КатегорииLinksUnix Tutorial
Personal Development Ruslan Valiev Solaris Performance Team Damien Farnham Fintan Ryan Nicky Veitch Niall Mullen Sean McGrath DTrace Bryan Cantrill Brendan Gregg ZFS Tim Foster General Ben Rockwood Learning Solaris 10 Privacy policy |
Tuesday, April 3. 2007Местные новости: ZFS Performance Talk
Tim Foster had sent an email to IOSUG mailing list yesterday, that tomorrow, at 7pm, Roch Bourbonnais will present a tech talk on ZFS Performance.
Here's the announcement:
All the details are on the official IOSUG8 invitation page. Thursday, March 8. 2007IOSUG #7 Announcement
Yesterday I received an email from Tim Foster, announcing the upcoming IOSUG #7 meeting:
Wednesday, March 7. 2007
ZFS administration guide: now in Russian Posted by Gleb Reys
in ZFS at
01:43
Comment (1) Trackbacks (0) ZFS administration guide: now in Russian
At last, I see some real progress with available translations of excellent Solaris docs!
For instance, ZFS administration guide in Russian was posted on the OpenSolaris/G11 (Globalization) Consolidation page just a few days ago. It really is great to see great translations like this completed. Well done, guys! Thursday, February 22. 2007
IOSUG #6: February OpenSolaris News Posted by Gleb Reys
in Solaris at
14:33Comments (0) Trackbacks (0) Defined tags for this entry: iosug, opensolaris
IOSUG #6: February OpenSolaris News
Last Tuesday, the 6th meeting of Irish Open Solaris User Group was held, and it's a real shame I couldn't come. Obviously, I don't regret this just because of the free beers and pizza (but this was a GREAT idea, Tim!), it's just that I always like the great presentations you get to see at such meetings.
So far, there are only slides with OpenSolaris news for February'07, made by Tim Foster himself. Tim has done it again: he improved his presentations! Now every piece of news has a link for you to follow and read more on the subject. Thanks a lot, Tim! John Rice presented a talk on Java-GNOME bindings, but there are no slides for this yet. As soon as they are ready - wait for a message on Tim's blog or on the official IOSUG page. Wednesday, February 14. 2007
Large vulnerability in.telnetd in ... Posted by Gleb Reys
in Solaris at
02:05Comments (2) Trackbacks (0) Large vulnerability in.telnetd in Solaris 10
Last weekend, a telnet vulnerability in Solaris 10 was found. Within hours, the fix was integrated into OpenSolaris, and on Monday we saw the first patches available and a Sun document on how to fix it.
Attention: this vulnerability is indeed very serious. It allows remote systems gain root access to Solaris 10 box under certain circumstances. The keywords in this sentence are "vulnerability - very serious" and "under certain circumstances". While I've seen many posts and articles focusing readers' attention on the seriousness of this vulnerability, I would like to draw your attention to few facts describing the "under certain circumstances" bit of this warning: 1) This vulnerability affects certain releases of Solaris 10 (s10u1 and s10u2) and OpenSolaris/Nevada only. Solaris 9 and older Solaris releases are not affected. Solaris 10 Update 3 is not affected (it has only SSH enabled by default, so telnet service is disabled in default installation) 2) This vulnerability will not allow remote root logins using telnet in your typical out-of-box Solaris installation. What I'm saying is that this exploit will not help hackers gain root access to your system, even if you have telnet enabled on your Solaris 10 box, unless you have implicitly commented out the CONSOLE=/dev/console line in your /etc/default/login file.UPDATE: unfortunately, this does not mean hackers can't use other accounts to access your system without password. Using this vulnerability, the will be able to successfully log into your system as bin, adm, sys or lp. Surely, they're not as dangerous as remote root logins, but still harmful enough. Possible ways for you to fix this problem: 1. Disable telnet to root for non CONSOLE logins (if that was for some reason enabled by commenting the line out) 2. Disable telnet service svcadm disable svc:/network/telnet:default 3. Apply relevant patch: T-Patch (ISR) is found here: http://sunsolve.sun.com/tpatches alternatively, just patch the in.telnetd: Patch for SPARC: 120068-02. Patch for x86: 120069-02. Interesting info on how this vulnerability was fixed by Sun: |





