areas.autonlab.org daily insecurity output

Charlie Root auton.sysnotify at gmail.com
Fri May 31 01:34:56 EDT 2019


Running security(8):

Checking special files and directories.
Output format is:
	filename:
		criteria (shouldbe, reallyis)
root/.ssh/authorized_keys: 
	permissions (0600, 0644)
mtree special: exit code 2

======
/etc/hostname.em1 SHA-256 checksums
======
OLD: 25723da35b90de6b6a0aa727b7f1c3941ac5e37dd270fed55899e3b979659e0b
NEW: 19d66393bf48731cf5582803119d21c34fd94c4d16f1a2ac0a98420bdd1354c1

======
/etc/motd diffs (-OLD  +NEW)
======
--- /var/backups/etc_motd.current	Sat May  4 01:34:53 2019
+++ /etc/motd	Wed May 29 10:23:11 2019
@@ -1,4 +1,4 @@
-OpenBSD 6.5 (GENERIC.MP) #0: Wed Apr 24 23:38:54 CEST 2019
+OpenBSD 6.5 (GENERIC.MP) #1: Mon May 27 18:27:59 CEST 2019
 
 Welcome to OpenBSD: The proactively secure Unix-like operating system.
 


======
/etc/pf.conf diffs (-OLD  +NEW)
======
--- /var/backups/etc_pf.conf.current	Fri Mar 15 01:34:58 2019
+++ /etc/pf.conf	Thu May 30 21:50:24 2019
@@ -64,19 +64,6 @@
 
 
 
-# Used for Collectd proxy
-pass in on $vpn_if inet proto udp from any to any port {25826}
-
-# Expose sftp server to the World
-pass in on egress inet proto tcp to (egress) port {ssh} rdr-to $upload
-pass on $int_if proto tcp from any to any port {ssh}
-
-# Expose Monit to entire world.
-pass in on egress inet proto tcp to (egress) port {80} rdr-to $monit port 8080
-pass in on egress inet proto tcp to (egress) port {8080} rdr-to $monit
-pass on $int_if proto tcp from any to any port {8080}
-
-
 # Foxconn data collection
 pass in on egress inet proto tcp from 128.2.176.157 to (egress) port {873} rdr-to $foxconn
 pass on $int_if proto tcp from any to any port {873}


======
/etc/snmpd.conf SHA-256 checksums
======
OLD: a4cf2546ed991a67e9e304ca580873669b90e570e9872ed975c06cb566cf41aa
NEW: e44e9db53174e42ebfe0d64e0a83b8e9ea3741ff0ff5f784a613fd55a9a49550

======
/var/unbound/etc/unbound.conf diffs (-OLD  +NEW)
======
--- /var/backups/var_unbound_etc_unbound.conf.current	Thu May  2 01:34:57 2019
+++ /var/unbound/etc/unbound.conf	Thu May 30 16:29:53 2019
@@ -2,7 +2,7 @@
 
 server:
 	interface: 127.0.0.1
-	interface: 192.168.6.253
+	interface: 192.168.6.250
 	interface: 10.8.0.1
 	#interface: 127.0.0.1 at 5353	# listen on alternative port
 	interface: ::1



More information about the Autonlab-sysinfo mailing list