|  |  | @2386 | 13 years | geofft | Certificate renewal for ldpreload.com for 2 years | 
                
                  |  |  | @2385 | 13 years | achernya | Certificate renewal for tibetforum | 
                
                  |  |  | @2384 | 13 years | achernya | Certificate for dormbase and webid | 
                
                  |  |  | @2379 | 13 years | adehnert | Correctly set mode of suexec.log
Historically, suexec.log has been ... | 
                
                  |  |  | @2375 | 13 years | andersk | Tighten scripts vhost mail security
Broken MTAs such as MIT’s will ... | 
                
                  |  |  | @2374 | 13 years | achernya | Certificate renewal for dchang; new certificate for cons | 
                
                  |  |  | @2373 | 13 years | achernya | Certificate renewal for gsc | 
                
                  |  |  | @2372 | 13 years | achernya | Block unresponsive spam-y user | 
                
                  |  |  | @2364 | 13 years | achernya | Certificate renewal for classmates, psetcentral, schuh | 
                
                  |  |  | @2360 | 13 years | achernya | Certificate renewal for blog.gregbrockman.com | 
                
                  |  |  | @2359 | 13 years | andersk | /etc/ntp.conf: Refresh from Fedora 17
This enables queries on ::1, ... | 
                
                  |  |  | @2358 | 13 years | andersk | /etc/named.conf: Add stub zones for mit.edu and 18.in-addr.arpa | 
                
                  |  |  | @2357 | 13 years | andersk | /etc/hosts: Add not-backward | 
                
                  |  |  | @2355 | 13 years | achernya | Certificate renewal for cs6090 and isawyou | 
                
                  |  |  | @2354 | 13 years | achernya | Update postfix for version 2.9.5 | 
                
                  |  |  | @2353 | 13 years | achernya | Also add www.davidben.net | 
                
                  |  |  | @2352 | 13 years | achernya | Clean up other similarly affected certificate chains | 
                
                  |  |  | @2351 | 13 years | achernya | Remove InCommon Root CA from certificate chain
MIT recently switched ... | 
                
                  |  |  | @2350 | 13 years | achernya | Certificate and configuration for davidben.net | 
                
                  |  |  | @2347 | 13 years | achernya | Certificate renewal for eastgate, picker, pickr | 
                
                  |  |  | @2346 | 13 years | achernya | Blacklist mount.nfs and netreport setuid binaries | 
                
                  |  |  | @2345 | 13 years | achernya | Certificate renewal for impact; new certificate for crush | 
                
                  |  |  | @2344 | 13 years | andersk | Disable mirrors for fedora.repo better. | 
                
                  |  |  | @2343 | 13 years | andersk | Disable mirrors for fedora.repo | 
                
                  |  |  | @2342 | 13 years | andersk | Import pristine upstream /etc/yum.repos.d/fedora.repo | 
                
                  |  |  | @2341 | 13 years | andersk | Add SSLCertificateChainFile to debathena.conf | 
                
                  |  |  | @2338 | 13 years | achernya | Certificate renewal for bakerfoundation, peoplesearch; initial ... | 
                
                  |  |  | @2336 | 13 years | quentin | Add maoting as a blocked mail sender | 
                
                  |  |  | @2334 | 13 years | achernya | Certificate renewal fixup ashdown, ec, listmon, sayno, swe, techfair, ... | 
                
                  |  |  | @2333 | 13 years | achernya | Certificate renewal for ashdown, ec, listmon, sayno, swe, techfair, ... | 
                
                  |  |  | @2332 | 13 years | achernya | Certificate renewal for hmmt | 
                
                  |  |  | @2331 | 13 years | achernya | Certificate renewal for barnowl, fridget, maseeh, signup, sipb, ... | 
                
                  |  |  | @2330 | 13 years | quentin | Partially revert r2329, and set postfix's inet_protocols to the ... | 
                
                  |  |  | @2329 | 13 years | glasgall | re-enable westgate vhost | 
                
                  |  |  | @2328 | 13 years | achernya | Add glasgall to aliases for root | 
                
                  |  |  | @2327 | 13 years | achernya | Remove cdsa certificate; no longer hosted on scripts | 
                
                  |  |  | @2326 | 13 years | achernya | Remove westgate configuration | 
                
                  |  |  | @2325 | 13 years | achernya | Certificate renewal for rpl and stalk | 
                
                  |  |  | @2324 | 13 years | achernya | Remove certificate and configuration for crosslinks, no longer on Scripts | 
                
                  |  |  | @2323 | 13 years | achernya | Certificate renewal for bluechips.emergent-studios.com | 
                
                  |  |  | @2322 | 13 years | quentin | Add certs for webathena, conner4, and update cert for debathena. | 
                
                  |  |  | @2321 | 13 years | geofft | Disable SSL compression to defend against rumored side-channel attack | 
                
                  |  |  | @2308 | 13 years | achernya | Add intermediate certificates for luke.wf | 
                
                  |  |  | @2304 | 13 years | ezyang | Allow user list generation to access LDAP credentials. | 
                
                  |  |  | @2296 | 13 years | geofft | Update to Postfix 2.9.4 | 
                
                  |  |  | @2295 | 13 years | geofft | Certificate renewals for ai6034 and classof2014 | 
                
                  |  |  | @2294 | 13 years | ezyang | Message no long occurs due to upstream fix ... | 
                
                  |  |  | @2293 | 13 years | ezyang | File capabilities respect nosuid too ... | 
                
                  |  |  | @2292 | 13 years | ezyang | Ignore setuid binaries in /var/lib/mock, which are nosuid'd | 
                
                  |  |  | @2291 | 13 years | ezyang | Remount /var/lib/mock as nosuid | 
                
                  |  |  | @2290 | 13 years | achernya | Really add the mitchief cert. | 
                
                  |  |  | @2289 | 13 years | achernya | Certificate and configuration for mitchief.org | 
                
                  |  |  | @2283 | 13 years | geofft | Add SSLCertificateChainFile for the renewals from r2282 | 
                
                  |  |  | @2282 | 13 years | geofft | A pile of certificate renewals | 
                
                  |  |  | @2273 | 13 years | achernya | Actually chmod the files, too | 
                
                  |  |  | @2272 | 13 years | achernya | /sbin moved too | 
                
                  |  |  | @2271 | 13 years | achernya | Update statoveride post-action for /bin -> /usr/bin transition | 
                
                  |  |  | @2270 | 13 years | ezyang | Add Scripts-IP for debugging purposes (identify real server, no X- ... | 
                
                  |  |  | @2267 | 13 years | andersk | Move php sessions to /var/lib/scripts-php-sessions | 
                
                  |  |  | @2266 | 13 years | achernya | Certificate renewal for metu.mit.edu | 
                
                  |  |  | @2264 | 13 years | adehnert | Switch to upstream cipher suites | 
                
                  |  |  | @2263 | 13 years | geofft | Certificate and configuration for luke.wf and www.luke.wf | 
                
                  |  |  | @2258 | 13 years | achernya | Certificate renewal for nudelta; remove ailg-bdf as it is not configured | 
                
                  |  |  | @2257 | 13 years | adehnert | Serve Django 1.4 admin media
Django 1.4 relocated the admin media in ... | 
                
                  |  |  | @2256 | 13 years | quentin | Add a NRPE command for monitoring SMTP on localhost | 
                
                  |  |  | @2255 | 13 years | quentin | Partially revert r2254, and allow postfix to calculate its own mynetworks. | 
                
                  |  |  | @2254 | 13 years | achernya | Update to postfix 2.9.3 | 
                
                  |  |  | @2252 | 13 years | achernya | Add m-c and l-s to known hosts | 
                
                  |  |  | @2251 | 13 years | achernya | Enable hostbased to m-c and l-s | 
                
                  |  |  | @2246 | 13 years | ezyang | Reintegrate Fedora 17 development branch into trunk. | 
                
                  |  |  | @2237 | 13 years | achernya | Reify eastgate.conf to bring it in sync with ldap, again | 
                
                  |  |  | @2234 | 13 years | achernya | Reify eastgate.conf to bring it in sync with ldap | 
                
                  |  |  | @2233 | 13 years | quentin | Block raskar from sending mail; he has been unresponsive to our ... | 
                
                  |  |  | @2229 | 13 years | geofft | Certificate renewals for tours and scripts-cert
Includes the InCommon ... | 
                
                  |  |  | @2228 | 13 years | geofft | Canonicalize SSLCertificateChainFile location to match r2227 | 
                
                  |  |  | @2227 | 13 years | geofft | reify-vhost: Add SSLCertificateChainFile by default
It makes the case ... | 
                
                  |  |  | @2194 | 13 years | achernya | Certificate renewal for ties | 
                
                  |  |  | @2193 | 13 years | achernya | Update postfix to 2.8.10 | 
                
                  |  |  | @2192 | 13 years | adehnert | Ping sql.mit.edu on the backend network | 
                
                  |  |  | @2191 | 13 years | adehnert | Update monitoring servers to syn, c-t, and sipb-noc | 
                
                  |  |  | @2190 | 13 years | adehnert | Define check_backend NRPE check | 
                
                  |  |  | @2188 | 13 years | ezyang | Ignore oom_score_adj too. | 
                
                  |  |  | @2183 | 13 years | ezyang | Revert disk ccache hack, upstream has fixed the bug. | 
                
                  |  |  | @2182 | 13 years | geofft | Put courseroad cert in right directory | 
                
                  |  |  | @2181 | 13 years | geofft | Certificate and configuration for courseroad [help.mit.edu #1967114] | 
                
                  |  |  | @2179 | 14 years | achernya | Remove blue-sun-corp certificate and configuration, long expired | 
                
                  |  |  | @2178 | 14 years | achernya | Certificate renewal for finboard and carepackages | 
                
                  |  |  | @2177 | 14 years | geofft | Revert r2176
We should allow SSLProxy* to be configurable in ... | 
                
                  |  |  | @2176 | 14 years | geofft | Enable SSLProxyEngine
This allows you to mod_proxy (e.g., RewriteRule ... | 
                
                  |  |  | @2173 | 14 years | achernya | fping now has capabilities | 
                
                  |  |  | @2172 | 14 years | achernya | Certificate renewal for asa and bc | 
                
                  |  |  | @2171 | 14 years | ezyang | Enable yum-updatesd.service | 
                
                  |  |  | @2166 | 14 years | ezyang | Add enabled services that we definitely want. | 
                
                  |  |  | @2164 | 14 years | ezyang | Bind this mount more closely to the AFS service. | 
                
                  |  |  | @2163 | 14 years | ezyang | Don't use local for better-mousetrapfs. | 
                
                  |  |  | @2155 | 14 years | ezyang | Configuration for setting the mousetrap. | 
                
                  |  |  | @2152 | 14 years | adehnert | Split out AFS nagios checks | 
                
                  |  |  | @2148 | 14 years | achernya | Certificate renewal for tibetforum | 
                
                  |  |  | @2147 | 14 years | achernya | Certificate and configuration for dchang | 
                
                  |  |  | @2145 | 14 years | andersk | Kill signup-scripts-frontend
We don’t need this setuid binary because ... | 
                
                  |  |  |