Re: Suspiciously Weird Apache Log -- HELP

2003-08-31 Thread Reuben D. Budiardja
On Saturday 30 August 2003 09:34 pm, Jeffrey F. Lawhorn wrote: > Yes, you're fine. I did some tests today and I get the same behavior. The > logs look like it did a proxy transfer, but in reality it just sent my test > homepage. Allright. Thanks for the info and confirmation, Mike and Jeff. RD

Re: Suspiciously Weird Apache Log -- HELP

2003-08-31 Thread Jeffrey F. Lawhorn
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Content-Type: message/rfc822 X-Mailer: exmh version 2.6.3 04/04/2003 with nmh-1.0.4 To: [EMAIL PROTECTED] Subject: Re: Suspiciously Weird Apache Log -- HELP In-Reply-To: Your message of "Sat, 30 Aug 2003 21:00:48 EDT." <[EM

Re: Suspiciously Weird Apache Log -- HELP

2003-08-31 Thread Reuben D. Budiardja
On Saturday 30 August 2003 10:11 am, MKlinke wrote: > On Saturday 30 August 2003 01:39, Reuben D. Budiardja wrote: > > First of all, is this dangerous and make my machine vulnerable? > > > > RDB > > You should easily be able to duplicate the entry by telnetting into your > web server on port 80 and

Re: Suspiciously Weird Apache Log -- HELP

2003-08-30 Thread MKlinke
On Saturday 30 August 2003 01:39, Reuben D. Budiardja wrote: > First of all, is this dangerous and make my machine vulnerable? > > RDB You should easily be able to duplicate the entry by telnetting into your web server on port 80 and issue the same or similar GET request. In my case the URL req

Re: Suspiciously Weird Apache Log -- HELP

2003-08-30 Thread Reuben D. Budiardja
First of all, is this dangerous and make my machine vulnerable? RDB -- Reuben D. Budiardja Department of Physics and Astronomy The University of Tennessee, Knoxville, TN - /"\ ASCII Ribbon Campaign against HTML \ / email and proprietary forma

Re: Suspiciously Weird Apache Log -- HELP

2003-08-30 Thread Reuben D. Budiardja
On Saturday 30 August 2003 01:40 am, Jeffrey F. Lawhorn wrote: > H were these always commented out at install time or at some later > time? If at a later time was apache restarted since the config changed? The config has never been changed since install. Apache was recently restarted (

Re: Suspiciously Weird Apache Log -- HELP

2003-08-30 Thread Jeffrey F. Lawhorn
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Content-Type: message/rfc822 X-Mailer: exmh version 2.6.3 04/04/2003 with nmh-1.0.4 To: [EMAIL PROTECTED] Subject: Re: Suspiciously Weird Apache Log -- HELP In-Reply-To: Your message of "Sat, 30 Aug 2003 01:35:08 EDT." <[EM

Re: Suspiciously Weird Apache Log -- HELP

2003-08-30 Thread Reuben D. Budiardja
On Saturday 30 August 2003 01:24 am, Jeffrey F. Lawhorn wrote: >In message <[EMAIL PROTECTED]>, "Reuben D. Budiardja" said: > >I saw this in my http access_log. What does this mean? > > > >61.170.193.85 - - [30/Aug/2003:00:58:35 -0400] "GET > > http://www.sina.com.cn/ HTTP/1.1" 200 5809 > > > >I s

Re: Suspiciously Weird Apache Log -- HELP

2003-08-30 Thread Jeffrey F. Lawhorn
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Content-Type: message/rfc822 X-Mailer: exmh version 2.6.3 04/04/2003 with nmh-1.0.4 To: [EMAIL PROTECTED] Subject: Re: Suspiciously Weird Apache Log -- HELP In-Reply-To: Your message of "Sat, 30 Aug 2003 01:04:44 EDT." <[EM

Re: Suspiciously Weird Apache Log -- HELP

2003-08-30 Thread Ashley M. Kirchner
Reuben D. Budiardja wrote: 61.170.193.85 - - [30/Aug/2003:00:58:35 -0400] "GET http://www.sina.com.cn/ HTTP/1.1" 200 5809 Do you have an open proxy? Close it. -- H| I haven't lost my mind; it's backed up on tape somewhere. +

Suspiciously Weird Apache Log -- HELP

2003-08-30 Thread Reuben D. Budiardja
I saw this in my http access_log. What does this mean? 61.170.193.85 - - [30/Aug/2003:00:58:35 -0400] "GET http://www.sina.com.cn/ HTTP/1.1" 200 5809 I saw no corresponding error log. Any help will be greatly appreciated. Thanks RDB -- Reuben D. Budiardja Department of Physics and Astronom

Log help

2001-02-27 Thread Nick Ciantro
Hi all, just got port sentry up adn running. Couls someone help with what the folowing logs could be referring to: 1. Feb 25 04:18:53 www named[430]: unapproved update from [X.X.X.X].1656 for domain.com 2. Feb 25 04:45:04 www telnetd[14561]: ttloop: read: Broken pipe The first one appear i