LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 10-11-2003, 10:37 AM   #1
Soggy
LQ Newbie
 
Registered: Oct 2003
Location: australia
Distribution: Mandrake 9.1
Posts: 28

Rep: Reputation: 15
Unhappy NEED HELP with ----draksec---- it wont let me change any thing


i am on mandrake linux 9.1 on KDE and i need 2 change some things in draksec when i go 2 change any thing and then save it it just gos back to default and i login as root and try it and it dose the same thing i can't do something i need 2 do it just wan't let me do it with out changing it so if u have any ideas can u tell me plzzzzzz
 
Old 10-12-2003, 12:15 AM   #2
chort
Senior Member
 
Registered: Jul 2003
Location: Silicon Valley, USA
Distribution: OpenBSD 4.6, OS X 10.6.2, CentOS 4 & 5
Posts: 3,660

Rep: Reputation: 76
I had the same problem with draksec, so I just gave up and edited the config files directly. They're in /usr/share/msec.
 
Old 10-12-2003, 05:12 AM   #3
Soggy
LQ Newbie
 
Registered: Oct 2003
Location: australia
Distribution: Mandrake 9.1
Posts: 28

Original Poster
Rep: Reputation: 15
thanx man bigg help
 
Old 10-13-2003, 10:35 PM   #4
Read_Icculus
Member
 
Registered: Oct 2002
Distribution: MDK 9.2, Debian
Posts: 74

Rep: Reputation: 16
I had the exact same problem as both of you, apparently it's been an issue for lots of Mandrake users, (or at least the ones who figured out that DrakSec sucked). DrakSec only works if you want to change the security level to "high", "higher" or one of those settings. The detailed options that are in DrakSec don't work at all. Supposedly this bug is the cause - http://qa.mandrakesoft.com/show_bug.cgi?id=4629

Also you certainly can edit the files in /usr/share/msec to fix this problem, except that the files in this folder are mostly scripts and things for msec that really shouldn't be futzed with just to change your msec config, (just MO). I'd also hate to be a newbie to linux and have to figure out what I'm supposed to edit amongst the pile of stuff in that folder. For an easier alternative check this out - msec reads the files in /etc/security/msec to override any settings that are currently in use, (the settings that can't be changed via DrakSec other than to change the security level from standard, to high, or whatnot). So if you make level.local and perm.local files in the /etc/security/msec folder you can edit those files with the syntax from "man mseclib" and msec will work like a champion. I personally find the type of editing that you need to do on the security.conf, level.local files is a lot easier to do than getting into all the scripts in /usr/share/msec. After you write your config files you should run the "msec" command to make the changes.

Or if you don't want to edit config files and all that I suggest bumping your DrakSec level up to "high" at least, as I find the msec options for that level to be pretty good for my needs without being overly paranoid for the average user. In any case I hope that Mandrake gets their act together and fixes this damn bug. Users who employ DrakSec and set important options like "allow_remote_root_login" might currently have a faulty impression of what their system's security is. I know that I assumed DrakSec was working until I found out otherwise. "allow_x_server_to_listen = never" my ass.
 
Old 10-14-2003, 12:39 AM   #5
chort
Senior Member
 
Registered: Jul 2003
Location: Silicon Valley, USA
Distribution: OpenBSD 4.6, OS X 10.6.2, CentOS 4 & 5
Posts: 3,660

Rep: Reputation: 76
By the way, overall I find msec to be very useful, it just takes a lot of babysitting I submitted at least one bug report (with fix included!) to the developer and never heard a peep back. Oh well.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
screen resolution wont change jimmyrules712 Linux - Newbie 6 08-18-2005 02:35 PM
Installation wont have me change cds therefore i just get the OS no programs Bombo Linux - Software 2 03-20-2005 07:44 PM
Installation wont have me change cds therefore i just get the OS and some programs Bombo Linux - Newbie 3 03-20-2005 02:27 PM
GNOME 2.2 Themes wont change completely in Mandrake 9.1 pHaT tAcO Linux - Software 1 11-25-2003 03:33 AM
That X Thing wont install in 8.1 mandrake An_Amazing_Taco Linux - Software 3 01-26-2002 10:34 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 03:11 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration