httpd-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Eric Frazier ...@kwinternet.com>
Subject Re: [users@httpd] People abusing my machine!
Date Sat, 26 Oct 2002 14:01:46 GMT
Hi,

They will die off of there own after a while. It is amazing, I setup an open
proxy once just to test, and it only took two days before people all over
the world were using it. How did you end up having mod_proxy but not
restricting access?  Is there a Linux dist that includes a version of Apache
with mod_proxy included?  


Eric 

At 11:27 PM 10/25/02 -0400, Mike Diehl wrote:
>
>68.6.254.219 - - [25/Oct/2002:15:42:37 -0600] "HEAD 
>http://www.milfhunter.com/members/ HTTP/1.0" 403 0
>62.213.66.172 - - [25/Oct/2002:15:44:21 -0600] "GET 
>http://cgi.century-sex.com/topsites.cgi?kindza8 HTTP/1.0" 403 305
>Help!
>
>The other day, I found that people were using one of my machines as a web 
>proxy, without my permission of course.  So, I put put this in my http.conf 
>file:
><Directory proxy:*>
>        Order Deny,Allow
>        Deny from all
>        Allow from 192.168.1.0
></Directory>
>
>Well, the proxy requests have died off, but I'm still getting lots of 
>requests like these:
>
>212.244.171.228 - - [25/Oct/2002:15:45:22 -0600] "GET 
>http://generator.logic.pl/test.php HTTP/1.1" 403 292
>61.174.207.227 - - [25/Oct/2002:15:47:08 -0600] "GET 
>http://bserv.darkblue.com/code/18460/12751 HTTP/1.0" 403 300
>62.213.66.172 - - [25/Oct/2002:15:47:22 -0600] "GET 
>http://cgi.century-sex.com/topsites.cgi?kindza8 HTTP/1.0" 403 305
>
>What can I do to kill this stuff?
>
>-- 
>Mike Diehl
>PGP Encrypted E-mail preferred.
>Public Key via: http://dominion.dyndns.org/~mdiehl/mdiehl.asc
>
>
>---------------------------------------------------------------------
>The official User-To-User support forum of the Apache HTTP Server Project.
>See <URL:http://httpd.apache.org/userslist.html> for more info.
>To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
>   "   from the digest: users-digest-unsubscribe@httpd.apache.org
>For additional commands, e-mail: users-help@httpd.apache.org
>

(250) 655 - 9513 (PST Time Zone)

"Inquiry is fatal to certainty." -- Will Durant 





---------------------------------------------------------------------
The official User-To-User support forum of the Apache HTTP Server Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
   "   from the digest: users-digest-unsubscribe@httpd.apache.org
For additional commands, e-mail: users-help@httpd.apache.org


Mime
View raw message