Tag — 8 posts
#security
All tagsPOODLE killed SSLv3 for good. The nginx configuration that follows from that — protocols, cipher suite, forward secrecy, OCSP stapling and HSTS — and the two lines that matter more than the cipher list everyone copies.
How to configure pam-pkcs11 so the Spanish DNI-e electronic ID card works as your login credential on Ubuntu 12.04.
How to join an Ubuntu 10.04 machine to a large Active Directory domain for centralised users, groups and resources.
Using Grub2's basic authentication to lock individual boot entries behind a user and password, and the regression that made it necessary.
Cómo se produce una inyección SQL en PHP, por qué cuesta tanto depurarla después, y las prácticas que la evitan desde el principio.
Una lista corta de prácticas de seguridad en PHP: sentencias preparadas, escapado de salida, manejo de sesiones y control de la subida de ficheros.
Migrar un servidor de Apache a Lighttpd con PHP5, Ruby on Rails y SSL conviviendo en la misma máquina, y los puntos donde duele.
Cómo compartir recursos con Samba entre GNU/Linux y Windows sin dejar el recurso abierto a toda la red.