info-cvs archive search

Search String: Display: Description: Sort:

Results:

References: [ pserver: 4404 ] [ security: 1340 ]

Total 529 documents matching your query.

181. Re: CVS Security Issues (score: 176)
Author: HIDDEN
Date: Thu, 18 Dec 2003 20:07:33 -0500 (EST)
It would be much Much MUCH better to begin to deprecate any and all support for "cvs" passwords than to give any further support to the false illusion of any security someone might pretend to see in
/archive/html/info-cvs/2003-12/msg00257.html (6,511 bytes)

182. Re: CVS Security Issues (score: 161)
Author: HIDDEN
Date: Thu, 18 Dec 2003 17:21:11 -0500
Sorry I missed your earlier patch, but I already commited this one and it's in the 1.11.11 & 1.12.5 releases. This email was actually asking about two different patches. :) Derek - -- *8^) Email: add
/archive/html/info-cvs/2003-12/msg00254.html (7,099 bytes)

183. CVS Feature Version 1.12.5 Released! <strong>(security update)</strong> (score: 166)
Author: HIDDEN
Date: Thu, 18 Dec 2003 16:57:32 -0500
Feature CVS 1.12.5 has been released. Feature releases contain new features as well as all the bug fixes from the stable releases. This release adds code to the CVS server to prevent it from continui
/archive/html/info-cvs/2003-12/msg00253.html (6,277 bytes)

184. Stable CVS Version 1.11.11 Released! <strong>(security update)</strong> (score: 166)
Author: HIDDEN
Date: Thu, 18 Dec 2003 16:48:46 -0500
Stable CVS 1.11.11 has been released. Stable releases contain only bug fixes from previous versions of CVS. This release adds code to the CVS server to prevent it from continuing as root after a user
/archive/html/info-cvs/2003-12/msg00251.html (7,090 bytes)

185. Re: CVS Security Issues (score: 161)
Author: HIDDEN
Date: Thu, 18 Dec 2003 16:15:52 -0500
I posted a patch long ago that did just this for pserver connections. If the mapped name correlates to root (uid 0) then access is denied. Go for it. -- Mike Sutton SAIC Division 397 (937) 431-2273 F
/archive/html/info-cvs/2003-12/msg00248.html (6,027 bytes)

186. Re: CVS users from NT domain? (score: 12)
Author: HIDDEN
Date: Fri, 12 Dec 2003 12:53:16 -0500
The samba<->NT password syncronization issue asside, from a security point of view you wouldn't want to do this with pserver, which sends passwords in (trivially encoded) cleartext. Perhaps an :ext v
/archive/html/info-cvs/2003-12/msg00169.html (5,254 bytes)

187. RE: CVS dir permissions (score: 20)
Author: HIDDEN
Date: Thu, 11 Dec 2003 12:53:54 -0800
Mark, Thanks for the help. I changed the top level dir that contains the code base to 2770 and still get the same error: cvs upd cvs [update aborted]: unrecognized auth response from lcs002: cvs pser
/archive/html/info-cvs/2003-12/msg00163.html (7,277 bytes)

188. Re: CVS dir permissions (score: 17)
Author: HIDDEN
Date: Thu, 11 Dec 2003 11:10:02 -0800
Are you using client/server with :ext: or :pserver: or are you using I suggest you may want to run 770 and depending on your OS, you may want to use the group sticky-bit to force newly created files
/archive/html/info-cvs/2003-12/msg00161.html (6,648 bytes)

189. Re: Re: System username and :ext:/SSH (score: 17)
Author: HIDDEN
Date: Sun, 16 Nov 2003 20:58:33 -0500
Hi, There must be at least one operating system user for you to use ext with ssh because ssh is a remote login method. The purpose of ssh is to allow a user a remote login so it does not make sense t
/archive/html/info-cvs/2003-11/msg00243.html (7,816 bytes)

190. Re: Re: System username and :ext:/SSH (score: 17)
Author: HIDDEN
Date: Sun, 16 Nov 2003 21:37:51 -0500
I also have a question.Maybe you have told about it but only I'm not understand. I want to know,via :ext:/SSH,weather a user must be and OS user?No matter how security the ssh is.I don't want give th
/archive/html/info-cvs/2003-11/msg00242.html (6,396 bytes)

191. Re: System username and :ext:/SSH (score: 9)
Author: HIDDEN
Date: Sun, 16 Nov 2003 13:03:09 -0500 (EST)
[ On Sunday, November 16, 2003 at 11:22:41 (+0200), Stephen Biggs wrote: ] SSH is SSH. It's a true remote job execution protocol with the ability to enforce strong authentication and full Unix author
/archive/html/info-cvs/2003-11/msg00241.html (5,517 bytes)

192. Re: cvs-1.11.7 seems to have changed the api for "release" (score: 9)
Author: HIDDEN
Date: Thu, 02 Oct 2003 17:32:43 -0400
~From the NEWS file: . . . removed I suppose it could have noted that this was for security reasons. Only the administrator is deemed to be allowed to decide what commands to log or not to log. Derek
/archive/html/info-cvs/2003-10/msg00014.html (6,128 bytes)

193. Re: speed: pserver vs mount of repository (score: 113)
Author: HIDDEN
Date: Thu, 28 Aug 2003 10:00:32 -0700 (PDT)
Is it just the ADD/COMMIT over an NFS that would cause the corruption, and, presuming an as-of-yet uncorrupted repository, doing a CHECK-OUT over an NFS mounted repository would NOT cause corruption;
/archive/html/info-cvs/2003-08/msg00188.html (8,032 bytes)

194. Re: speed: pserver vs mount of repository (score: 113)
Author: HIDDEN
Date: Mon, 25 Aug 2003 17:29:00 -0700
The correct question is this: "Is it ever acceptable that a 'cvs commit' may corrupt the repository without any notification of any problems whatsoever until much time has passed and there is a need
/archive/html/info-cvs/2003-08/msg00159.html (6,341 bytes)

195. Re: Info-cvs Digest, Vol 8, Issue 31 (score: 28)
Author: HIDDEN
Date: Wed, 30 Jul 2003 17:00:26 +0200 (CEST)
Hi M, Try to update everythin' first, co module and you should get the retrieving revisions if the diffs work. Cheers, B
/archive/html/info-cvs/2003-07/msg00234.html (26,267 bytes)

196. Re: setting up cvs and cvsweb.... (score: 18)
Author: HIDDEN
Date: Tue, 29 Jul 2003 11:35:00 -0700
Have you tested it? Do this on the command line : CVS_RSH=ssh CVSROOT=:ext:address@hidden:/CVS export CVS_RSH CVSROOT cvs co <module> (where <module> is a name of a module you have in CVS). Are you t
/archive/html/info-cvs/2003-07/msg00224.html (7,032 bytes)

197. Re: setting up cvs and cvsweb.... (score: 25)
Author: HIDDEN
Date: Tue, 29 Jul 2003 01:43:24 -0700
okay. are you able to 'cvs checkout CVSROOT' ? So, you plan to use either rsh or ssh as your transport depending on the value of your CVS_RSH environment variable. It would be best if you get cvs wor
/archive/html/info-cvs/2003-07/msg00210.html (9,448 bytes)

198. setting up cvs and cvsweb.... (score: 21)
Author: HIDDEN
Date: Tue, 29 Jul 2003 00:49:16 -0700
(Hey... forgot to mention that we've looked at the usual site..Google/cvs.ccvshome.org/etc... with mo real luck....) Hi.... I'm trying to install CVS and CVSWEB on a Linux RH8.0 box. I'm running Apac
/archive/html/info-cvs/2003-07/msg00207.html (8,321 bytes)

199. setting up cvs and cvsweb.... (score: 21)
Author: HIDDEN
Date: Tue, 29 Jul 2003 00:37:58 -0700
Hi.... I'm trying to install CVS and CVSWEB on a Linux RH8.0 box. I'm running Apache. I think I have CVS working... but I'm not really sure!!! I have CVSROOT set to --> :ext:address@hidden:/CVS When
/archive/html/info-cvs/2003-07/msg00205.html (8,238 bytes)

200. Re: cvs login (score: 12)
Author: HIDDEN
Date: Fri, 20 Jun 2003 13:09:06 -0400
OK a bit more progress here now this message: cvs [login aborted]: unrecognized auth response from <machine>: cvs pserver: cannot open <dir>/CVS/CVSROOT/config: Permission denied I need to provide a
/archive/html/info-cvs/2003-06/msg00244.html (7,886 bytes)


This search system is powered by Namazu