Page 1 of 1

New User / SSH Problem

PostPosted: Thu May 29, 2008 7:00 am
by neronix
Hey everyone, 2 things.

I installed grsec, everything went fine, was really easy. I am so new to PaX , RBAC and GRsec that its not even funny. I try to read everything I can about it so I can learn as much as possible so I can create a really secure system. After I installed grsec, I tried to enable the learning system as the "quick start" manual showed, and shortly after I was disconnected from SSH, and when I try to connect it says "Connection closed by remote host". Apache is still accessible, as other are running on the server (Centos 5.1). Im think its probably an RBAC policy gone bad? Is the system enabled by default on startup (i.e. can I just tell my datacenter to reboot, and then I should be able to login in ssh?) I've google'd , and searched the forum but not found anything solid that would help me fix this. What should I do, and when I am able to login again, what do I need to enable/fix/view to find the problem?

Second, I'm more of an IRC person than a forum poster. I've created a channel #GRSecurity, on a network that Im a server admin on (irc.rizon.net) username Neronix. For anyone who is interested, i'd like to create a IRC support channel where people can come and ask questions and get quick answers in real time. If your interested in joining (hopefully some of you more seasoned users will join) or you if you need help, Ill try to helpout as much as I can.

Thanks in advance for your help! I didnt see anything about not "spamming" so I hope you admins dont mind this message, its for the good of the grsec community!

Neronix
neronix@rizon.net
irc.rizon.net / #GRSecurity

Re: New User / SSH Problem

PostPosted: Thu May 29, 2008 8:31 am
by spender
We have an "official" IRC channel on irc.oftc.net. As for your problem, you can reboot the machine and then look at the system logs for messages from grsec. If you can provide the commands you used as well, preferably from your .bash_history, that would be helpful as well.

-Brad

Re: New User / SSH Problem

PostPosted: Thu May 29, 2008 9:40 am
by neronix
Will grsec/rbac enable itself on startup? i.e will I have to have my datacenter login and disable it? or when the box reboots will it automatically be disabled?

Also I found that channel, looks like everyone in there is "dead" lol.

Re: New User / SSH Problem

PostPosted: Thu May 29, 2008 10:41 am
by cormander
grsec will be enabled, assuming that's the default kernel. As far as the rbac system, it won't be enabled (unless you manually put an entry somewhere in your boot sequence to turn it on).