hosted by liquidweb


Go Back   Web Hosting Talk : Web Hosting Main Forums : Dedicated Server : RaQ550 Security
Reply

Dedicated Server Current and past experiences with dedicated server providers, bandwidth, and server performance. Review managed and unmanaged dedicated web servers, discuss both Windows and Unix dedicated server solutions, and discuss dedicated hosting providers. If your service is unavailable, please click here.
Forum Jump

RaQ550 Security

Reply Post New Thread In Dedicated Server Subscription
 
Send news tip View All Posts Thread Tools Search this Thread Display Modes
  #1  
Old 04-16-2003, 11:23 AM
infosec_buda infosec_buda is offline
New Member
 
Join Date: Apr 2003
Posts: 3

RaQ550 Security


I'm new to the Cobalt, and have some questions on the security of the box.

1. Even though the box uses open-source programs (apache, openSSH, PHP, etc..) Sun recommends only installing their patches for known vulnerabilities. So, while a cobalt box show a sendmail version of 8.11.6 (big security concerns), Sun says it's patched with all updates. Does anyone have concerns over this, or had a box exploited due to a known vulnerabilty that Sun didn't release the patch in time for?

2. Does anyone patch their box with the latest open-source releases? How does that effect the admin interface?

I'm asking the questions from a security standpoint - I find it odd that Sun relies on stackguard to prevent any buffer overflow attacks, and doesn't keep up with the open-source versions of the software... Any insight or experience with cobalt security would be helpful.

Reply With Quote


Sponsored Links
  #2  
Old 04-28-2003, 10:37 PM
infosec_buda infosec_buda is offline
New Member
 
Join Date: Apr 2003
Posts: 3
Unhappy No help?

Can anyone point to me a good Cobalt security resource? I desperately need information on how to secure a RaQ550 and implement intrusion prevention and detection measures. Help!!!

Reply With Quote
  #3  
Old 04-28-2003, 11:47 PM
mgphoto mgphoto is offline
Web Hosting Master
 
Join Date: Aug 2002
Location: Atlanta, GA
Posts: 1,114
I'm going to make some comments here which will not be popular but they are my experience.

I have owned sun/cobalt servers since the RAQ3 At one time I owned 18 various Raqs.. There has never been a secure Raq since day 1. Often the patches are worst than the problem. Thankfully I am down to the last 3 customers that still use them. As soon as those customers leave I will throw the Raqs away. I won't even resell them as used gear.

Both Suns and Cobalt errors and misdeeds in the area of security are legendary. The only thing worst than a Raqs security issues is Suns support.

Take a look at any Cobalt forum. There are countless problems with the units and half the times the patches cause twice as many problems. I can’t count the number of times I have patched a Raq and 2 weeks later sun removes the patch and says “sorry about that”.

Not being rude to you here, but the only way to make a Raq secure on your network is to turn it off or sell it to someone else.

__________________
SiteSouth
Atlanta, GA and Las Vegas, NV. Colocation


Reply With Quote
Sponsored Links
  #4  
Old 04-29-2003, 09:32 AM
infosec_buda infosec_buda is offline
New Member
 
Join Date: Apr 2003
Posts: 3
Are RaQ's not secure due to the fact you must rely on Sun instead of just applying the open-source fixes and product updates? It seems to me your locked into the versions (sendmail, apache, PHP, etc..) that Sun provides, and since its all integrated into the pretty admin interface, you can't do much to implement newer, more secure versions of the software.

I certainly want to hear the horror stories, Michael! I'd also like to know what steps you attempted to take to lock the boxes down. Did you have too many exploits, and now your scrapping them to go with a more secure/robust solution?

Thanks Again, -Buddah

Reply With Quote
  #5  
Old 04-30-2003, 12:27 AM
mgphoto mgphoto is offline
Web Hosting Master
 
Join Date: Aug 2002
Location: Atlanta, GA
Posts: 1,114
We actually do securuity installs for hosts and private clients using portsentry, tripwire, mailscanner and about 3 other programs.

The problem with the Cobalts is that half the time they come out with a new patch that creates more holes than it fixes or crashes the machine. There was one thread on the Sun forum with about 100 posters saying the new patched locked up or crashed their server. It took sun over a week to take the patch down. Their only response was to go back to the old setup.

We've seen clients who have been hacked to the point that the server was usless and one case where one script kiddie was relaying spam email for four weeks before they found out he was in their server.

The Sun system was a grat concept when it first came out. However too many companies have surpassed them. The system is just to rigid and complex and the hackers and the mischief makers are ahead of them on the curve.

We have gone to straight forwrd linux boxes. It has it's own set of security problems but rarely is it a major issue to correct or work around,

__________________
SiteSouth
Atlanta, GA and Las Vegas, NV. Colocation


Reply With Quote
  #6  
Old 05-07-2003, 07:37 PM
Pingouin Pingouin is offline
WHT Addict
 
Join Date: Sep 2002
Location: Paris, France
Posts: 134
Talking

Quote:
Originally posted by mgphoto
As soon as those customers leave I will throw the Raqs away. I won't even resell them as used gear.
Mind throwing them in my direction or letting me know where you dispose of them ?

Seriously, I must say our own experience sadly makes me share these comments and opinions. We still use RAQs but also get standard Linux boxes and try to forget the fear of clicking on Sun Update and hoping no irreversible harm will happen to the GUIs.
Happened with the RAQ4s, happens with the RAQ 550 we now have...Sad but true.

Reply With Quote
  #7  
Old 05-09-2003, 05:42 PM
MGCJerry MGCJerry is offline
Web Hosting Master
 
Join Date: Jan 2002
Posts: 2,998
Quote:
Originally posted by mgphoto
Thankfully I am down to the last 3 customers that still use them. As soon as those customers leave I will throw the Raqs away. I won't even resell them as used gear.
Agreed with Pingouin, you wouldnt mind sending one off my way also? Find out how much shipping is and I'll come up with shipping if you really want to get rid of one.

I'm looking into setting up a easy to use server for my LAN so I can develop my scripts and so I can get apache and MySQL off my computer.

__________________
Don't like what I say? Ignore me because it will be the only way you can shut me up.

Reply With Quote
  #8  
Old 05-14-2003, 04:53 PM
NyteOwl NyteOwl is offline
ThirtySx Bits Forever!
 
Join Date: Jul 2001
Location: Canada
Posts: 1,284
Quote:
Originally posted by mgphoto
As soon as those customers leave I will throw the Raqs away. I won't even resell them as used gear.
Yes throw a couple this way as well

__________________
"Obsolesence is just a lack of imagination."

Reply With Quote
Reply

Related posts from TheWhir.com
Title Type Date Posted
Secure128 Launches IT Security Services, Names VP of IT Security Sales Web Hosting News 2012-07-13 12:51:15
Cloud Security Firm nCircle Joins Cloud Security Alliance Web Hosting News 2012-01-12 15:35:20
McAfee Report Finds Management Out of Touch with Data Center Security Web Hosting News 2011-10-03 17:33:23
Web Host Go Daddy Implements Trend Micro Deep Security Solution Web Hosting News 2011-08-17 16:21:53
CloudPassage Joins Cloud Security Alliance Web Hosting News 2011-06-09 20:58:30


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes
Postbit Selector

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump
Login:
Log in with your username and password
Username:
Password:



Forgot Password?
Advertisement:
Web Hosting News:



 

X

Welcome to WebHostingTalk.com

Create your username to jump into the discussion!

WebHostingTalk.com is the largest, most influentual web hosting community on the Internet. Join us by filling in the form below.


(4 digit year)

Already a member?