Search found 8 matches

by londoh
Fri Dec 05, 2014 9:29 am
Forum: Atomic Protector (formerly ASL)
Topic: Can I edit running.fw?
Replies: 0
Views: 3668

Can I edit running.fw?

Can I edit running.fw? I'm guessing its not a good idea so if not, how to apply manual edits to firewall? I read the firewall help but dont find answer. I know there's the gui, but it doesnt appear to cover all conditions, at least I dont see how in some cases eg: libvirt is inserting rules which I ...
by londoh
Tue Dec 02, 2014 8:13 pm
Forum: Atomic Protector (formerly ASL)
Topic: Libvirt/kvm dnsmasq 'CHECKSUM' error
Replies: 1
Views: 4561

Libvirt/kvm dnsmasq 'CHECKSUM' error

libvirt/kvm default network wont start, as per this error from libvirt.log: 2014-12-02 23:07:06.435+0000: 19069: error : virCommandWait:2319 : internal error Child process (/sbin/iptables --table mangle --insert POSTROUTING --out-interface virbr0 --protocol udp --destination-port 68 --jump CHECKSUM ...
by londoh
Sat Nov 10, 2012 5:05 am
Forum: Help with other free stuff
Topic: asl-lite update is not working
Replies: 11
Views: 23777

Re: asl-lite update is not working

thanks for reply Keep in mind that asl-lite is not a supported product, its a free tool we provide well altho it was my intention to pay, the 'free' part is correct so far. But the 'tool' part implies some useful functionality, rather than a waste of my time. Anyway leaving the semantics aside... I ...
by londoh
Fri Nov 09, 2012 8:44 pm
Forum: Help with other free stuff
Topic: asl-lite update is not working
Replies: 11
Views: 23777

Re: asl-lite update is not working

Usually thats caused by the terminal you're using to log into the system not supporting the full character set or setting the wrong type so I just installed a 30day trial asl-lite and if get this issue and I'm on fedora 17/kde using konsole to login to a fresh install of centos 6.3 - how would I fi...
by londoh
Sun Oct 17, 2010 5:42 pm
Forum: Atomicorp Free Modsecurity Rules
Topic: Problem using xbl.spamhaus.org
Replies: 9
Views: 14743

Re: Problem using xbl.spamhaus.org

Faris - I dont think it was you that caused the confusion at all - in fact you said turn xbl off which was helpful. whats confusing is that the delayed_rules are presented in a state that is arguably highly likely to cause confusion. they arent 30 day delayed - I spent ages clicking around the sites...
by londoh
Sun Oct 17, 2010 11:53 am
Forum: Atomicorp Free Modsecurity Rules
Topic: Problem using xbl.spamhaus.org
Replies: 9
Views: 14743

Re: Problem using xbl.spamhaus.org

We don't enable this by default in ASL for this reason. maybe not. But you do enable it by default in the delayed rules. Perhaps it simply didnt occur to anyone to turn it off? Altho in fact the delayed rules are billed as 30 day delay of the ASL modsecurity rules but clearly by what you say they a...
by londoh
Sat Oct 16, 2010 2:40 pm
Forum: Atomicorp Free Modsecurity Rules
Topic: Problem using xbl.spamhaus.org
Replies: 9
Views: 14743

Re: Problem using xbl.spamhaus.org

thats from a fresh download of the delayed rules so (if I understand the rule correctly) it looks like its turned on out of the can... from 00_asl_rbl.conf #Global RBL rules SecRule REMOTE_ADDR "!@pmFromFile /etc/asl/whitelist" \ "chain,deny, log, id:350000,rev:2,msg:'Global RBL Match...
by londoh
Sat Oct 16, 2010 1:04 pm
Forum: Atomicorp Free Modsecurity Rules
Topic: Problem using xbl.spamhaus.org
Replies: 9
Views: 14743

Problem using xbl.spamhaus.org

Hi I've seen some other posts about issues with spamhaus, but not this aspect. I've been using the delayed rules for a while and had some concerns about the number of blocks from xbl.spamhaus.org In fact I dont think its at all correct to use the XBL for a web server blocklist. I quote from the page...