[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] Re: is this what we've been discussing - CERT Advisory CA-2002-27 Apache/mod_ssl Worm



on 9/15/02 4:52 PM, Gerald Waugh stated:

>> Isn't that badboy from the non-cobalt install??
> 
> That's not the badboy, and yes it is from the non-cobalt install.

Well I meant that in a nice way:)
> 
> I downloaded and tried to recompile mod_ssl, but I need the apache server
> source tree.
> 
> Maybe on the cobalt ftp site?

Chris Adams replied to my pointed bitch about Cobalt, he made a reference to
Apache. Also seems we have to contend with the admin site of the server with
this. Aren't the SSL/RSA packages closed to us?? I remember Bruce mentioning
that. I think if Sun is doing this crap of rocking chair updates, they
should open the source. Hell Apple did.

But yes grab from cobalt, you have more knowledge on this then me:( but I
will be happy to donate testing and idea bouncing. Wait until Jeff comes
back from where ever he disappears to and starts responding:)))

-- 
Thanks!!
Dave Thurman
The Web Presence Group / www.webpresencegroup.net
Listonly <at> webpresencegroup.net / Spam Block 8^Q