Michael C. Toren on Mon, 17 Jan 2000 23:58:39 -0500 (EST)


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

Re: Security (was Re: [PLUG] Does anyone have a Pentium Pro 200 Mhtz processor...)

  • From: "Michael C. Toren" <mct@netaxs.com>
  • To: plug@lists.nothinbut.net
  • Subject: Re: Security (was Re: [PLUG] Does anyone have a Pentium Pro 200 Mhtz processor...)
  • Date: Mon, 17 Jan 2000 23:58:37 -0500

[ other very good suggestions snipped ]

> SATAN against your machine.  Run Crack against your passwd file.  (Even
> better, use shadow passwords.)  Use nmap, netstat, nessus, tripwire, ssh,

Even if you use shadowed passwords, run crack against /etc/shadow to find
users who have picked poor passwords.  Taking the time to educate them
can be a pain, I know, but it's well worth it in the long run.

-mct