NetBSD Problem Report #40340

From www@NetBSD.org  Wed Jan  7 19:00:13 2009
Return-Path: <www@NetBSD.org>
Received: from mail.netbsd.org (mail.netbsd.org [204.152.190.11])
	by narn.NetBSD.org (Postfix) with ESMTP id 7888463B8C9
	for <gnats-bugs@gnats.netbsd.org>; Wed,  7 Jan 2009 19:00:13 +0000 (UTC)
Message-Id: <20090107190013.4030E63B8BA@narn.NetBSD.org>
Date: Wed,  7 Jan 2009 19:00:13 +0000 (UTC)
From: eravin@panix.com
Reply-To: eravin@panix.com
To: gnats-bugs@NetBSD.org
Subject: inetd does not log IP address of remote client
X-Send-Pr-Version: www-1.0

>Number:         40340
>Category:       bin
>Synopsis:       inetd does not log IP address of remote client
>Confidential:   no
>Severity:       non-critical
>Priority:       medium
>Responsible:    bin-bug-people
>State:          closed
>Class:          change-request
>Submitter-Id:   net
>Arrival-Date:   Wed Jan 07 19:05:00 +0000 2009
>Closed-Date:    Mon Dec 14 06:57:13 +0000 2009
>Last-Modified:  Mon Dec 14 06:57:13 +0000 2009
>Originator:     Ed Ravin
>Release:        5.0
>Organization:
PANIX Public Access Networks
>Environment:
NetBSD panix5.panix.com 5.0_BETA NetBSD 5.0_BETA (PANIX-XEN3U-USER-pae) #1: Thu Nov 13 17:26:16 EST 2008  root@juggler.panix.com:/misc1/obj/misc2/devel/netbsd/5-beta/src/sys/arch/i386/compile/PANIX-XEN3U-USER-pae i386

>Description:
inetd does not log the IP address of the remote client making the connection, only the hostname:

Jan  1 13:00:04 logsources@panix5 inetd[740]: connection from panix1.panix.com, service finger (tcp)

This is insufficient for security review, since a day later (or even an hour later) the lookup of a hostname could have changed.
>How-To-Repeat:

>Fix:
add the IP address in [ ] brackets as most programs do.

>Release-Note:

>Audit-Trail:
From: Christos Zoulas <christos@netbsd.org>
To: gnats-bugs@gnats.NetBSD.org
Cc: 
Subject: PR/40340 CVS commit: src/usr.sbin/inetd
Date: Thu,  8 Jan 2009 18:29:43 +0000 (UTC)

 Module Name:	src
 Committed By:	christos
 Date:		Thu Jan  8 18:29:43 UTC 2009

 Modified Files:
 	src/usr.sbin/inetd: inetd.c

 Log Message:
 PR/40340: Ed Ravin: Print the numeric address in addition to the hostname.


 To generate a diff of this commit:
 cvs rdiff -r1.108 -r1.109 src/usr.sbin/inetd/inetd.c

 Please note that diffs are not public domain; they are subject to the
 copyright notices on the relevant files.

State-Changed-From-To: open->closed
State-Changed-By: dholland@NetBSD.org
State-Changed-When: Mon, 14 Dec 2009 06:57:13 +0000
State-Changed-Why:
Christos applied the second patch in May.


>Unformatted:

NetBSD Home
NetBSD PR Database Search

(Contact us) $NetBSD: query-full-pr,v 1.39 2013/11/01 18:47:49 spz Exp $
$NetBSD: gnats_config.sh,v 1.8 2006/05/07 09:23:38 tsutsui Exp $
Copyright © 1994-2007 The NetBSD Foundation, Inc. ALL RIGHTS RESERVED.