<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for LPE</title>
	<atom:link href="http://mute.nu/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://mute.nu</link>
	<description>Random ramblings about things related to the digital world</description>
	<lastBuildDate>Thu, 01 Sep 2011 15:20:19 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>Comment on IIS 7.5 bug in &#8220;IP Address and Domain Restrictions&#8221; module by GVD</title>
		<link>http://mute.nu/2011/iis-7-5-bug-in-ip-address-and-domain-restrictions-module/#comment-11</link>
		<dc:creator>GVD</dc:creator>
		<pubDate>Thu, 01 Sep 2011 15:20:19 +0000</pubDate>
		<guid isPermaLink="false">http://mute.nu/?p=233#comment-11</guid>
		<description>Posted @ http://forums.iis.net/p/1181259/1994533.aspx#1994533

Version: IIS 7.0 &amp; 7.5
Module or component: IPv4 Address and Domain Restriction Module
Platform / Operating System: Windows Server 2008 &amp; 2008 R2
Type of error: Bug / Interpretation Error
Difficulty to reproduce: Easy, tested on multiple systems.
Summary:
- Entering a number from 0 to 32 in the netmask field will result in allowing all traffic even when default policy is set to Deny.
- Entering any invalid netmask will result in allowing all traffic even when default policy is set to Deny.
Steps to reproduce:
1) Chose “Deny” as the default for &quot;Access for unspecified clients&quot; under “Edit Feature Settings”
2) Add Allow Entry -&gt; Chose IPv4 address range (instead of a specific address) -&gt; Enter &quot;10.0.0.0&quot; (or any appropriate address in your test) and then a number from 0 to 32 in the netmask field. In our example enter 8. Click OK.
3) Under 7.0, the result will show as 10.0.0.0(0.0.0.8) and under 7.5, the result will show as 10.0.0.0(8). The former is an invalid netmask. The latter could be interpreted as /8 and thus be valid. However, 7.0 nor 7.5 actually work in the expected way. Your server will now accept any request for the supposedly denied resource.
Work around: Use the full and valid netmask (255.0.0.0 to 255.255.255.255) and the restriction module will work correctly.
Severity: Severe - Due to the nature of the bug, restricting access to a specific resource can fail and a wrong entry can even invalidate other correct deny/allow rules.</description>
		<content:encoded><![CDATA[<p>Posted @ <a href="http://forums.iis.net/p/1181259/1994533.aspx#1994533" rel="nofollow">http://forums.iis.net/p/1181259/1994533.aspx#1994533</a></p>
<p>Version: IIS 7.0 &amp; 7.5<br />
Module or component: IPv4 Address and Domain Restriction Module<br />
Platform / Operating System: Windows Server 2008 &amp; 2008 R2<br />
Type of error: Bug / Interpretation Error<br />
Difficulty to reproduce: Easy, tested on multiple systems.<br />
Summary:<br />
- Entering a number from 0 to 32 in the netmask field will result in allowing all traffic even when default policy is set to Deny.<br />
- Entering any invalid netmask will result in allowing all traffic even when default policy is set to Deny.<br />
Steps to reproduce:<br />
1) Chose “Deny” as the default for &#8220;Access for unspecified clients&#8221; under “Edit Feature Settings”<br />
2) Add Allow Entry -&gt; Chose IPv4 address range (instead of a specific address) -&gt; Enter &#8220;10.0.0.0&#8243; (or any appropriate address in your test) and then a number from 0 to 32 in the netmask field. In our example enter 8. Click OK.<br />
3) Under 7.0, the result will show as 10.0.0.0(0.0.0.8) and under 7.5, the result will show as 10.0.0.0(8). The former is an invalid netmask. The latter could be interpreted as /8 and thus be valid. However, 7.0 nor 7.5 actually work in the expected way. Your server will now accept any request for the supposedly denied resource.<br />
Work around: Use the full and valid netmask (255.0.0.0 to 255.255.255.255) and the restriction module will work correctly.<br />
Severity: Severe &#8211; Due to the nature of the bug, restricting access to a specific resource can fail and a wrong entry can even invalidate other correct deny/allow rules.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How to manage and monitor your raid using mdadm by frank</title>
		<link>http://mute.nu/2011/how-to-manage-and-monitor-your-raid-using-mdadm/#comment-9</link>
		<dc:creator>frank</dc:creator>
		<pubDate>Thu, 19 May 2011 08:53:51 +0000</pubDate>
		<guid isPermaLink="false">http://mute.nu/?p=203#comment-9</guid>
		<description>fint de där</description>
		<content:encoded><![CDATA[<p>fint de där</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Get proper colors on directories in Ubuntu 10.10 by Fake</title>
		<link>http://mute.nu/2010/get-proper-colors-on-directories-in-ubuntu-10-10/#comment-7</link>
		<dc:creator>Fake</dc:creator>
		<pubDate>Wed, 08 Dec 2010 15:55:15 +0000</pubDate>
		<guid isPermaLink="false">http://mute.nu/?p=81#comment-7</guid>
		<description>slash ignore</description>
		<content:encoded><![CDATA[<p>slash ignore</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Simple query for backing up all MsSQL databases by mer</title>
		<link>http://mute.nu/2010/simple-query-for-backing-up-all-mssql-databases/#comment-6</link>
		<dc:creator>mer</dc:creator>
		<pubDate>Fri, 03 Dec 2010 14:39:54 +0000</pubDate>
		<guid isPermaLink="false">http://mute.nu/?p=6#comment-6</guid>
		<description>If you have long database names you might need to increase @name from 50 to something bigger.</description>
		<content:encoded><![CDATA[<p>If you have long database names you might need to increase @name from 50 to something bigger.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Get proper colors on directories in Ubuntu 10.10 by mer</title>
		<link>http://mute.nu/2010/get-proper-colors-on-directories-in-ubuntu-10-10/#comment-2</link>
		<dc:creator>mer</dc:creator>
		<pubDate>Fri, 03 Dec 2010 13:09:35 +0000</pubDate>
		<guid isPermaLink="false">http://mute.nu/?p=81#comment-2</guid>
		<description>RedHat: sed -i &quot;s/^DIR 01;34/DIR 00;34/&quot; /etc/DIR_COLORS</description>
		<content:encoded><![CDATA[<p>RedHat: sed -i &#8220;s/^DIR 01;34/DIR 00;34/&#8221; /etc/DIR_COLORS</p>
]]></content:encoded>
	</item>
</channel>
</rss>

