No subject


Fri Mar 27 23:51:30 EDT 2009


 

From: olug-colo-bounces at olug.org [mailto:olug-colo-bounces at olug.org] On
Behalf Of Adam Lassek
Sent: Saturday, June 06, 2009 12:54 AM
To: Olug Community colo project
Subject: Re: [olug-colo] Security services

 

What exactly would constitute an abuse of WebDAV?

On Fri, Jun 5, 2009 at 8:48 PM, Aric Aasgaard <aric at omahax.com> wrote:

I am not a paranoid security geek but I've used hostgator.com for several
years and love it.
I have about 20 sites hosted on one shared account.
It's $12.95 a month for unlimited everything.
They offer a selection of 3 different webmail clients one of which is horde.
They have:
IMAP
SSH
Private SSL
Dedicated static IP
Anonymous FTP

They say they don't offer WebDAV because people abuse it; However, I have
it.  It might not have all the geeky features possible.  They call it
"webfolders" in the cpanel.
I am using "webfolders" for publishing/sharing icalendars from sunbird and
outlook 2007.
They offer ruby on rails and python(no zope)
You can customize your php.ini
You can install pear modules.

I have cURL scraping cron jobs.
I even used a perl cgi script that lets me broadcast live TV/Radio stations.
It works well but they have been good to me and I don't want to be "that
guy".

They have excellent support staff.  Last time I called them was over a year
ago to ask if I could get them to give me the ability to use cURL from a
bash shell.  He said "Yes, hold on" I heard some fast pattering on a
keyboard and he said "done, is there anything else I can help you with?"

If you need more than that I would rent a dedicated server from
theplanet.com
https://www.theplanet.com/servers/
If you talk to a rep you can get a better deal than what is listed.  They
doubled my ram and upped my monthly bandwidth to 5TB for free.  You can get
a quad core Xeon for under $200 a month.

My thought are that if you are hosting more than hostgator can handle you
should be charging your clients enough to justify a dedicated box at
theplanet.  My hostgator account's server is in theplanet's datacenter.

If you want windows hosting I would recommend powerdnn.com.  I was at their
offices today and they seem to have a top notch operation.

-Aric


-----Original Message-----
From: olug-colo-bounces at olug.org [mailto:olug-colo-bounces at olug.org] On
Behalf Of Luke-Jr
Sent: Friday, June 05, 2009 3:43 PM
To: Olug Community colo project
Subject: Re: [olug-colo] Security services

He described what I can only summarise as "Webhosting++":

[13:50:56] <alexpgates> Can anyone recommend an alternative to Dreamhost for
a
design firm in Omaha? A local hosting company would be ideal... but we are
open to anything. We aren't unix admins... we just need something reliable
that allows us to do simple things like ssh, run soem cron jobs, etc....
something that will grow as we grow. Any suggestions?
[13:53:50] <luke-jr> alexpgates: sounds like you want a managed VPS
[13:53:53] <luke-jr> which isn't cheap
[13:54:34] <alexpgates> a managed VPS sounds great.... define "isn't cheap"
[13:56:40] <alexpgates> we just switched to a dreamhost vps - terrible
situation.
[13:57:05] <TC-jmhobbs> I know that aplus has a managed VPS type thing,
can't
attest to it though.
[13:57:28] <luke-jr> alexpgates: a managed VPS including Apache management
from me is $61/mo at the cheapest
[13:58:00] <luke-jr> http://lightfoot.dashjr.org/?page=vps
[14:01:48] <luke-jr> alexpgates: might want to just wait for the OLUG
datacenter to start
[14:02:14] <luke-jr> we can probably get OLUG guys a better deal that way
[14:03:10] <alexpgates> luke-jr: your prices are very reasonable....  when
is
the datacenter going to be available?
[14:03:30] <luke-jr> a few of the guys checked out a location on M St the
other day, not sure what the results are
[14:04:47] <alexpgates> we don't mind paying more... because we aren't
equipped for "Software upgrades, security, and similar proactive services"
being our responsibility.


On Friday 05 June 2009 02:12:19 pm Curtis LaMasters wrote:
> What security does he need (IDS, IPS, IPTables, etc?).  I could
> probably accommodate.
>
> Curtis LaMasters
> http://www.curtis-lamasters.com
> http://www.builtnetworks.com
>
> On Fri, Jun 5, 2009 at 2:10 PM, Luke-Jr<luke at dashjr.org> wrote:
> > A guy in #OmahaLUG is looking for managed VPS hosting, but he needs
> > proper server security to be included in the management. That's really
> > not my area; is anyone here a security expert and willing to sell
support
> > for a VPS? Depending on how far off we are from the actual colo (how did
> > the tour go?), I can get him setup on one of my remote VPS hosts and
> > migrate when we open.
> >
> > Luke
> > _______________________________________________
> > olug-colo mailing list
> > olug-colo at olug.org
> > https://lists.olug.org/mailman/listinfo/olug-colo
>
> _______________________________________________
> olug-colo mailing list
> olug-colo at olug.org
> https://lists.olug.org/mailman/listinfo/olug-colo

_______________________________________________
olug-colo mailing list
olug-colo at olug.org
https://lists.olug.org/mailman/listinfo/olug-colo

_______________________________________________
olug-colo mailing list
olug-colo at olug.org
https://lists.olug.org/mailman/listinfo/olug-colo

 


------=_NextPart_000_002A_01C9E65A.336015F0
Content-Type: text/html;
	charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

<html xmlns:v=3D"urn:schemas-microsoft-com:vml" =
xmlns:o=3D"urn:schemas-microsoft-com:office:office" =
xmlns:w=3D"urn:schemas-microsoft-com:office:word" =
xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" =
xmlns=3D"http://www.w3.org/TR/REC-html40">

<head>
<meta http-equiv=3DContent-Type content=3D"text/html; =
charset=3Dus-ascii">
<meta name=3DGenerator content=3D"Microsoft Word 12 (filtered medium)">
<style>
<!--
 /* Font Definitions */
 @font-face
	{font-family:"Cambria Math";
	panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
	{font-family:Calibri;
	panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
	{font-family:Tahoma;
	panose-1:2 11 6 4 3 5 4 4 2 4;}
 /* Style Definitions */
 p.MsoNormal, li.MsoNormal, div.MsoNormal
	{margin:0in;
	margin-bottom:.0001pt;
	font-size:12.0pt;
	font-family:"Times New Roman","serif";}
a:link, span.MsoHyperlink
	{mso-style-priority:99;
	color:blue;
	text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
	{mso-style-priority:99;
	color:purple;
	text-decoration:underline;}
span.EmailStyle17
	{mso-style-type:personal-reply;
	font-family:"Calibri","sans-serif";
	color:#1F497D;}
.MsoChpDefault
	{mso-style-type:export-only;}
@page Section1
	{size:8.5in 11.0in;
	margin:1.0in 1.0in 1.0in 1.0in;}
div.Section1
	{page:Section1;}
-->
</style>
<!--[if gte mso 9]><xml>
 <o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
 <o:shapelayout v:ext=3D"edit">
  <o:idmap v:ext=3D"edit" data=3D"1" />
 </o:shapelayout></xml><![endif]-->
</head>

<body lang=3DEN-US link=3Dblue vlink=3Dpurple>

<div class=3DSection1>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Here it their forum thread on the =
matter.<o:p></o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><a
href=3D"http://forums.hostgator.com/please-consider-webdav-support-t25786=
.html?t=3D25786">http://forums.hostgator.com/please-consider-webdav-suppo=
rt-t25786.html?t=3D25786</a><o:p></o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p>&nbsp;</o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>But, like I said I have it. =
&nbsp;&nbsp;<o:p></o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p>&nbsp;</o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Correction to my previous post&#8230;. the icon says =
&#8220;Web
Disk&#8221;<o:p></o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p>&nbsp;</o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>The cpanel url for WebDAV would be:<o:p></o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>your.url:port/frontend/x3/webdav/accounts_webdav.html<o:p>=
</o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p>&nbsp;</o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>From that page you have a form to add /users/directories
passwords. <o:p></o:p></span></p>

<p class=3DMsoNormal><span =
style=3D'font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p>&nbsp;</o:p></span></p>

<div style=3D'border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt =
0in 0in 0in'>

<p class=3DMsoNormal><b><span =
style=3D'font-size:10.0pt;font-family:"Tahoma","sans-serif"'>From:</span>=
</b><span
style=3D'font-size:10.0pt;font-family:"Tahoma","sans-serif"'>
olug-colo-bounces at olug.org [mailto:olug-colo-bounces at olug.org] <b>On =
Behalf Of </b>Adam
Lassek<br>
<b>Sent:</b> Saturday, June 06, 2009 12:54 AM<br>
<b>To:</b> Olug Community colo project<br>
<b>Subject:</b> Re: [olug-colo] Security services<o:p></o:p></span></p>

</div>

<p class=3DMsoNormal><o:p>&nbsp;</o:p></p>

<p class=3DMsoNormal style=3D'margin-bottom:12.0pt'>What exactly would =
constitute
an abuse of WebDAV?<o:p></o:p></p>

<div>

<p class=3DMsoNormal>On Fri, Jun 5, 2009 at 8:48 PM, Aric Aasgaard =
&lt;<a
href=3D"mailto:aric at omahax.com">aric at omahax.com</a>&gt; =
wrote:<o:p></o:p></p>

<p class=3DMsoNormal>I am not a paranoid security geek but I've used <a
href=3D"http://hostgator.com" target=3D"_blank">hostgator.com</a> for =
several<br>
years and love it.<br>
I have about 20 sites hosted on one shared account.<br>
It's $12.95 a month for unlimited everything.<br>
They offer a selection of 3 different webmail clients one of which is =
horde.<br>
They have:<br>
IMAP<br>
SSH<br>
Private SSL<br>
Dedicated static IP<br>
Anonymous FTP<br>
<br>
They say they don't offer WebDAV because people abuse it; However, I =
have<br>
it. &nbsp;It might not have all the geeky features possible. &nbsp;They =
call it<br>
&quot;webfolders&quot; in the cpanel.<br>
I am using &quot;webfolders&quot; for publishing/sharing icalendars from
sunbird and<br>
outlook 2007.<br>
They offer ruby on rails and python(no zope)<br>
You can customize your php.ini<br>
You can install pear modules.<br>
<br>
I have cURL scraping cron jobs.<br>
I even used a perl cgi script that lets me broadcast live TV/Radio =
stations.<br>
It works well but they have been good to me and I don't want to be =
&quot;that<br>
guy&quot;.<br>
<br>
They have excellent support staff. &nbsp;Last time I called them was =
over a
year<br>
ago to ask if I could get them to give me the ability to use cURL from =
a<br>
bash shell. &nbsp;He said &quot;Yes, hold on&quot; I heard some fast =
pattering
on a<br>
keyboard and he said &quot;done, is there anything else I can help you
with?&quot;<br>
<br>
If you need more than that I would rent a dedicated server from<br>
<a href=3D"http://theplanet.com" target=3D"_blank">theplanet.com</a><br>
<a href=3D"https://www.theplanet.com/servers/" =
target=3D"_blank">https://www.theplanet.com/servers/</a><br>
If you talk to a rep you can get a better deal than what is listed. =
&nbsp;They<br>
doubled my ram and upped my monthly bandwidth to 5TB for free. &nbsp;You =
can
get<br>
a quad core Xeon for under $200 a month.<br>
<br>
My thought are that if you are hosting more than hostgator can handle =
you<br>
should be charging your clients enough to justify a dedicated box at<br>
theplanet. &nbsp;My hostgator account's server is in theplanet's =
datacenter.<br>
<br>
If you want windows hosting I would recommend <a =
href=3D"http://powerdnn.com"
target=3D"_blank">powerdnn.com</a>. &nbsp;I was at their<br>
offices today and they seem to have a top notch operation.<br>
<span style=3D'color:#888888'><br>
-Aric</span><o:p></o:p></p>

<div>

<div>

<p class=3DMsoNormal><br>
-----Original Message-----<br>
From: <a =
href=3D"mailto:olug-colo-bounces at olug.org">olug-colo-bounces at olug.org</a>=

[mailto:<a =
href=3D"mailto:olug-colo-bounces at olug.org">olug-colo-bounces at olug.org</a>=
]
On<br>
Behalf Of Luke-Jr<br>
Sent: Friday, June 05, 2009 3:43 PM<br>
To: Olug Community colo project<br>
Subject: Re: [olug-colo] Security services<br>
<br>
He described what I can only summarise as &quot;Webhosting++&quot;:<br>
<br>
[13:50:56] &lt;alexpgates&gt; Can anyone recommend an alternative to =
Dreamhost
for<br>
a<br>
design firm in Omaha? A local hosting company would be ideal... but we =
are<br>
open to anything. We aren't unix admins... we just need something =
reliable<br>
that allows us to do simple things like ssh, run soem cron jobs, =
etc....<br>
something that will grow as we grow. Any suggestions?<br>
[13:53:50] &lt;luke-jr&gt; alexpgates: sounds like you want a managed =
VPS<br>
[13:53:53] &lt;luke-jr&gt; which isn't cheap<br>
[13:54:34] &lt;alexpgates&gt; a managed VPS sounds great.... define =
&quot;isn't
cheap&quot;<br>
[13:56:40] &lt;alexpgates&gt; we just switched to a dreamhost vps - =
terrible<br>
situation.<br>
[13:57:05] &lt;TC-jmhobbs&gt; I know that aplus has a managed VPS type =
thing,<br>
can't<br>
attest to it though.<br>
[13:57:28] &lt;luke-jr&gt; alexpgates: a managed VPS including Apache
management<br>
from me is $61/mo at the cheapest<br>
[13:58:00] &lt;luke-jr&gt; <a =
href=3D"http://lightfoot.dashjr.org/?page=3Dvps"
target=3D"_blank">http://lightfoot.dashjr.org/?page=3Dvps</a><br>
[14:01:48] &lt;luke-jr&gt; alexpgates: might want to just wait for the =
OLUG<br>
datacenter to start<br>
[14:02:14] &lt;luke-jr&gt; we can probably get OLUG guys a better deal =
that way<br>
[14:03:10] &lt;alexpgates&gt; luke-jr: your prices are very =
reasonable....
&nbsp;when<br>
is<br>
the datacenter going to be available?<br>
[14:03:30] &lt;luke-jr&gt; a few of the guys checked out a location on M =
St the<br>
other day, not sure what the results are<br>
[14:04:47] &lt;alexpgates&gt; we don't mind paying more... because we =
aren't<br>
equipped for &quot;Software upgrades, security, and similar proactive =
services&quot;<br>
being our responsibility.<br>
<br>
<br>
On Friday 05 June 2009 02:12:19 pm Curtis LaMasters wrote:<br>
&gt; What security does he need (IDS, IPS, IPTables, etc?). &nbsp;I =
could<br>
&gt; probably accommodate.<br>
&gt;<br>
&gt; Curtis LaMasters<br>
&gt; <a href=3D"http://www.curtis-lamasters.com" =
target=3D"_blank">http://www.curtis-lamasters.com</a><br>
&gt; <a href=3D"http://www.builtnetworks.com" =
target=3D"_blank">http://www.builtnetworks.com</a><br>
&gt;<br>
&gt; On Fri, Jun 5, 2009 at 2:10 PM, Luke-Jr&lt;<a =
href=3D"mailto:luke at dashjr.org">luke at dashjr.org</a>&gt;
wrote:<br>
&gt; &gt; A guy in #OmahaLUG is looking for managed VPS hosting, but he =
needs<br>
&gt; &gt; proper server security to be included in the management. =
That's
really<br>
&gt; &gt; not my area; is anyone here a security expert and willing to =
sell<br>
support<br>
&gt; &gt; for a VPS? Depending on how far off we are from the actual =
colo (how
did<br>
&gt; &gt; the tour go?), I can get him setup on one of my remote VPS =
hosts and<br>
&gt; &gt; migrate when we open.<br>
&gt; &gt;<br>
&gt; &gt; Luke<br>
&gt; &gt; _______________________________________________<br>
&gt; &gt; olug-colo mailing list<br>
&gt; &gt; <a =
href=3D"mailto:olug-colo at olug.org">olug-colo at olug.org</a><br>
&gt; &gt; <a href=3D"https://lists.olug.org/mailman/listinfo/olug-colo"
target=3D"_blank">https://lists.olug.org/mailman/listinfo/olug-colo</a><b=
r>
&gt;<br>
&gt; _______________________________________________<br>
&gt; olug-colo mailing list<br>
&gt; <a href=3D"mailto:olug-colo at olug.org">olug-colo at olug.org</a><br>
&gt; <a href=3D"https://lists.olug.org/mailman/listinfo/olug-colo" =
target=3D"_blank">https://lists.olug.org/mailman/listinfo/olug-colo</a><b=
r>
<br>
_______________________________________________<br>
olug-colo mailing list<br>
<a href=3D"mailto:olug-colo at olug.org">olug-colo at olug.org</a><br>
<a href=3D"https://lists.olug.org/mailman/listinfo/olug-colo" =
target=3D"_blank">https://lists.olug.org/mailman/listinfo/olug-colo</a><b=
r>
<br>
_______________________________________________<br>
olug-colo mailing list<br>
<a href=3D"mailto:olug-colo at olug.org">olug-colo at olug.org</a><br>
<a href=3D"https://lists.olug.org/mailman/listinfo/olug-colo" =
target=3D"_blank">https://lists.olug.org/mailman/listinfo/olug-colo</a><o=
:p></o:p></p>

</div>

</div>

</div>

<p class=3DMsoNormal><o:p>&nbsp;</o:p></p>

</div>

</body>

</html>

------=_NextPart_000_002A_01C9E65A.336015F0--



More information about the olug-colo mailing list