[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-developers] RaQ2 - Alternatives, Secure admin UI, Porting special sauce to Slackware



At 14:31 31/01/00 -0600, you wrote:

>Frankly, I feel insulted by Cobalt.  I know issues arrise, but I have
>trusted a corporation to provide me with a secure, publically accessible
>web, email, and ftp server.  I'm finding that the system is far beyond
>proprietary in design, insecure, nonextensible, and buggy.

Just remember, you get what you pay for.  In the case of Cobalt's products,
that's really QUITE a lot.  The more sophistication, the slicker the GUI,
the more potential gotchas.  I think on the whole, Cobalt has developed a
highly reliable, very easy to use interface to facilitate easy forms based
site administration. Give Cobalt a chance, they'll patch it.


I must agree Cobalt will fix just have to wait a day or so. I had a good response from reporting the front panel LED Fault on some versions of RaQ3.

I have liked every minute I have had my RaQ3, On my server camp I simply added this "ip access-group 102 out" on the Ethernet interface of the up-stream Cisco router

no access-list 102
access-list 102 permit tcp host 194.162.xx.yy 212.126.xx.yy 0.0.0.255 eq 81
access-list 102 permit tcp any any neq 81
access-list 102 deny tcp any any eq 81
!
This filter will allow all to the normal stuff deny all to port 81 except the named IP


so I can access port 81 from my remote work-station and deny all others. this w/s could also be the IP of a secure FW proxy agent.

So until I see a Cobal patch I am protected enough, for now.

Barry


It won't be the last hole, by the way, you can be sure.  Those of us who've
run Sun servers over the years know you can also have the pleasure of paying
considerably more for a truly proprietary platform just to face the same
pitfalls.  Such security holes come with the territory...

Brett Barron
Kaleidoscope


_______________________________________________
cobalt-developers mailing list
cobalt-developers@xxxxxxxxxxxxxxx
http://list.cobalt.com/mailman/listinfo/cobalt-developers


---------------------------------------------------------------------------- ------------------------------
Barry Titmarsh BMT1-RIPE           Nacamar Ltd (Sheringham Office)
                                                  Knole House 38 Cromer Rd
                                                  Sheringham Norfolk NR268RR
e-mail: barry@xxxxxxxxxxxxxx      voice: +44-1263-821-844
www: www.nacamar.net.uk
---------------------------------------------------------------------------- ------------------------------