|
|
@998
|
16 years |
geofft |
cert and vhost for schuh.mit.edu
|
|
|
@996
|
16 years |
mitchb |
i386_linux3 isn't actually twice as good just because we listed it ...
|
|
|
@994
|
16 years |
geofft |
i386_deb40 is better than i386_linux1
|
|
|
@992
|
16 years |
mitchb |
Don't let cron send mail if it can't touch the cron status file. ...
|
|
|
@988
|
16 years |
mitchb |
I should start reading root's mail. I will probably regret this.
|
|
|
@986
|
16 years |
quentin |
Add reverse-resolution for the backend IPs
|
|
|
@985
|
16 years |
quentin |
Map to local usernames, instead of to @scripts.mit.edu addresses (both ...
|
|
|
@984
|
16 years |
quentin |
Allow local part to contain @
|
|
|
@983
|
16 years |
quentin |
Support mail to foo@bar.scripts.mit.edu
|
|
|
@982
|
16 years |
quentin |
Check that cron can actually run things as users
|
|
|
@979
|
16 years |
geofft |
er, Fedora has a nontrivial vimrc
|
|
|
@978
|
16 years |
geofft |
undo miscommit
|
|
|
@977
|
16 years |
geofft |
Suppress writing .viminfo file
|
|
|
@975
|
16 years |
geofft |
eastgate.mit.edu SSL cert and conf [help.mit.edu #792732]
|
|
|
@974
|
16 years |
andersk |
Change sipb.mit.edu DocumentRoot to web_scripts/sipb.
|
|
|
@973
|
16 years |
geofft |
Change default cert to *.scripts except for 18.181.0.43.
|
|
|
@972
|
16 years |
geofft |
Uncommitted changes to httpd.conf.
These seem to involve performance ...
|
|
|
@971
|
16 years |
andersk |
Get rid of the custom sipb.mit.edu aliases.
|
|
|
@970
|
16 years |
andersk |
Change the IP for scripts.mit.edu and add scripts-vhosts.mit.edu.
|
|
|
@969
|
16 years |
andersk |
Add scripts-vhosts.
|
|
|
@968
|
16 years |
andersk |
Add 18.181.0.43 and scripts-vhosts.mit.edu.
|
|
|
@967
|
16 years |
geofft |
oops
|
|
|
@966
|
16 years |
geofft |
Add new scripts.mit.edu IP address
|
|
|
@963
|
16 years |
quentin |
Add vhost entry for picker.mit.edu so it picks up its cert
|
|
|
@962
|
16 years |
geofft |
SSL cert for picker.mit.edu
|
|
|
@961
|
16 years |
quentin |
Add scripts LDAP schema to the repo
|
|
|
@953
|
16 years |
andersk |
Revert r952.
|
|
|
@952
|
16 years |
quentin |
Serve sipb.mit.edu wiki content directly via Apache
|
|
|
@948
|
16 years |
quentin |
Try hostbased authentication in the client
|
|
|
@947
|
16 years |
quentin |
Add shosts.equiv for allowing logins
|
|
|
@946
|
16 years |
quentin |
Allow ssh hostbased authentication
|
|
|
@943
|
16 years |
geofft |
Hacks because Apache makes things hard at the .htaccess level.
|
|
|
@942
|
16 years |
geofft |
debathena.mit.edu vhost
|
|
|
@941
|
16 years |
geofft |
cert for debathena.mit.edu
|
|
|
@940
|
16 years |
geofft |
Whoops, forgot to reify-vhost.py sipb.mit.edu
|
|
|
@939
|
16 years |
geofft |
Setting tty modes failed: Invalid argument
|
|
|
@938
|
16 years |
andersk |
d_zroot.pl: Read .ssh/authorized_keys, not just authorized_keys2. ...
|
|
|
@915
|
16 years |
quentin |
Support mDNS on scripts
|
|
|
@914
|
16 years |
quentin |
Add if_err_eth2 to allowed munin commands (wtf?)
|
|
|
@910
|
16 years |
quentin |
configuration for nss-ldapd
|
|
|
@891
|
16 years |
quentin |
Add reuter to blocked mail accounts list, and prevent outbound mail
|
|
|
@890
|
16 years |
geofft |
I think this works better
|
|
|
@889
|
16 years |
quentin |
Fix geofft's typo
|
|
|
@888
|
16 years |
geofft |
Display failed root logins from off campus only at 10+10k attempts.
|
|
|
@887
|
16 years |
quentin |
Ignore non-fatal authentication failures
|
|
|
@886
|
16 years |
geofft |
sipb.mit.edu certificate
|
|
|
@885
|
16 years |
geofft |
and the vhosts they rode in on
|
|
|
@884
|
16 years |
geofft |
More noms.
|
|
|
@883
|
16 years |
geofft |
Re r882, make the resulting log zephyr public. (Thanks to price for ...
|
|
|
@879
|
16 years |
quentin |
Update nscd configuration to cache smarter
|
|
|
@878
|
16 years |
quentin |
Enable sshd verbose mode, so we can identify the public key used for login
|
|
|
@877
|
16 years |
quentin |
Provide commented-out non-nss_nonlocal region in nsswitch
|
|
|
@876
|
16 years |
quentin |
Uncommitted changes on b-k
|
|
|
@872
|
16 years |
geofft |
forgot to fix SSLVerifyclient on familynet
|
|
|
@870
|
16 years |
geofft |
yay SSL vhosts yay
|
|
|
@869
|
16 years |
geofft |
SSLVerifyClient optional on port 444. Oops. ^_^;;
|
|
|
@868
|
16 years |
quentin |
Ignore all partitions mounted under /mnt
|
|
|
@867
|
16 years |
quentin |
Update postfix configuration for version 2.5.1
|
|
|
@866
|
16 years |
quentin |
Use scripts yum repository (yay!)
|
|
|
@865
|
16 years |
quentin |
Use sudo to monitor hardware sensors for munin
|
|
|
@864
|
16 years |
quentin |
Ignore f7root partitions when checking disk space
|
|
|
@857
|
16 years |
quentin |
User is named scripts-build...
|
|
|
@856
|
16 years |
quentin |
Add .rpmmacros file for configuring the rpmbuild user
|
|
|
@854
|
16 years |
geofft |
Add a script to convert LDAP vhosts into <VirtualHost> blocks,
so it's ...
|
|
|
@853
|
16 years |
andersk |
Put the children out of their misery.
|
|
|
@847
|
16 years |
andersk |
Run munin as an unprivileged user with sudo for root access when necessary
|
|
|
@845
|
16 years |
andersk |
Use the local LDAP server (as is already the case on both servers).
|
|
|
@842
|
16 years |
andersk |
Run php directly from suexec, so php scripts don’t need to be executable.
|
|
|
@841
|
16 years |
geofft |
[help.mit.edu #694790]
|
|
|
@831
|
16 years |
andersk |
MaxRequestsPerChild < Ridiculous
|
|
|
@829
|
16 years |
geofft |
Debathena's reasoning seems sound enough. Add fuse_allow_other, which ...
|
|
|
@822
|
16 years |
geofft |
OM NOM NOM NOM CERTIFICATES
|
|
|
@821
|
16 years |
geofft |
I'm stupid.
|
|
|
@820
|
16 years |
geofft |
Add server certS for random-hall.mit.edu and mitsoc.mit.edu
|
|
|
@817
|
16 years |
geofft |
Added code to zephyr on OOM kills.
Also commented out a change by ...
|
|
|
@814
|
16 years |
geofft |
As Anders would say...
|
|
|
@813
|
16 years |
geofft |
This looks useful too
|
|
|
@811
|
16 years |
quentin |
Add localhost to the list of scripts names
|
|
|
@808
|
16 years |
geofft |
Probably a useful file to have.
|
|
|
@807
|
16 years |
quentin |
Add routes for sql via eth1
|
|
|
@804
|
16 years |
andersk |
We don't actually have a deb.gif.
|
|
|
@802
|
16 years |
andersk |
Allow a directory index of /__scripts/icons.
|
|
|
@801
|
16 years |
geofft |
/etc: Add pki/tls/certs/*.pem to the repository.
|
|
|
@799
|
16 years |
geofft |
Uncommitted changes from o-f: reboot on kernel panic (do we actually ...
|
|
|
@794
|
16 years |
quentin |
Update sudoers based on F9 template
|
|
|
@792
|
16 years |
quentin |
We don't share /tmp (eeew)
|
|
|
@791
|
16 years |
quentin |
Add bees-knees and cats-whiskers to /etc/hosts
|
|
|
@790
|
16 years |
geofft |
Oops, missed scripts-test's IP.
|
|
|
@789
|
16 years |
geofft |
Update names for scripts[1-4]
|
|
|
@787
|
16 years |
geofft |
Fix some stuff about our iptables rules, including:
- Remove ACCEPT ...
|
|
|
@784
|
16 years |
quentin |
Use explicit recipients for non-root log messages
|
|
|
@783
|
16 years |
geofft |
Make d_zroot.pl zephyr people in the .k5login in personals
|
|
|
@781
|
16 years |
quentin |
munin needs to start as root so it can setuid to run the script; it ...
|
|
|
@780
|
16 years |
geofft |
Munin should not run as root.
Remove munin's htpasswd file, since it's ...
|
|
|
@779
|
16 years |
geofft |
mod_status is a serious privacy violation.
|
|
|
@778
|
16 years |
geofft |
This list is a little better
|
|
|
@777
|
16 years |
geofft |
Add more sysnames to differentiate between OS releases, and add the ...
|
|
|
@775
|
16 years |
geofft |
Version nscd.conf, and reduce the negative TTL to 5 seconds to solve ...
|
|
|
@770
|
16 years |
quentin |
Stop more spew; parse ssh keys and identify the used key when ...
|
|
|
@768
|
16 years |
geofft |
Commented out scripts-spew. It is inappropriate to send syslogs about ...
|
|
|