I recently found that some users could not access this site due to what seemed to be ‘false positive’ matches in the mod_security rule base. In this particular instance the rule was one for ‘backdoor’ or ‘trojan’ access attempts. For now, I disable the rule (or set it to log only) and I decide to Continue reading →
Hmm, imagine this – The C-HACK! of 2009 Update (2/7/2010) – it will be interesting to see ‘the facts’ for this event – A post by Bruce Schneier (1/23/2010) on the CNN web provides some additional thoughts, i.e. Are we doing this to ourselves? (Do our national policies increase the chances that these types of Continue reading →
Categories: Computer Technology, Internet Search, News/Events, System and Network Security, Unix-Linux-Os Tags: Aurora Attack, CHACK, China, Chinese Hackers, GEO IP firewall, Georgia, Google, Hackers, home firewall, Internet security, iptables, Linux consultant, mod_geoip, mod_security, network security, Savannah, secure Gmail, the C-HACK
GEO Blocking network access – blocking specific IP blocks (GEO-blocking – do you really need those connections from Asia?) CAVEAT: The flow of packets through your system is fairly complex – I am limiting this discussion and I encourage you to RTM as well as the tutorial referenced in below… There are a number of Continue reading →
Categories: Computer Technology, System and Network Security, Unix-Linux-Os Tags: Apache filtering, application firewall, basic firewall configuration, geo ip blocking, GEO IP firewall, geoip blocking, Geolocation software, Georgia, IP address filtering, iptables, iptables 101, Linux consultant, MAC filtering, managing firewall rules, mod_geoip, mod_security, network firewall, packet filtering, Savannah, Savannah Technology