[tech] OpenSSL "Heartbleed" Issues

Ian McKellar ian at mckellar.org
Tue Apr 15 00:56:31 WST 2014


Is there a scanner we can run against the VMs? Actually generally are there
vulnerability scanners we can run automatically against the VMs? Seems like
anything unpatched could be warned & then firewalled to the UCC. Could be a
fun security project for someone who was so interested.

Ian
On Mon Apr 14 2014 at 9:46:33 AM, Sam Moore <matches at ucc.asn.au> wrote:

> On 10/04/14 11:44, Sam Moore wrote:
> > Servers
> > -------
> >
> >   From #ucc I gather that [DAA] already updated all our servers.
> >
> > But if you have a collocated machine you need to update your openssl
> > libraries yourself.
> >
>
> A reminder to people that yes you actually do need to update ssl on your
> VM or collocated machine or bad things can (and did) happen and we will
> kill it with fire. Or it will kill us. But hopefully the former.
>
> [SZM]
> _______________________________________________
> List Archives: http://lists.ucc.gu.uwa.edu.au/pipermail/tech
>
> Unsubscribe here: http://lists.ucc.gu.uwa.edu.
> au/mailman/options/tech/yakk%40ucc.gu.uwa.edu.au
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.ucc.gu.uwa.edu.au/pipermail/tech/attachments/20140414/85d3be73/attachment.htm 


More information about the tech mailing list