[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[cobalt-users] Qube3-All-Security-4.0.1-15977, update or not?
- Subject: [cobalt-users] Qube3-All-Security-4.0.1-15977, update or not?
- From: "Santiago Montalvan" <smontalvan@xxxxxxxxxxxxxxxxx>
- Date: Mon Feb 10 23:15:00 2003
- Organization: montalvanware.com
- List-id: Mailing list for users to share thoughts on Sun Cobalt products. <cobalt-users.list.cobalt.com>
I am posting this again because nobody replied to it and I really would like
to have an answer:
This morning I received an e-mail from the server appliance telling me about
updating the server with Qube3-All-Security-4.0.1-15977. I was going to
install it but the details for the update are the following:
This security bundle addresses multiple security issues: correcting insecure
file permissions; fixing symlinks; improving the security of FTP and DNS;
putting the auth service under TCP wrappers.
I noticed that it patches DNS but I manually updated DNS already to the
latest version of BIND 8 (8.3.4). I also created the DNS zone file manually
and not using the gui. I am afraid that if I apply this patch it will break
the DNS service.
Should I apply this patch? Some advice would be appreciated.
Santiago.
______________________________
Santiago Montalvan
Information Systems Consultant
montalvanware.com