catalyst2 community forums  

Go Back   catalyst2 community forums > Feedback > Suggestions

Reply
 
LinkBack Thread Tools Rate Thread Display Modes
Old 26-06-2004, 11:46 PM   #1 (permalink)
Registered User
 
tddlard's Avatar
 
Join Date: May 2004
Posts: 32
Send a message via ICQ to tddlard Send a message via MSN to tddlard Send a message via Yahoo to tddlard
ProFTPD ->vsftpd

I have just come accross this article about a security flaw in ProFTPD and notice that the version used (based on the message when I login) is a version with this flaw.

http://xforce.iss.net/xforce/alerts/id/154

Would it be wise to move to vsftpd? Or ditch ftp and move to sftp?
tddlard is offline   Reply With Quote
Old 27-06-2004, 01:31 AM   #2 (permalink)
Bring me your problems :p
 
paulredpath's Avatar
 
Join Date: Jan 2003
Location: /dev/ahhhhhhhhh
Posts: 3,536
Em, we arent running an RC. We are running the final version.

So we arent affected.
paulredpath is offline   Reply With Quote
Old 27-06-2004, 10:29 AM   #3 (permalink)
rob
Resident NetOp/*nix Geek
 
rob's Avatar
 
Join Date: Dec 2003
Posts: 223
Re: ProFTPD ->vsftpd

Quote:
Originally posted by tddlard
I have just come accross this article about a security flaw in ProFTPD and notice that the version used (based on the message when I login) is a version with this flaw.

http://xforce.iss.net/xforce/alerts/id/154

Would it be wise to move to vsftpd? Or ditch ftp and move to sftp?
This advisory was about a bug last September, that was corrected in the final release. The advisory is only valid up to rc2, not the final release as Paul says.

Also, using sftp would just alienate all the users that use Windows, there's still not a decent SFTP client for Windows, and hence this would be a pain.

Thanks for your suggestion.
rob is offline   Reply With Quote
Old 27-06-2004, 05:54 PM   #4 (permalink)
Registered User
 
tddlard's Avatar
 
Join Date: May 2004
Posts: 32
Send a message via ICQ to tddlard Send a message via MSN to tddlard Send a message via Yahoo to tddlard
I didn't realise that were not on a RC, I guess I need to get more cafine in my system to make me more aware.

Quote:
Originally posted by Rob
Also, using sftp would just alienate all the users that use Windows, there's still not a decent SFTP client for Windows, and hence this would be a pain.
Actually I use Filezilla for both ftp and sftp transfers under windows, plus it's freeware.

http://filezilla.sourceforge.net

I have not been able to find a client as good that supports resuming with sftp.
tddlard is offline   Reply With Quote
Reply

Thread Tools
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT. The time now is 04:45 PM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.