FYI Incredible PBX Security Audit Results

chris_c_

Active Member
Joined
Aug 19, 2010
Messages
509
Reaction score
67

wardmundy

Nerd Uno
Joined
Oct 12, 2007
Messages
19,201
Reaction score
5,219
I tried this out just now, and immediately found another couple of bugs in two shell script files, which pertain to this iptables feature.
The shell script code, which is supposed to detect when a failure occurs, fails to detect that failure!
I fixed these bugs on the github repository, so if you'd like to see for yourself, it's up there and open to anyone

Sorry. Don't know where "the github repository" is. Is there documentation identifying where the bugs are and how they are addressed? If so, we'll be happy to have a look.
 

wardmundy

Nerd Uno
Joined
Oct 12, 2007
Messages
19,201
Reaction score
5,219
Thanks. The add-ip issue had already been addressed. We've also fixed a problem in del-acct as well. You might want to freshen your repo. Appreciate your help though.
 

chris_c_

Active Member
Joined
Aug 19, 2010
Messages
509
Reaction score
67
Thanks. The add-ip issue had already been addressed. We've also fixed a problem in del-acct as well. You might want to freshen your repo. Appreciate your help though.
You missed the bug, and the fix. Look again, a little more closely.

EDIT: Your code logic for the iptables restart was always coming up as a false positive ie "no failure" even when the iptables restart did indeed fail...
 
Last edited:

Members online

No members online now.

Forum statistics

Threads
25,810
Messages
167,752
Members
19,240
Latest member
nikko
Get 3CX - Absolutely Free!

Link up your team and customers Phone System Live Chat Video Conferencing

Hosted or Self-managed. Up to 10 users free forever. No credit card. Try risk free.

3CX
A 3CX Account with that email already exists. You will be redirected to the Customer Portal to sign in or reset your password if you've forgotten it.
Top