<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: need information in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488047#M533422</link>
    <description>At what level do you want to block FTP access?&lt;BR /&gt;&lt;BR /&gt;For incoming, do you want to block all connections?  If so, comment out, or remove, the FTP entries in /etc/inetd.conf and then run 'inetd -c' to force a re-read of the inetd.conf file.&lt;BR /&gt;&lt;BR /&gt;For outgoing, you would need to remove permission on the FTP executable or just rename FTP to FTP.ORIG.</description>
    <pubDate>Fri, 28 Aug 2009 15:57:42 GMT</pubDate>
    <dc:creator>Patrick Wallek</dc:creator>
    <dc:date>2009-08-28T15:57:42Z</dc:date>
    <item>
      <title>need information</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488046#M533421</link>
      <description>How to bloack the incoming and outgoing ftp access in hpux server? We are running HPUX 11i series operating system in our HP servers. &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Thanks &lt;BR /&gt;azaru</description>
      <pubDate>Fri, 28 Aug 2009 15:54:21 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488046#M533421</guid>
      <dc:creator>Azaru</dc:creator>
      <dc:date>2009-08-28T15:54:21Z</dc:date>
    </item>
    <item>
      <title>Re: need information</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488047#M533422</link>
      <description>At what level do you want to block FTP access?&lt;BR /&gt;&lt;BR /&gt;For incoming, do you want to block all connections?  If so, comment out, or remove, the FTP entries in /etc/inetd.conf and then run 'inetd -c' to force a re-read of the inetd.conf file.&lt;BR /&gt;&lt;BR /&gt;For outgoing, you would need to remove permission on the FTP executable or just rename FTP to FTP.ORIG.</description>
      <pubDate>Fri, 28 Aug 2009 15:57:42 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488047#M533422</guid>
      <dc:creator>Patrick Wallek</dc:creator>
      <dc:date>2009-08-28T15:57:42Z</dc:date>
    </item>
    <item>
      <title>Re: need information</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488048#M533423</link>
      <description>&lt;BR /&gt;&amp;gt;&amp;gt; How to bloack the incoming and outgoing ftp access in hpux server? We are running HPUX 11i series operating system in our HP servers. &lt;BR /&gt;&lt;BR /&gt;Patrick already answered the basics.&lt;BR /&gt;&lt;BR /&gt;An alternative is to cut the network cables.&lt;BR /&gt;&lt;BR /&gt;If that is a little too coarse (nothing the question suggests it would be :-), then maybe you can finesse this by telling the network switch to block traffic on certain ports (21).&lt;BR /&gt;&lt;BR /&gt;Patrick wrote&amp;gt;&amp;gt; "For outgoing, you would need to remove permission on the FTP executable or just rename FTP to FTP.ORIG."&lt;BR /&gt;&lt;BR /&gt;While that will work for simpleton users, that is a bit naive a solution isn't it? &lt;BR /&gt;FTP is not us much an executable as it is a network protocol. Any program can just 'talk FTP' on a network port. &lt;BR /&gt;One example would be perl module Net::FTP which is a class implementing a simple FTP client in Perl as described in RFC959. Renaming FTP will not stop that.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://perldoc.perl.org/Net/FTP.html" target="_blank"&gt;http://perldoc.perl.org/Net/FTP.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;fwiw,&lt;BR /&gt;Hein.&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 28 Aug 2009 16:08:19 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488048#M533423</guid>
      <dc:creator>Hein van den Heuvel</dc:creator>
      <dc:date>2009-08-28T16:08:19Z</dc:date>
    </item>
    <item>
      <title>Re: need information</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488049#M533424</link>
      <description>Hi patric&lt;BR /&gt;&lt;BR /&gt;Thanks for the information. You are right. I have done the first step that u said and things happened reversly. I can able to ftp from other server to the blocked one and not able to do outgoing.&lt;BR /&gt;&lt;BR /&gt;azar</description>
      <pubDate>Fri, 28 Aug 2009 16:10:47 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488049#M533424</guid>
      <dc:creator>Azaru</dc:creator>
      <dc:date>2009-08-28T16:10:47Z</dc:date>
    </item>
    <item>
      <title>Re: need information</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488050#M533425</link>
      <description>Hi all,&lt;BR /&gt;&lt;BR /&gt;We have done the vulnerability test in our servers. And as a result we have got these following high risky things are happening in the report. I dont know what it means. Can any one please explain it. Its about the ftp i understand.&lt;BR /&gt;&lt;BR /&gt;WU-FTPDSockPrintf()&lt;BR /&gt;Remote Stack-based Buffer&lt;BR /&gt;Overrun&lt;BR /&gt;&lt;BR /&gt;WU-FTPD S/Key Remote&lt;BR /&gt;Buffer Overrun&lt;BR /&gt;&lt;BR /&gt;WU-FTPD File Conversion&lt;BR /&gt;Command Execution&lt;BR /&gt;&lt;BR /&gt;WU-FTPD fb_realpath()&lt;BR /&gt;Off-By-One Buffer Overflow</description>
      <pubDate>Fri, 28 Aug 2009 17:42:43 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488050#M533425</guid>
      <dc:creator>Azaru</dc:creator>
      <dc:date>2009-08-28T17:42:43Z</dc:date>
    </item>
    <item>
      <title>Re: need information</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488051#M533426</link>
      <description>&lt;BR /&gt;Those message refer to known vulnerabilties to the wu-ftpd.&lt;BR /&gt;( &lt;A href="http://en.wikipedia.org/wiki/WU-FTPD" target="_blank"&gt;http://en.wikipedia.org/wiki/WU-FTPD&lt;/A&gt; )&lt;BR /&gt;&lt;BR /&gt;You may want to check out the following topics:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://forums11.itrc.hp.com/service/forums/questionanswer.do?threadId=1319049" target="_blank"&gt;http://forums11.itrc.hp.com/service/forums/questionanswer.do?threadId=1319049&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;"From my research it appears that the current release and patching for HPUX ftpd is based uopon WU-FTPD 2.6.1. "&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;and &lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://forums11.itrc.hp.com/service/forums/questionanswer.do?threadId=1331080" target="_blank"&gt;http://forums11.itrc.hp.com/service/forums/questionanswer.do?threadId=1331080&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Some of those vulnerabilites listed seem pretty old. 2003? See for example:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://unix.derkeiler.com/Newsgroups/comp.sys.hp.hpux/2003-09/0054.html" target="_blank"&gt;http://unix.derkeiler.com/Newsgroups/comp.sys.hp.hpux/2003-09/0054.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Exactly what version of HPUX + patch level do you have?&lt;BR /&gt;&lt;BR /&gt;hth,&lt;BR /&gt;Hein.&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 28 Aug 2009 19:07:03 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488051#M533426</guid>
      <dc:creator>Hein van den Heuvel</dc:creator>
      <dc:date>2009-08-28T19:07:03Z</dc:date>
    </item>
    <item>
      <title>Re: need information</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488052#M533427</link>
      <description>Dear Hein&lt;BR /&gt;&lt;BR /&gt;We have HPUX B.11.11 &amp;amp; HPUX B.11.23 versions&lt;BR /&gt;and the following path level&lt;BR /&gt;swlist | grep -i patch&lt;BR /&gt;  BUNDLE11i                     B.11.23.0409.3 Required Patch Bundle for HP-UX 11i v2 (B.11.23), September 2004&lt;BR /&gt;  FEATURE11i                    B.11.23.0706.063 Feature Enablement Patches for HP-UX 11i v2, June 2007&lt;BR /&gt;  HWEnable11i                   B.11.23.0706.064 Hardware Enablement Patches for HP-UX 11i v2, June 2007.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;One more thing i couldn't find any wu-ftpd fileset in there using this command given in the last link.&lt;BR /&gt;#swlist -l fileset | grep -i wu-ftp-26.inetsvcs-ftp&lt;BR /&gt;</description>
      <pubDate>Fri, 28 Aug 2009 20:01:51 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488052#M533427</guid>
      <dc:creator>Azaru</dc:creator>
      <dc:date>2009-08-28T20:01:51Z</dc:date>
    </item>
    <item>
      <title>Re: need information</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488053#M533428</link>
      <description>This website appears to have a couple of really good overview for FTP setups...&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://newfdawg.com/SHP-Articles.htm" target="_blank"&gt;http://newfdawg.com/SHP-Articles.htm&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Hein.&lt;BR /&gt;</description>
      <pubDate>Sun, 30 Aug 2009 03:22:21 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/need-information/m-p/4488053#M533428</guid>
      <dc:creator>Hein van den Heuvel</dc:creator>
      <dc:date>2009-08-30T03:22:21Z</dc:date>
    </item>
  </channel>
</rss>

