[pptp-server] some useful pptp-1.1.2 patches

LuisMi luismi at adpsoft.com
Mon Mar 25 08:52:10 CST 2002


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Mon, 25 Mar 2002, Frank Cusack wrote:

> I guess pptpd isn't maintained these days, so this seems as good a place
> as any to send some patches.  Hopefully they make it into the sources.
> 
> 1: log tcp_wrappers denies.  This should be considered security critical.

Another way is to use logger command from /etc/hosts.deny, remember 
'spawn' option for tcp wrappers :-)

Example..

# cat /etc/hosts.deny

pptpd: .microsoft.com : spawn (/usr/bin/logger blablabla...)

Try 'logger' command


> 2: properly daemonize (close stdin/stdout/stderr).  This is important!
> 3: don't log those silly GRE read/write problems when it's normal.  I
>    can't believe all you folks can tolerate this! :-)
> 4: an init script for redhat.

Yeah, an init script!!! :-)

LuisMi
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iEYEARECAAYFAjyfOZ4ACgkQvQHLTzrFJld3CQCeP0/ohlTaCITSJqaZxj+i22Sy
hP0An0ctUFxz2A9dbW3ZsGv28N26pENO
=dlz7
-----END PGP SIGNATURE-----




More information about the pptp-server mailing list