store | blogs | forums | twitter | facebook | wiki | mailing lists | downloads | support portal
Atomic Secure Linux
It is currently Wed Jun 19, 2013 11:58 pm

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]




Post new topic Reply to topic Share/Bookmark  [ 32 posts ]  Go to page Previous  1, 2, 3  Next
Author Message
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Wed Nov 10, 2010 12:47 pm 
Offline
Forum Regular
Forum Regular

Joined: Sat Mar 28, 2009 6:58 pm
Posts: 802
Location: Germany
Thanks Scott.
What to do if I'm still with Plesk 9.5.2 and get this when running yum check-update?
Code:
psa-proftpd.x86_64                  1.3.3c-2.el5.art                   asl-2.0
psa-proftpd-devel.x86_64            1.3.3c-2.el5.art                   asl-2.0
psa-proftpd-mysql.x86_64            1.3.3c-2.el5.art                   asl-2.0
Obsoleting Packages
psa-proftpd.x86_64                  1.3.3c-2.el5.art                   asl-2.0
psa-proftpd-xinetd.x86_64       1.3.2e-cos5.build95100504.10       installed


Code:
#yum list *proftpd*:
Installed Packages
psa-proftpd.x86_64                  1.3.3c-1.el5.art                   installed
psa-proftpd-devel.x86_64            1.3.3c-1.el5.art                   installed
psa-proftpd-mysql.x86_64            1.3.3c-1.el5.art                   installed
psa-proftpd-xinetd.x86_64           1.3.2e-cos5.build95100504.10       installed
Available Packages
psa-proftpd.x86_64                  1.3.3c-2.el5.art                   asl-2.0
psa-proftpd-devel.x86_64            1.3.3c-2.el5.art                   asl-2.0
psa-proftpd-ldap.x86_64             1.3.3c-2.el5.art                   asl-2.0
psa-proftpd-mod_sftp.x86_64         1.3.3c-2.el5.art                   asl-2.0
psa-proftpd-mysql.x86_64            1.3.3c-2.el5.art                   asl-2.0
psa-proftpd-postgresql.x86_64       1.3.3c-2.el5.art                   asl-2.0


Thanks


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Wed Nov 10, 2010 3:51 pm 
Offline
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin

Joined: Wed Dec 31, 1969 8:00 pm
Posts: 7460
Location: earth
Right, it should be obsoleteing/providing on the old xinet package. This disappears in Plesk 10 anyway (merged in with the main package).


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Wed Nov 10, 2010 4:19 pm 
Offline
Forum Regular
Forum Regular

Joined: Sat Mar 28, 2009 6:58 pm
Posts: 802
Location: Germany
ok thanks.


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Wed Nov 10, 2010 9:00 pm 
Offline
Long Time Forum Regular
Long Time Forum Regular

Joined: Thu Dec 09, 2004 11:19 am
Posts: 1876
Wow - I just got an email notification from Parallels about the bug and release dates of when they will issue patches. Right at the bottom it mentions the Atomic update and includes install instructions. Website copy here:

http://www.parallels.com/products/plesk/ProFTPD

I've never had an email notification like this before.

Interestingly, by specifically mentioning 9.x and 10.x it seem to imply that Plesk 8.x and earlier do not have a vulnerable ProFTPd.

_________________
--------------------------------
<advert>
If you want to rent a UK-based VPS that comes with friendly advice and support from a fellow ART fan, please get in touch.
</advert>


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Thu Nov 11, 2010 5:32 am 
Offline
Forum Regular
Forum Regular

Joined: Tue Jul 15, 2008 2:38 pm
Posts: 715
Location: Sweden
faris wrote:
Wow - I just got an email notification from Parallels about the bug and release dates of when they will issue patches. Right at the bottom it mentions the Atomic update and includes install instructions. Website copy here:

http://www.parallels.com/products/plesk/ProFTPD

I've never had an email notification like this before.

Interestingly, by specifically mentioning 9.x and 10.x it seem to imply that Plesk 8.x and earlier do not have a vulnerable ProFTPd.


+1 for the Wow!

Re the 8.x issue it might also mean that they think 8.x more or less unsupported, but that might just be me showing my usual grumpy Thursday mode...


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Thu Nov 11, 2010 6:54 am 
Offline
Forum Regular
Forum Regular

Joined: Wed Jan 02, 2008 3:21 pm
Posts: 515
Location: United Kingdom
Upgraded psa-proftpd this morning:
Nov 11 09:28:59 Installed: psa-proftpd-1.3.3c-2.el5.art.x86_64
Nov 11 09:28:59 Erased: psa-proftpd-xinetd

Shortly after, noticed spamdyke entries no longer show in /usr/local/psa/var/log/maillog, checked /etc/xinetd.d/smtp_psa and "/usr/local/bin/spamdyke -f /etc/spamdyke.conf" was missing from the server_args. Added them, but no external mail is delivered locally, it stops with "/var/qmail/bin/relaylock". Removed the spamdyke entry and it all works again. Tried moving spamdyle conf BEFORE /var/qmail/bin/relaylock, external message delivery stops again.

Can anyone using spamdyke and the updated psa-proftpd package confirm if spamdyke is still working for them?

Thanks!


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Thu Nov 11, 2010 7:06 am 
Offline
Forum Regular
Forum Regular

Joined: Sat Mar 28, 2009 6:58 pm
Posts: 802
Location: Germany
I have NOT updated to psa-proftpd-1.3.3c-2.el5.art.x86_64 until now but I use spamdyke.
I'm suprised that it should have something to do with this problem?
None of the proftpd packages touch the smtp_psa file. Of course both are run via xinetd.d but thats it.
Have you updated anything else? Or run a yum update that updated Plesk to 9.5.3?


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Thu Nov 11, 2010 8:25 am 
Offline
Forum Regular
Forum Regular

Joined: Wed Jan 02, 2008 3:21 pm
Posts: 515
Location: United Kingdom
Hi BruceLee, thanks for taking the time to respond. psa-proftpd-1.3.3c is the only update this week, spamdyke was working up till then and due to xinetd association, seemed a likely cause.

Have yum removed/installed spamdyke, reinstated same conf files/settings and it's working again...

Updated to Plesk 9.5.3 on 3 November and checked spamdyke settings, restarted xinetd (killall -HUP xinetd & /etc/init.d/xinetd restart) it's been running fine, guess the psa-proftpd update triggered something.

Glad to be up and running again (really noticed the increased server load with Spamassassin taking the brunt of the spam).

Hopefully a heads up for anyone else with same issue.


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Thu Nov 11, 2010 9:09 am 
Offline
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin

Joined: Wed Dec 31, 1969 8:00 pm
Posts: 7460
Location: earth
Bizzare, I cant think of anything in the proftpd package that could touch spamdyke's config. Is that spamdyke package from the repo or a src.rpm install?


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Thu Nov 11, 2010 1:35 pm 
Offline
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin
User avatar

Joined: Thu Feb 07, 2008 7:49 pm
Posts: 3265
Location: Chantilly, VA
Yeah nothing in the protftp rpms that would touch spamdyke.

_________________
Michael Shinn
Atomicorp - Security For Everyone

Co-Author of Troubleshooting Linux Firewalls.


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Thu Nov 11, 2010 1:47 pm 
Offline
Forum Regular
Forum Regular

Joined: Wed Jan 02, 2008 3:21 pm
Posts: 515
Location: United Kingdom
Installed from the atomic repo. At least it is running again now.


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Fri Nov 12, 2010 12:31 pm 
Offline
Long Time Forum Regular
Long Time Forum Regular

Joined: Thu Dec 09, 2004 11:19 am
Posts: 1876
Hmmm.. Spamdyke still working as normal here after the update, but all our systems are on Plesk 8.6/Centos 4.

Faris.

_________________
--------------------------------
<advert>
If you want to rent a UK-based VPS that comes with friendly advice and support from a fellow ART fan, please get in touch.
</advert>


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Sun Nov 14, 2010 8:51 am 
Offline
Forum Regular
Forum Regular

Joined: Sat Mar 28, 2009 6:58 pm
Posts: 802
Location: Germany
spamdyke runs fine after this update (Plesk 9.5.2; Centos5.5-x86_64)


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Sun Nov 14, 2010 10:06 am 
Offline
Long Time Forum Regular
Long Time Forum Regular

Joined: Sat Aug 20, 2005 9:30 am
Posts: 2812
Location: The Netherlands
Hm, there is an update loop here. With psa-proftpd-1.3.3c-2 from atomic installed the Plesk autoinstaller wants to install 1.3.2e with the micro update patch. This fails unless psa-proftpd-1.3.3c-2 is removed first. However, after installing the Plesk micro update, yum will update to psa-proftpd-1.3.3c-2 again, at which point we're back where we were, because now Plesk's autoinstaller will try to install the micro update again.

Sigh.

_________________
Lemonbit Internet Dedicated Server Management


Top
 Profile  
 
 Post subject: Re: [atomic] psa-proftpd 1.3.3c
Unread postPosted: Sun Nov 14, 2010 10:38 am 
Offline
Forum Regular
Forum Regular

Joined: Sat Mar 28, 2009 6:58 pm
Posts: 802
Location: Germany
hmm, maybe excluding
psa-proftpd-1.3.2e-cos5.build95101022.10.x86_64.rpm
and
psa-proftpd-xinetd-1.3.2e-cos5.build95101022.10.x86_64.rpm
in plesk.repo would help?

I don't know how the autoinstaller handles that? Is there any reason to use it?
I always use yum.


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic Share/Bookmark  [ 32 posts ]  Go to page Previous  1, 2, 3  Next

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]


Who is online

Users browsing this forum: No registered users and 1 guest


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group