-
Posts
4970 -
Joined
-
Last visited
-
Days Won
372
Everything posted by aelius
-
Au batut calul. Vad ca-s si ciori, cum adica "doi romani" Bine ca s-au dus, maine fac gratar )
-
Hahahaha, asta e tare. @Zatarra de aici => https://rstforums.com/forum/showgroups.php Nu sunt neamuri )
-
Segment 6 - DMARC Information for Domain Owners and Third Parties - Download PDF - Source: http://www.m3aawg.org/
-
Segment 5 - DMARC Information for Mailbox Providers - Download PDF - Source: http://www.m3aawg.org/
-
Segment 4 - DMARC Reporting - Download PDF - Source: http://www.m3aawg.org/
-
Segment 3 - DMARC Policy Records - Download PDF - Source: http://www.m3aawg.org/
-
Segment 2 - DMARC Identifier Alignment - Download PDF - Source: http://www.m3aawg.org/
-
Segment 1 - What is DMARC ? - Download PDF - Source: http://www.m3aawg.org/
-
DMARC - What is it? DMARC, which stands for "Domain-based Message Authentication, Reporting & Conformance", is a technical specification created by a group of organizations that want to help reduce the potential for email-based abuse by solving a couple of long-standing operational, deployment, and reporting issues related to email authentication protocols. DMARC standardizes how email receivers perform email authentication using the well-known SPF and DKIM mechanisms. This means that senders will experience consistent authentication results for their messages at AOL, Gmail, Hotmail, Yahoo! and any other email receiver implementing DMARC. We hope this will encourage senders to more broadly authenticate their outbound email which can make email a more reliable way to communicate. Why is DMARC Important? With the rise of the social internet and the ubiquity of e-commerce, spammers and phishers have a tremendous financial incentive to compromise user accounts, enabling theft of passwords, bank accounts, credit cards, and more. Email is easy to spoof and criminals have found spoofing to be a proven way to exploit user trust of well-known brands. Simply inserting the logo of a well known brand into an email gives it instant legitimacy with many users. Users can't tell a real message from a fake one, and large mailbox providers have to make very difficult (and frequently incorrect) choices about which messages to deliver and which ones might harm users. Senders remain largely unaware of problems with their authentication practices because there's no scalable way for them to indicate they want feedback and where it should be sent. Those attempting new SPF and DKIM deployment proceed very slowly and cautiously because the lack of feedback also means they have no good way to monitor progress and debug problems. DMARC addresses these issues, helping email senders and receivers work together to better secure emails, protecting users and brands from painfully costly abuse. How Does DMARC Work? A DMARC policy allows a sender to indicate that their emails are protected by SPF and/or DKIM, and tells a receiver what to do if neither of those authentication methods passes - such as junk or reject the message. DMARC removes guesswork from the receiver's handling of these failed messages, limiting or eliminating the user's exposure to potentially fraudulent & harmful messages. DMARC also provides a way for the email receiver to report back to the sender about messages that pass and/or fail DMARC evaluation. Who Can Use DMARC? DMARC policies are published in the public Domain Name System (DNS), and available to everyone. Because the specification is available with no licensing or similar restriction, any interested party is free to implement it. Source: DMARC.org - Domain-based Message Authentication, Reporting and Conformance
-
Uite: https://dl.dropboxusercontent.com/s/f7wdnq5hqnqlwp0/IMG.jpg Ai in partea stanga doua servere, fiecare cu nginx as proxy, iar in dreapta site-ul clientului protejat vizitatori -> nginx (proxy/frontend) -> website (backend) Ere o ironie cu proxy-ul pus peste rst.
- 9 replies
-
- cdn gratuit
- free cdn
-
(and 2 more)
Tagged with:
-
Pauza 3 zile. Multumim pentru vizita
-
Tinand cont de nota pe care ai dat-o, permite-mi sa aduc cateva comentarii constructive. - Serviciul oferit se afla intr-o singura retea, si anume, AS39345 (bts telecom). El este interconectat cu AS30890 si AS8751, adica Mediasat prin care are conectivitate externa si Interlan care este internet exchange in Romania. Practic, pe extern, au un singur upstream provider. - Nu exista redundanta iar Tehnologia CDN nu are nicio legatura cu un sistem web dual strat (frontend+backend) - Nu exista nicio solutie anycast - Datele clientilor pot fi interceptate in frontend (practic, site-ul clientului devine un backend) Daca vrei sa oferi asta ca serviciu, iti trebuie mai mult decat un nginx instalat pe un server la bts telecom: - Numar AS pentru routare dinamica - Cel putin un prefix de adrese ip - Acorduri pentru peering cu cati mai multi furnizori - Anuntarea prefixului de adrese ip prin numarul tau as in mai multe localtii (anycast) - Cat mai multe servere - Latime de banda cat cuprinde. Bts telecom au 2-3gbps toata banda externa. PS: - Scoate pishingul ala de proxy de pe rst, nu avem nicio garantie ca nu faci sniffing la date - Vezi ca serialul tau din DNS zice ca suntem in anul 1402
- 9 replies
-
- cdn gratuit
- free cdn
-
(and 2 more)
Tagged with:
-
Baieti, va recomand sa va rezolvati problema pe cale amiabila. Nu are rost sa va certati pe 6 euro si un stealer, serios.
-
A XSS Vulnerability in Almost Every PHP Form I’ve Ever Written
aelius replied to Nytro's topic in Tutoriale in engleza
Nu vad cum ar putea merge. GET /example.php"><script>alert('xss');</script> Asta inseamna GET /example.php%22%3E%3Cscript%3Ealert('xss');%3C/script%3E Va returna intotdeauna 404. Cel mai probabil functioneaza doar in conditia asta, desi eu cred ca intotdeuna va returna 404. <form action="<?php echo $_SERVER['PHP_SELF']; ?>"> -
Antena parabolica home-made internet-wireless 33dbi-2,4Ghz
aelius replied to bruttus139's topic in Wireless Pentesting
Da, lasa-mi pe PM un email sau un numar de telefon. Se poate factura, garantia lucrarii, etc. -
Ai luat ban de la Nytro si imediat ti-ai facut alt user sa ne sfidezi. Vad ca ti-ai trantit si avatar acum. Serios, mergi acolo si fai ce vrei, activitatea ta la noi este 0. Aseara injurai oamenii pe chat. Te-n cacat, ti-am spus ca nu suport soimanitii.
-
Toate distributiile de linux sunt disponibile atat pe 32 biti cat si pe 64. In legatura cu windows boot time, 3.3 secunde este imposibil. Nici cu doua SD-uri OCZ Vertex in raid 0 nu scoti timpul ala. Am testat debian pe un sistem cu 4 SSD Intel 520 in raid 10 si scoteam sub doua secunde boot time
-
Nene, scoate din lista SunOS (Solaris) si FreeBSD. Astea nu sunt distributii de linux. Tot ce nu e construit pe nucleul de linux (kernel) facut de Linus Torvalds nu este linux.
-
Aparatu faci ceva pe el. Unde e fier si rugina, iese si muschiu. Mergi pe la batrani care stau la curte, sparge-le lemne, trage acasa de gantere, etc...
-
Quick fix 'NMI received for unknown reason 21 on CPU' on linux. Errors: pluto:~# dmesg |tail -n 3 [2061941.029736] Uhhuh. NMI received for unknown reason 21 on CPU 3. [2061941.029779] Do you have a strange power saving mode enabled? [2061941.029821] Dazed and confused, but trying to continue The solution: pluto:~# sysctl -w kernel.nmi_watchdog=0 kernel.nmi_watchdog = 0 pluto:~# echo "kernel.nmi_watchdog=0" >> /etc/sysctl.conf Read more about NMI: Non-maskable interrupt - Wikipedia, the free encyclopedia
-
Cere un sfat lui Valentin, sigur te poate ajuta. Vezi sa nu folosesti limbaj de mahala sau de mircar. ValentinBosioc.com | Antrenor Personal | Instructor Aerobic-Fitness | Tehnician Nutri?ionist Sunt pasionati, dar fiecare tragem dupa corpul nostru. Avem metabolism diferit.
-
Stimati moderatori, va rog sa cititi punctul 13 din regulament. 13.Serviciile asemanatoare celor facute Sticky nu se vor mai aproba.