penk: (Default)
[personal profile] penk
*RRRING*

"yegods, its 4am. it MUST be a wrong number."

*kerclick* "mrrphllo?"

"Dave, its dave! I need you on the meetingplace right now. There's a sendmail attack going on now, and we need to patch our servers up to fix the latest vulnerability. That patch you did to [main test environment]? I need tht to go to production right now."

"mrarem. huh. what? i didn't patch [main test environment]"

"You didnt'? I thought you did! Okay, sorry to wake you up, can you dial in to Meetingplace? [our conferencing system]"

"uhh. yeah. k. sure. uh. gimme a few."

*click*

*stagger* *thump* "SWEET JUMPIN JESUS, it _IS_ 4am."

Of course, somewhere around here while getting something warm on and going downstaris I had the evil nightmare thought that I might have dreamed that whole sequence, and when I dialled in, no one would be there.

Alas, such was not the case. 3 hours later, we're patched up, mostly, and I've got a sendmail cf headache.

The good news - during the call, the [my company] corporate security dude did the "Why are you guys still running sendmail? We've all switched to linux boxes and Postscript"

Hot damn 8)

Date: 2003-03-08 06:13 am (UTC)
From: [identity profile] steam.livejournal.com
Postscript? Er. Postfix, maybe? I mean, I've written postscript before, but I'd like to see how you've implemented an MTA in it. ;-)

GAH. yah.

Date: 2003-03-08 08:10 am (UTC)
From: [identity profile] penk.livejournal.com
Wow. Good thing I didn't do anything important, like modify running production machines or anything.

Yes, I meant postfix ;)

sendmail delenda est

Date: 2003-03-08 10:02 am (UTC)
From: [identity profile] dr-memory.livejournal.com
Gah, dude, I am so, so sorry. Such are the vagaries of a sysadmin's life.

At least it sounds like you have implicit go-ahead to give your place a sendmailectomy, which can only be good.

My current top list of shoot-on-sight programs that people insist on running for no discernable reason:

5. php-nuke
4. qpopper
3. BIND
2. majordomo 1.x
1. sendmail

It just boggles my mind that this crap is still in production use in 2003. It seems no amount of pain will cause some organizations to learn...

Date: 2003-03-08 12:00 pm (UTC)
beowabbit: (helmet bunny beowabbit)
From: [personal profile] beowabbit
Um, well, if your MTA's written in Postscript, it may not be very secure, but it's also not likely to be cracked by joe random scriptkiddy's leet rootkit. :-) (Ya know, I wonder if anybody's actually ever written an MTA in Postscript.)

I lucked out - currently Postfix at work (maybe Exim soon), and Exim at home.

Postfix yummy

Date: 2003-03-08 09:28 pm (UTC)
From: [identity profile] mr-niggle.livejournal.com
We're running it in conjunction with spam assassin to protect our lame-o exchange servers from a lunchtime serving of spam. Very nice--not like the mean nasty sendmail.

Glad I got to sleep through this one (though I didn't get to sleep through an iManage upgrade that kept me at work till the wee hours last night.

Ah well.

Peace Out.

Huhwhat?

Date: 2003-03-09 02:59 pm (UTC)
From: [identity profile] sarahshevett.livejournal.com
uh what hey? "TED.........what does this mean?"
Oh
Oh I understand, kinda.

Huhwhat?

Date: 2003-03-09 03:01 pm (UTC)
From: [identity profile] sarahshevett.livejournal.com
uh what hey? "TED.........what does this mean?"
Oh
Oh I understand, kinda.
Ok sendmail attack.
At least when you get an emergency call you can stay in your pajamas and usually body fluids or machinery isn't involved.
I say usually

October 2022

S M T W T F S
      1
2345678
9101112131415
16171819202122
2324 2526272829
3031     

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Apr. 7th, 2026 10:26 pm
Powered by Dreamwidth Studios