<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Jonathan Zdziarski&#039;s Domain</title>
	<atom:link href="http://www.zdziarski.com/blog/?feed=comments-rss2" rel="self" type="application/rss+xml" />
	<link>http://www.zdziarski.com/blog</link>
	<description>Scientist and occasional hacker. Author and occasional theologian. I invent stuff and wail on bass guitar. Twitter: @JZdziarski</description>
	<lastBuildDate>Wed, 18 Apr 2012 14:50:03 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>Comment on mod_evasive by p1c0</title>
		<link>http://www.zdziarski.com/blog/?page_id=442&#038;cpage=1#comment-180</link>
		<dc:creator>p1c0</dc:creator>
		<pubDate>Wed, 18 Apr 2012 14:50:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?page_id=442#comment-180</guid>
		<description>Hello,

is there any way to configure mod_evasive to count http sessions instead of single IP address?

I&#039;ve a lot of clients coming from enterprise&#039;s LAN behind a single NAT, and they get blacklisted.

Thank you</description>
		<content:encoded><![CDATA[<p>Hello,</p>
<p>is there any way to configure mod_evasive to count http sessions instead of single IP address?</p>
<p>I&#8217;ve a lot of clients coming from enterprise&#8217;s LAN behind a single NAT, and they get blacklisted.</p>
<p>Thank you</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Ballistic: iPhone&#8217;s Favorite Ballistics Computer by Homepage</title>
		<link>http://www.zdziarski.com/blog/?p=23&#038;cpage=1#comment-179</link>
		<dc:creator>Homepage</dc:creator>
		<pubDate>Wed, 11 Apr 2012 06:26:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?p=23#comment-179</guid>
		<description>&lt;strong&gt;... [Trackback]...&lt;/strong&gt;

[...] Read More here: zdziarski.com/blog/?p=23 [...]...</description>
		<content:encoded><![CDATA[<p><strong>&#8230; [Trackback]&#8230;</strong></p>
<p>[...] Read More here: zdziarski.com/blog/?p=23 [...]&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on mod_evasive by amersaeed</title>
		<link>http://www.zdziarski.com/blog/?page_id=442&#038;cpage=1#comment-178</link>
		<dc:creator>amersaeed</dc:creator>
		<pubDate>Tue, 10 Apr 2012 18:04:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?page_id=442#comment-178</guid>
		<description>i am new to linux server, please guide me how i can edit and save httpd.conf file to add configuration into it.</description>
		<content:encoded><![CDATA[<p>i am new to linux server, please guide me how i can edit and save httpd.conf file to add configuration into it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on On Christianity by mc25a</title>
		<link>http://www.zdziarski.com/blog/?p=40&#038;cpage=1#comment-177</link>
		<dc:creator>mc25a</dc:creator>
		<pubDate>Fri, 06 Apr 2012 15:32:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?p=40#comment-177</guid>
		<description>Jonathan, 
I enjoyed reading this post a great deal.  In many ways I have been along the same spiritual path.  

I think that the greatest challenge for the atheist is that he must ultimately accept a supernatural explanation for the origins of the universe.  There was something at the beginning.  Whatever preceded, fueled, or triggered the moment (big bang?) of creation was either (a) always there, infinitely in existence,  or (b) created.  I look forward to hearing more about your thoughts on evolution as well.  .</description>
		<content:encoded><![CDATA[<p>Jonathan,<br />
I enjoyed reading this post a great deal.  In many ways I have been along the same spiritual path.  </p>
<p>I think that the greatest challenge for the atheist is that he must ultimately accept a supernatural explanation for the origins of the universe.  There was something at the beginning.  Whatever preceded, fueled, or triggered the moment (big bang?) of creation was either (a) always there, infinitely in existence,  or (b) created.  I look forward to hearing more about your thoughts on evolution as well.  .</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Jailbreaking a Security Threat? Really? by MW</title>
		<link>http://www.zdziarski.com/blog/?p=122&#038;cpage=1#comment-176</link>
		<dc:creator>MW</dc:creator>
		<pubDate>Fri, 06 Apr 2012 09:58:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?p=122#comment-176</guid>
		<description>I fully agree with you, that i jailbreaking doesn&#039;t pose a security threat. As you, i believe, that jailbreaking has a lot of benefits (also for security).

But there is one thing, that sould be said:
An average, nontech user, will jailbreak its iphone to install some costly apps for free. And that&#039;s where the main security treath comes from: cracked apps bundled with malware.</description>
		<content:encoded><![CDATA[<p>I fully agree with you, that i jailbreaking doesn&#8217;t pose a security threat. As you, i believe, that jailbreaking has a lot of benefits (also for security).</p>
<p>But there is one thing, that sould be said:<br />
An average, nontech user, will jailbreak its iphone to install some costly apps for free. And that&#8217;s where the main security treath comes from: cracked apps bundled with malware.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on mod_evasive by pontikis</title>
		<link>http://www.zdziarski.com/blog/?page_id=442&#038;cpage=1#comment-174</link>
		<dc:creator>pontikis</dc:creator>
		<pubDate>Wed, 28 Mar 2012 19:16:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?page_id=442#comment-174</guid>
		<description>mod_evasive is very useful. But ajax calls or common urls (e.g. something like /common/show_image/ ) may cause &lt;strong&gt;false positives&lt;/strong&gt;.

I tried
&lt;code&gt;


DOSPageCount 50


&lt;/code&gt;

but id does not work. I get:
&lt;code&gt;
DOSPageCount not allowed here
Action &#039;configtest&#039; failed.
The Apache error log may have more information.
 failed!
&lt;/code&gt;
Any ideas?

Thank you</description>
		<content:encoded><![CDATA[<p>mod_evasive is very useful. But ajax calls or common urls (e.g. something like /common/show_image/ ) may cause <strong>false positives</strong>.</p>
<p>I tried<br />
<code></p>
<p>DOSPageCount 50</p>
<p></code></p>
<p>but id does not work. I get:<br />
<code><br />
DOSPageCount not allowed here<br />
Action 'configtest' failed.<br />
The Apache error log may have more information.<br />
 failed!<br />
</code><br />
Any ideas?</p>
<p>Thank you</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on mod_evasive by http dos attack</title>
		<link>http://www.zdziarski.com/blog/?page_id=442&#038;cpage=1#comment-171</link>
		<dc:creator>http dos attack</dc:creator>
		<pubDate>Wed, 07 Mar 2012 13:44:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?page_id=442#comment-171</guid>
		<description>[...] It looks like from your iptables entries you are using two methods: connection rate limit and syn packet limits. You really should try to find evidence of the exact mechanism being applied so that you can tailor your solution. Based on the idea that these are full fledged GET requests, you might want to consider adding mod_evasive. See the following for a little more information: http://www.zdziarski.com/blog/?page_id=442 [...]</description>
		<content:encoded><![CDATA[<p>[...] It looks like from your iptables entries you are using two methods: connection rate limit and syn packet limits. You really should try to find evidence of the exact mechanism being applied so that you can tailor your solution. Based on the idea that these are full fledged GET requests, you might want to consider adding mod_evasive. See the following for a little more information: <a href="http://www.zdziarski.com/blog/?page_id=442" rel="nofollow">http://www.zdziarski.com/blog/?page_id=442</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Plugging the iPhone Screenshot Leak by Carrier IQ software: A big risk to enterprise mobile security? &#124; RemoveCarrierIQ.net</title>
		<link>http://www.zdziarski.com/blog/?p=140&#038;cpage=1#comment-169</link>
		<dc:creator>Carrier IQ software: A big risk to enterprise mobile security? &#124; RemoveCarrierIQ.net</dc:creator>
		<pubDate>Thu, 01 Mar 2012 17:28:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?p=140#comment-169</guid>
		<description>[...] action for aesthetic purposes. Noted mobile device forensics expert Jonathan Zdziarski also posted two steps that can be taken on jailbroken iPhones to disable this functionality. There is a more general [...]</description>
		<content:encoded><![CDATA[<p>[...] action for aesthetic purposes. Noted mobile device forensics expert Jonathan Zdziarski also posted two steps that can be taken on jailbroken iPhones to disable this functionality. There is a more general [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Your True Identity by Jsophrin</title>
		<link>http://www.zdziarski.com/blog/?p=1386&#038;cpage=1#comment-162</link>
		<dc:creator>Jsophrin</dc:creator>
		<pubDate>Thu, 02 Feb 2012 00:17:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?p=1386#comment-162</guid>
		<description>I perceived this post to be written in the same manner of C. S Lewis&#039; &quot;The Weight of Glory&quot;

 http://www.verber.com/mark/xian/weight-of-glory.pdf</description>
		<content:encoded><![CDATA[<p>I perceived this post to be written in the same manner of C. S Lewis&#8217; &#8220;The Weight of Glory&#8221;</p>
<p> <a href="http://www.verber.com/mark/xian/weight-of-glory.pdf" rel="nofollow">http://www.verber.com/mark/xian/weight-of-glory.pdf</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on mod_evasive by :: b l a c k o n s o l e :: &#187; :: Install mod_evasive on cPanel</title>
		<link>http://www.zdziarski.com/blog/?page_id=442&#038;cpage=1#comment-160</link>
		<dc:creator>:: b l a c k o n s o l e :: &#187; :: Install mod_evasive on cPanel</dc:creator>
		<pubDate>Tue, 10 Jan 2012 03:41:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.zdziarski.com/blog/?page_id=442#comment-160</guid>
		<description>[...] to provide evasive action in the event of an HTTP DoS or DDoS attack or brute force attack. &#8211;  zdziarski &#160; :: How to install mod_evasive on cPanel / WHM + download and [...]</description>
		<content:encoded><![CDATA[<p>[...] to provide evasive action in the event of an HTTP DoS or DDoS attack or brute force attack. &#8211;  zdziarski &nbsp; :: How to install mod_evasive on cPanel / WHM + download and [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

