All of lore.kernel.org
 help / color / mirror / Atom feed
* [LARTC] RE: [Lula] Routing Web to internal IIS servers
@ 2003-03-31 14:30 MrBiTs
  2003-03-31 14:35 ` MrBiTs
  0 siblings, 1 reply; 2+ messages in thread
From: MrBiTs @ 2003-03-31 14:30 UTC (permalink / raw)
  To: lartc

Hi, Todd

What kind of tests you did ?

Thanks a lot for the tips... I'm changing it NOW

cheers

Diogo Carlos Fernandes
Technical Support Manager

Real Media Latin America 
www.realmedia.com 

Phone .: 55+11+3842-2166 
Mobile .: 55+11+9266-5325 
e-mail .: dfernandes@realmedia.com 



-----Original Message-----
From: lula-admin@lula.org [mailto:lula-admin@lula.org] On Behalf Of Todd
Lyons
Sent: Saturday, March 29, 2003 2:45 AM
To: MrBiTs
Cc: lula@lula.org; lartc@mailman.ds9a.nl; henrique@rimo.ind.br
Subject: Re: [Lula] Routing Web to internal IIS servers


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

MrBiTs wanted us to know:

>                   <Directory proxy:*>
>                           Order deny,allow
>                           Allow from all

BAD BAD BAD!!!  You just told it to proxy ANYTHING instead of just the
domains that you want.  I just checked, I was able to proxy through your
machine to my website.  It won't be long that spammers and porn dealers
will be using your machine to proxy to them which masks their identity
to the untrained eye.  Interestingly, when I go to google.com, it brings
up www.google.com.br because it appears to be sourcing it from your IP
(you are proxying it).

Fix that now before it becomes abused!
- -- 
Blue skies...	Todd 	Public key: http://www.mrball.net/todd.asc
>SELECT * FROM users WHERE clue > 0
0 rows returned                        --Steve "BOFH" B.
Linux kernel 2.4.19-24mdk   7 users,  load average: 0.04, 0.01, 0.00
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)
Comment: http://www.mrball.net/todd.asc

iD8DBQE+hTLjIBT1264ScBURAt/MAKCPVrcUGmlnruUFnF/jTECO83zs1gCgjkmY
kJGDC1WlBQ4X+PlebRyMtiE=2RDo
-----END PGP SIGNATURE-----
_______________________________________________
Lula mailing list
Lula@lula.org
http://www.lula.org/mailman/listinfo/lula

Esta mensagem foi verificada pelo E-mail Protegido Terra.
Scan engine: VirusScan / Atualizado em 26/03/2003 / Versão: 1.3.13
Proteja o seu e-mail Terra: http://www.emailprotegido.terra.com.br/



_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2003-03-31 14:35 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-03-31 14:30 [LARTC] RE: [Lula] Routing Web to internal IIS servers MrBiTs
2003-03-31 14:35 ` MrBiTs

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.