areas.autonlab.org daily insecurity output
Charlie Root
auton.sysnotify at gmail.com
Fri May 31 01:34:56 EDT 2019
Running security(8):
Checking special files and directories.
Output format is:
filename:
criteria (shouldbe, reallyis)
root/.ssh/authorized_keys:
permissions (0600, 0644)
mtree special: exit code 2
======
/etc/hostname.em1 SHA-256 checksums
======
OLD: 25723da35b90de6b6a0aa727b7f1c3941ac5e37dd270fed55899e3b979659e0b
NEW: 19d66393bf48731cf5582803119d21c34fd94c4d16f1a2ac0a98420bdd1354c1
======
/etc/motd diffs (-OLD +NEW)
======
--- /var/backups/etc_motd.current Sat May 4 01:34:53 2019
+++ /etc/motd Wed May 29 10:23:11 2019
@@ -1,4 +1,4 @@
-OpenBSD 6.5 (GENERIC.MP) #0: Wed Apr 24 23:38:54 CEST 2019
+OpenBSD 6.5 (GENERIC.MP) #1: Mon May 27 18:27:59 CEST 2019
Welcome to OpenBSD: The proactively secure Unix-like operating system.
======
/etc/pf.conf diffs (-OLD +NEW)
======
--- /var/backups/etc_pf.conf.current Fri Mar 15 01:34:58 2019
+++ /etc/pf.conf Thu May 30 21:50:24 2019
@@ -64,19 +64,6 @@
-# Used for Collectd proxy
-pass in on $vpn_if inet proto udp from any to any port {25826}
-
-# Expose sftp server to the World
-pass in on egress inet proto tcp to (egress) port {ssh} rdr-to $upload
-pass on $int_if proto tcp from any to any port {ssh}
-
-# Expose Monit to entire world.
-pass in on egress inet proto tcp to (egress) port {80} rdr-to $monit port 8080
-pass in on egress inet proto tcp to (egress) port {8080} rdr-to $monit
-pass on $int_if proto tcp from any to any port {8080}
-
-
# Foxconn data collection
pass in on egress inet proto tcp from 128.2.176.157 to (egress) port {873} rdr-to $foxconn
pass on $int_if proto tcp from any to any port {873}
======
/etc/snmpd.conf SHA-256 checksums
======
OLD: a4cf2546ed991a67e9e304ca580873669b90e570e9872ed975c06cb566cf41aa
NEW: e44e9db53174e42ebfe0d64e0a83b8e9ea3741ff0ff5f784a613fd55a9a49550
======
/var/unbound/etc/unbound.conf diffs (-OLD +NEW)
======
--- /var/backups/var_unbound_etc_unbound.conf.current Thu May 2 01:34:57 2019
+++ /var/unbound/etc/unbound.conf Thu May 30 16:29:53 2019
@@ -2,7 +2,7 @@
server:
interface: 127.0.0.1
- interface: 192.168.6.253
+ interface: 192.168.6.250
interface: 10.8.0.1
#interface: 127.0.0.1 at 5353 # listen on alternative port
interface: ::1
More information about the Autonlab-sysinfo
mailing list