apollo.autonlab.org daily insecurity output

Charlie Root auton.sysnotify at gmail.com
Sat Sep 19 01:37:50 EDT 2020


Running security(8):

======
/etc/pf.conf diffs (-OLD  +NEW)
======
--- /var/backups/etc_pf.conf.current	Fri Feb  2 01:36:42 2018
+++ /etc/pf.conf	Sat Sep 19 00:45:24 2020
@@ -12,8 +12,8 @@
 table <bruteforce> persist
 table <sshguard> persist
 
-tcp_services = "{ssh, http, https, submission, 8080, 30041}"
-tcp_services_int = "{ssh, http, https, submission, ldap, \
+tcp_services = "{domain, ssh, http, https, submission, 8080, 30041}"
+tcp_services_int = "{domain, ssh, http, https, submission, ldap, \
         111, 2049, 4000, 4001, 4002, 3690, 8080, 30041}"
 udp_services = "{domain, ntp}"
 udp_services_int = "{domain, ntp, snmp, syslog, 25826, 111, 2049, 4000, 4001, 4002}"


======
/var/unbound/etc/unbound.conf diffs (-OLD  +NEW)
======
--- /var/backups/var_unbound_etc_unbound.conf.current	Sun Apr 28 01:36:53 2019
+++ /var/unbound/etc/unbound.conf	Sat Sep 19 00:40:27 2020
@@ -7,7 +7,7 @@
 	#interface: 127.0.0.1 at 5353	# listen on alternative port
 	interface: ::1
 	do-ip6: no
-	do-tcp: no
+	do-tcp: yes
 
 	# override the default "any" address to send queries; if multiple
 	# addresses are available, they are used randomly to counter spoofing



More information about the Autonlab-sysinfo mailing list