oviding the main network services a LAN requires. It is available in the form of Live CD or Compact Flash image and you can configure and administer it using your web browser. The main features of this... re authentication of the client MAC Address; WPA with TKIP and WPA2 with CCMP (802.11i complaint) are supported too; the RADIUS server may also, depending
que bind :
* http://cr.yp.to/djbdns/blurb/security.html
De l'importance de séparer le cache des serveurs autoritaires :
* http://cr.yp.to/djbdns/separation.html... ajoutées anti-phishing, Web Content Filtering, Whitelist / Blacklist, ...
===== DNS =====
certains hackeurs utilisent recursivité pour lancer des attaques avec l'ip spoofée.
a
====== Sécurité réseau ======
===== Documentation =====
[[http://cwe.mitre.org|CWE - Common Weakness Enumeration]]: Intern... description, selection, and use of software security tools and services that can find these weaknesse... management of software weaknesses related to architecture and design.\\
http://cwe.mitre.org
[[/info
oqlog]]: Isoqlog is an MTA log analysis program written in C. It designed to scan [[/informatique/reseau/qmail|QMail]], Postfix, [[/informatique/reseau/se... ics in HTML format for viewing through a browser. It produces Top domains output according to Sender, Receiver, Total mails and bytes; it keeps your main domain mail statistics with regar
lter]]
* [[http://www.postfix.org/ADDRESS_REWRITING_README.html|Postfix Address Rewriting]]
* [[http://www.postfix.org/docs.html|Postfix Howtos and ... r -d ALL deferred
See more:
* http://www.cyberciti.biz/tips/howto-postfix-flush-mail-queue.html
==== rewrite the Sender/From ====
=== méthode #1 ===
dans
tc/ssh/sshd_config tu change la ligne
<code>
PermitRootLogin Yes
en
PermitRootLogin No
</code>
Et si tu veux autoriser l'accès ssh en root uniquement avec clé ssh tu mets :
<code>
PermitRootLogin without-password
</code>
Mais bon ça marche pas …
Voici une config qui fontionne :
<code>
penfiler converts an industry standard x86/64 architecture system into a full-fledged NAS/SAN applianc... rage gateway and provides storage administrators with a powerful tool to cope with burgeoning storage needs. Building upon the popularity of server virtualization technologies such as VM
D =====
==== virtual user ====
Pour que les droits et sécurités du répertoire restent bien assignés à l'utilisateur principal, tu ne dois pas créer un ... ilisant le même utilisateur système que celui du site, mais dont l'accès est limité à un répertoire précis...
Regarde dans la doc de ncftpd pour les util
rewall software package that, when used together with an embedded PC, provides all the important featu... based on a bare-bones version of FreeBSD, along with a web server, PHP and a few other utilities. The entire system configuration is stored in one single... n0wall is probably the first UNIX system that has its boot-time configuration done with PHP, rather th
pec_html/ch-main_configuration.html|main configuraiton]]
* [[https://manpages.debian.org/stretch/exi... aliases.
==== Vider le queue ====
Forcer le traitement de la queue:
# /usr/sbin/exim -qf
Ainsi q... essage
exim4 -Mrm messageID => Remove message without sending any error message
exim4 -Mg message... 0 messages received in one connection
''$ sudo editor /etc/exim4/exim4.conf.template''
change (or ad
partir de M0n0wall (basé sur FreeBSD).
Fonctionnalités de cette distribution (version 0.65):
* A... * Gestion des disques de plus de 2TB par le partitionnement GPT/EFI,
* Cartes réseaux: Toutes ce... Compact Flash, un disque dur ou une clé USB.
Documentation et copies d'écran sur le site de FreeNAS.
* [[/informatique/reseau/freenas]]
===== Produits =====
==== Pour la maison ====
=== Synology DS... - 2 x 3,5" ou 2 x 2,5" SATA(II) - USB 2.0 et Gigabit X1 - 1.2 GHz - 128 Mo
* 2x **52,90€** : Western Digital - Disque dur - 1 To (1000 Go) - 64 Mo - SATA 2
mania.com/en/base/|WorldIP database]] allows unlimited identification of geographic location of an IP address. Download the database and use it on your own computer or server in SQL**, CIDR, ip... ping simultanément depuis plusieurs pays]] (45 monitoring points worldwide)
{{http://static.wipmania.
######
#SOURCE DEST POLICY LOGLEVEL RATE CONNLIMIT
$FW net ACCEPT
net all DROP info
lan all A... PROTO DPORT SPORT ORIGDEST RATE USER MARK CONNLIMIT TIME HEADERS SWITCH HELPER
?SECTION ALL
?SECTION ESTABLISHED
?SECTION RELATED
?SECTION INVALID
?SECT
====
==== MailSystem.NET ====
MailSystem is a suite of .NET components that provide users with an extensive set of email tools. MailSystem provides full