Help to secure my FreeBSD/Apache installation

Julian H. Stacey jhs at berklix.com
Wed Jul 17 21:48:43 UTC 2013


Hi, Reference:
> From:		"Julian H. Stacey" <jhs at berklix.com> 
> Date:		Wed, 17 Jul 2013 23:38:51 +0200 

"Julian H. Stacey" wrote:
> Hi, Reference:
> > From:		Andy Wodfer <wodfer at gmail.com> 
> > Date:		Wed, 17 Jul 2013 23:11:27 +0200 
> 
> Andy Wodfer wrote:
> > Hi everybody!
> > 
> > I'm running a server on FreeBSD 8.1 STABLE (apache 2.2.16, mysql 5.1.50,
> 
> To quote front page of http://www.freebsd.org:
>     * Production: 9.1
>     * Legacy: 8.4
> My net. con. is too slow right now to check this for you, but look
> yourself, I bet FreeBSD-8.1 was long ago declared by security-officer@
> as not supported as too old,

Re version numbers:
  Your 8.1 STABLE does not exist !
  Only 8 Stable, 8.1-RELEASE, 8.2-RELEASE, etc.
  
  http://www.freebsd.org/security/unsupported.html
  8.1 & 8.2 not supported. 
  
  http://www.freebsd.org/security/index.html#sup
  
  9.1-RELEASE has /usr/ports/www/apache22/work/httpd-2.2.23

> Upgrade to 8.4 or 9.1, 
> Reinstall new versions of all ports,
> cd /usr/ports/ports-mgmt/portaudit  ; make install ; rehash ; portaudit ; 
> # (Which is in 9.1 & not in 8.2) 
> port-audit

Cheers,
Julian
-- 
Julian Stacey, BSD Unix Linux C Sys Eng Consultant, Munich http://berklix.com
 Reply below not above, like a play script.  Indent old text with "> ".
 Send plain text.  No quoted-printable, HTML, base64, multipart/alternative.


More information about the freebsd-questions mailing list