From owner-freebsd-questions@freebsd.org Thu Mar 24 18:06:44 2016 Return-Path: Delivered-To: freebsd-questions@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 6F9EEADC7DC for ; Thu, 24 Mar 2016 18:06:44 +0000 (UTC) (envelope-from reko.turja@liukuma.net) Received: from mailman.ysv.freebsd.org (unknown [127.0.1.3]) by mx1.freebsd.org (Postfix) with ESMTP id 53EEB169E for ; Thu, 24 Mar 2016 18:06:44 +0000 (UTC) (envelope-from reko.turja@liukuma.net) Received: by mailman.ysv.freebsd.org (Postfix) id 4F654ADC7D9; Thu, 24 Mar 2016 18:06:44 +0000 (UTC) Delivered-To: questions@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 4F00AADC7D6 for ; Thu, 24 Mar 2016 18:06:44 +0000 (UTC) (envelope-from reko.turja@liukuma.net) Received: from cerebro.liukuma.net (cerebro.liukuma.net [IPv6:2a00:d1e0:1000:1b00::2]) by mx1.freebsd.org (Postfix) with ESMTP id DDD8B1699 for ; Thu, 24 Mar 2016 18:06:43 +0000 (UTC) (envelope-from reko.turja@liukuma.net) Received: from cerebro.liukuma.net (localhost [127.0.0.1]) by cerebro.liukuma.net (Postfix) with ESMTP id 6794F8B173A for ; Thu, 24 Mar 2016 20:06:34 +0200 (EET) DKIM-Filter: OpenDKIM Filter v2.10.3 cerebro.liukuma.net 6794F8B173A DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=liukuma.net; s=liukudkim; t=1458842794; bh=YeJiBI9FXiZuq8Q9w9kWo2b/iBCT/SECFrt9AfsHzQQ=; h=From:Cc:References:In-Reply-To:Subject:Date; b=r4//cVYPCjkU2P3mdbJ+dvcH2GhjlfL7/ABl/Zvz+5dk+z+30+lzKM8NhCzoYfdkz gT8sNhBpCimDYLYZXZwA8GRm8ycWG6y3O7MMIeYLZJ4159I1LG2LzbJWKtH5WqBQhm U6RUN93fu3O9Zubs1LST0qYF6TcjFhm452mJoeD0= X-Virus-Scanned: amavisd-new at liukuma.net Received: from cerebro.liukuma.net ([127.0.0.1]) by cerebro.liukuma.net (cerebro.liukuma.net [127.0.0.1]) (amavisd-new, port 10027) with LMTP id LRy8bFba7Ral for ; Thu, 24 Mar 2016 20:06:30 +0200 (EET) Received: from Rivendell (dsl-kmibrasgw1-50dfdd-193.dhcp.inet.fi [80.223.221.193]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) (Authenticated sender: ignatz@cerebro.liukuma.net) by cerebro.liukuma.net (Postfix) with ESMTPSA id 43D888B172F for ; Thu, 24 Mar 2016 20:06:30 +0200 (EET) DKIM-Filter: OpenDKIM Filter v2.10.3 cerebro.liukuma.net 43D888B172F Message-ID: From: "Reko Turja" Cc: References: <44909.128.135.52.6.1458829510.squirrel@cosmo.uchicago.edu> <56F3FA4C.4020707@tundraware.com> <19103.128.135.52.6.1458839363.squirrel@cosmo.uchicago.edu> In-Reply-To: <19103.128.135.52.6.1458839363.squirrel@cosmo.uchicago.edu> Subject: Re: Anti-virus for FreeBSD Date: Thu, 24 Mar 2016 20:06:22 +0200 MIME-Version: 1.0 Content-Type: text/plain; format=flowed; charset="iso-8859-1"; reply-type=original Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal Importance: Normal X-Mailer: Microsoft Windows Live Mail 16.4.3564.1216 X-MimeOLE: Produced By Microsoft MimeOLE V16.4.3564.1216 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 24 Mar 2016 18:06:44 -0000 https://truesecdev.wordpress.com/2015/04/09/hidden-backdoor-api-to-root-privileges-in-apple-os-x/ Quite scary that a company is unable to fix their older OSes for whatever reason. -Reko -----Original Message----- From: Valeri Galtsev Sent: Thursday, March 24, 2016 7:09 PM To: Tim Daneliuk Cc: questions@freebsd.org Subject: Re: Anti-virus for FreeBSD On Thu, March 24, 2016 9:31 am, Tim Daneliuk wrote: > On 03/24/2016 09:25 AM, Valeri Galtsev wrote: >> that we scan for viruses attacking something else not on MS >> products? >> Are >> there any? ;-) > > Yes - for MacOS at least. Could you give some links to information about MacOS viruses? I am really curious. The only thing I can find on the web are some trojans (like Flashback) installed into user's web browser settings. These do not constitute viruses in my book, as they do not lead to system level compromise, they are just something installed into particular user's space with consent of that particular user. The only other thing I remember was when Apple failed to include into updates long released java vulnerability fix... compromise through which doesn't constitute successful virus attack in my book as well. Thanks in advance for information! Valeri > > FWIW, my preferred arrangements is a configuration of: > > MailScanner > spamassassin > clamav > milter-greylist > > However, I have discovered that clamav likes a LOT of machine > resources > and > will basically stall a very small machine like, say, a VPS server. > I > know, > I know, "you don't run mail on small VPS servers" ... except when > you do > ;) > > -- > ---------------------------------------------------------------------------- > Tim Daneliuk tundra@tundraware.com > PGP Key: http://www.tundraware.com/PGP/ > > _______________________________________________ > freebsd-questions@freebsd.org mailing list > https://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to > "freebsd-questions-unsubscribe@freebsd.org" > ++++++++++++++++++++++++++++++++++++++++ Valeri Galtsev Sr System Administrator Department of Astronomy and Astrophysics Kavli Institute for Cosmological Physics University of Chicago Phone: 773-702-4247 ++++++++++++++++++++++++++++++++++++++++ _______________________________________________ freebsd-questions@freebsd.org mailing list https://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"