[BlueOnyx:05727] Re: http://bugs.proftpd.org/show_bug.cgi?id=3521
Jeff Jones
jeffrhysjones at mac.com
Mon Nov 8 17:53:42 -05 2010
This is a teeny bit off topic, but how about BX using proftp with mod_sftp?
Using this would mean you get full secure file transfer, plus, unlike using OpenSSL for ssh / sftp, you don't have to worry about giving shell access, jails etc.
Some clear instructions here:
http://www.directadmin.com/forum/showthread.php?t=30607
Any see any reason why this method would not work with BX? How tricky would this be to build in?
Jeff
Sent from my iPhone
On 8 Nov 2010, at 22:27, Michael Stauber <mstauber at blueonyx.it> wrote:
> Hi Jerry,
>
>> http://bugs.proftpd.org/show_bug.cgi?id=3521
>>
>> 1.3.3c released
>> [29/Oct/2010]
>> The ProFTPD Project team has released 1.3.3c to the community. This is an
>> important security release, containing fixes for a Telnet IAC handling
>> vulnerability and a directory traversal vulnerability in the mod_site_misc
>> module. The RELEASE_NOTES and NEWS files contain the full details.
>
> We weren't affected by the mod_site_misc vulnerability, as our ProFTPd didn't
> contain that module. But yeah, the Telnet IAC handling issue was an item.
>
> An updated ProFTPd is just hitting the mirrors.
>
> --
> With best regards
>
> Michael Stauber
> _______________________________________________
> Blueonyx mailing list
> Blueonyx at blueonyx.it
> http://www.blueonyx.it/mailman/listinfo/blueonyx
More information about the Blueonyx
mailing list