[BlueOnyx:05727] Re: http://bugs.proftpd.org/show_bug.cgi?id=3521

Jeff Jones jeffrhysjones at mac.com
Mon Nov 8 17:53:42 -05 2010


This is a teeny bit off topic, but how about BX using proftp with mod_sftp?

Using this would mean you get full secure file transfer, plus, unlike using OpenSSL for ssh / sftp, you don't have to worry about giving shell access, jails etc.

Some clear instructions here:

http://www.directadmin.com/forum/showthread.php?t=30607

Any see any reason why this method would not work with BX? How tricky would this be to build in?

Jeff

Sent from my iPhone

On 8 Nov 2010, at 22:27, Michael Stauber <mstauber at blueonyx.it> wrote:

> Hi Jerry,
> 
>> http://bugs.proftpd.org/show_bug.cgi?id=3521
>> 
>> 1.3.3c released
>> [29/Oct/2010]
>> The ProFTPD Project team has released 1.3.3c to the community. This is an
>> important security release, containing fixes for a Telnet IAC handling
>> vulnerability and a directory traversal vulnerability in the mod_site_misc
>> module. The RELEASE_NOTES and NEWS files contain the full details.
> 
> We weren't affected by the mod_site_misc vulnerability, as our ProFTPd didn't 
> contain that module. But yeah, the Telnet IAC handling issue was an item.
> 
> An updated ProFTPd is just hitting the mirrors.
> 
> -- 
> With best regards
> 
> Michael Stauber
> _______________________________________________
> Blueonyx mailing list
> Blueonyx at blueonyx.it
> http://www.blueonyx.it/mailman/listinfo/blueonyx



More information about the Blueonyx mailing list