harassment). Don't let them take away your right to program whatever you like. Make a stand on Software Patents before its too late. Read about the ongoing battle at http://swpat.ffii.org/ ----------------
- Next message: David: "Re: run as different user"
- Previous message: Walter Mautner: "Re: Samba Question for group permissions"
- In reply to: charly: "Re: ftp server limit ?"
- Next in thread: charly: "Re: ftp server limit ?"
- Reply: charly: "Re: ftp server limit ?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|