Red Hat DIRECTORY 8.1 RELEASE NOTES Installationsanleitung Seite 21

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 33
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 20
process use an excessive amount of CPU time and system memory by crafting HT T P requests with a
specially-crafted Range header. Detailed information is available in Bugzilla CVE-2011-3192 and through
the Apache project security advisory at http://httpd.apache.org/security/CVE-2011-3192.txt.
On Red Hat Enterprise Linux systems, this problem can be adjusted by installing Errata RHSA-
2011:1245, which updates the Apache HT T P server packages without requiring any changes to the
Directory Server or Admin Server configuration.
The Admin Server HT TP server is included with the Solaris Red Hat Directory Server packages.
Because neither Admin Server nor Directory Server use ranges, the Range headers in requests can be
ignored without affecting their performance. On Solaris systems:
1. Open the Admin Server HT TP configuration file:
vim /etc/dirsrv/admin-serv/httpd.conf
2. For every module directive, add this line:
LoadModule headers_module /opt/fortitude/m odules/mod_headers.so
3. After the modules section, add this line to disable ranges for the Apache HT TP server:
RequestHeader unset Range
RequestHeader unset Request-Range
4. Save the file.
5. Restart the Admin Server.
/etc/init.d/disrv-admin restart
8. Errata Updates
The following errata have been issued for Red Hat Directory Server, fixing important security and
performance issues. T he complete list of errata issued for Red Hat Directory Server 8.2 is available
through Red Hat Network:
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 4
Red Hat Directory Server 8.2 Red Hat Directory Server 8.2 Release Notes
18
Seitenansicht 20
1 2 ... 16 17 18 19 20 21 22 23 24 25 26 ... 32 33

Kommentare zu diesen Handbüchern

Keine Kommentare