[Gllug] My firewall is rooted

Mark Lowes hamster at korenwolf.net
Mon Jul 15 11:50:04 UTC 2002


On Mon, 2002-07-15 at 12:20, Stephen Harker wrote:
> OK. So I ssh into the firewall (first time in a week or so) to discover loads 
> of running processes ./a and a new user in my password file called dave. So 

Disconnect from the network, dump off anything critical (scripts,
configurations, logs) via floppy or a private network connection.

Nuke, reinstall and check any recovered information before putting it
back on the box for changes (this is where cvs and script management
comes in :)

-- 
The Flying Hamster <hamster at korenwolf.net>     
http://www.korenwolf.net/
Anything is good and useful if it's made of chocolate.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 192 bytes
Desc: This is a digitally signed message part
URL: <http://mailman.lug.org.uk/pipermail/gllug/attachments/20020715/09057bbf/attachment.pgp>


More information about the GLLUG mailing list