System vulnerability

Hi; I am a longtime Discussions reader but first time contributor; this time I couldn't find an answer in what has been said before!
I have had to get my desktop and router checked for security vulnerabilities and the automated system is failing me. No one at the security company or my ISP will help, saying that I need to get a tech pro in to solve the issues. If that's really the case, I'll do it, but I wanted to be sure that it's not something that would take me 2 minutes if I just knew how.
Here is the message I am getting;
"you need to configure your DNS server to restrict recursive queries to the hosts that should use this nameserver (such as those of the LAN connected to it). If you are using bind 8, you can do this by using the instruction 'allow-recursion' in the 'options' section of your named.conf If you are using bind 9, you can define a grouping of internal addresses using the 'acl' command Then, within the options block, you can explicitly state: 'allow-recursion { hostsdefined_inacl }' If you are using another name server, consult its documentation. You will also want to make sure that the DNS cache cannot be queried anonymously"
Can anyone please tell me how I access the DNS server to reconfigure it as suggested?
Thanks in advance
Nick

Welcome to the forums!
Who is sending you that message?
I have had to get my desktop and router checked for security vulnerabilities and the automated system is failing me.
Checked by whom and why? What security company?
Adding DNS codes to your Network Settings, should gives good results in terms of speed-up as well as added security:
Open System Preferences/Network. Double click on your connection type, or select it in the drop-down menu, and in the box marked 'DNS Servers' add the following two numbers:
208.67.222.222
208.67.220.220
(You can also enter them if you click on Advanced and then DNS)
(An explanation of why that is both safe and a good idea can be read here: http://www.labnol.org/internet/tools/opendsn-what-is-opendns-why-required-2/2587 /
Open DNS also provides an anti-phishing feature: http://www.opendns.com/solutions/homenetwork/anti-phishing/ )
Wikipedia also has an interesting article about Open DNS:
http://en.wikipedia.org/wiki/OpenDNS
Whilst in System Preferences/Network you should also turn off 'IPv6' in your preference pane, as otherwise you may not get the full speed benefit (the DNS resolver will default to making SRV queries). If you want to know what IPv6 is:
This is Apple's guidance on iPv6:
http://docs.info.apple.com/article.html?path=Mac/10.5/en/8708.html
Click on Apply Now and close the window.
Restart Safari, and repair permissions.

Similar Messages

  • Are Apple's internet payment systems vulnerable to the Heartbleed virus?

    Are Apple's internet payment systems vulnerable to the Heartbleed virus that apparently has infected https connections for banks and other businesses?

    If anyone were vulnerable, they would not announce it. Almost always, these announcements come from interent security firms and watchdog groups.
    and if they did announce it, it would be after it was fixed.

  • System Keychain Vulnerability

    I have my login keychain secured by a separate password. However, the System Keychain contains the password to my network and time capsule and is not secured by a separate password. I only need to open Keychain Access, unlock the System Keychain, and enter my login password and I have access to the items.
    I thought the idea behind the System Keychain was to store passwords needed for the system independent of the user and that these passwords would be secured by a system password known only to the OS. The fact that I can use my login password to access these keychain items makes the second password for my login keychain irrelevant for my network and time capsule.
    Am I missing something..?

    Someone takes my Mac and is able to guess or otherwise break my login password. I am still protected for my login keychain by a second, stronger password.
    As I said before, even if your login keychain uses exactly the same password as your login password, resetting the login password will not help an attacker break into that keychain. The attacker would have to guess your login password to get access to that keychain. Of course, if you've chosen such a poor password that someone could guess it, you can hardly call that a system vulnerability!
    however, being mac-savvy, the thief opens keychain access and selects my *System* keychain and unlocks it. It asks for a password and the thief enters my login password.
    Again, this relies on the thief knowing your login password. However, I'm not sure what the effects of resetting the login password would be on the System keychain. I would think that the same thing would apply and you'd lose access to those passwords. But since this keychain has a different purpose than the others, maybe not. The only way to know for sure would be to test it.
    the System Keychain only contains passwords which are needed across all users, but these include the network and time capsule passwords which are pretty critical...
    That's assuming that resetting the password gives access, which may not be the case. Even if that is the case, those passwords are not really critical... choose a unique password for these things that you don't use for anything else. Your scenario of having someone steal your laptop yet stay on-site and mess with your Time Capsule is a bit silly. The thief already has your machine, so there's nothing on the Time Capsule that they won't already have.

  • Tried to download latest update, system not compatible, now browser does not work even when I tried to download it again. I have bookmarks I'd like back.

    I currently have a Mac, version 10.5.8. My Firefox had been running slow so I tried to download the latest version. When it had downloaded, a message popped up saying that this version of Firefox is not compatible with my system. Well, 'no harm no foul' I figured and I tired to go back to my previous browser.
    But when I went to click on it, there was a large circle with a line through it. I couldn't open anything. Firefox had effectively been deleted from my computer.
    Now it's ok if I can't run Firefox anymore but I had thousands of bookmarks, compiled over years that I would really like back. And I have no idea how to do that.
    Any help would be greatly appreciated.

    The last version of Firefox available for OSX 10.5 was Firefox 16. Firefox versions 17-20 require OSX 10.6, 10.7 or 10.8 as well as an Intel processor (which you have).
    *System requirements Firefox 20 - https://www.mozilla.org/en-US/firefox/20.0/system-requirements/
    Running an old version of your OS is dangerous and makes your system vulnerable to attack by hackers. Visit the Apple site to see about upgrading to a newer major version of OSX.
    Using an old version of any internet-facing application on the internet makes your system vulnerable. You should always keep your system completely up to date.

  • System Preference items randomly unlock without my authorization

    Recently I noticed that the lock at the bottom of my network and sharing preferences has been unlocking without my authorization. I normally leave the preferences locked and then if I need to make any changes I unlock it. I then lock it back up after I am finished. However, about three days ago I noticed that the lock was unlocked. I tried to lock it but it would not lock so I restarted the computer and was then able to lock it. I figured that some "gremlin" was in my machine. However, last night and this morning, I noticed that the lock was again unlocked. This time I was able to lock it without a restart.
    Any takers on this issue. I just want to make sure that my computer has not been hacked remotely and that someone is not unlocking these preferences in order to execute some malicious activity on my computer.
    Thanks in advance for the help.

    Thomas A Reed wrote:
    If someone had hacked your machine, that little lock - and those preferences, for that matter - would be of little interest or consequence. The fact that it wouldn't lock (+Why wouldn't it lock? What happened when you tried?) but worked fine after a restart suggests to me you had a glitch of some kind. Not sure what, exactly.
    When I clicked on the lock it did nothing other than stay unlocked. The restart fixed that issue but as mentioned in my original post, I found the lock again unlocked on two occasions after that. However, on these two subsequent occasions, I was able to engage the lock without a restart.
    Thomas A Reed wrote:
    Out of curiosity, why are you concerned about those locks? The fact that they're misbehaving on your machine aside, I've always found them rather silly, personally. If someone has access to your account, they can do worse than change your settings, and there are better ways of keeping trusted-but-unreliable users (like kids) from messing up your settings (namely, not letting them use your account in the first place).
    This is good to know. I wrongly assumed that these locks were an important security feature to prevent unauthorized changes to system components that would leave my system vulnerable to unauthorized use.
    The first thing I will do is trash the system preferences plist and restart. That seems to be the prevailing recommendation thus far.
    Thanks,
    Sean

  • Outgoing mail server setup

    Hello everyone,
    I am having problems with setting up the e-mail response.
    How do you authenticate the smtp server from FCS?
    In the outgoing mail server, I put "smtp.broadband.myISPprovider.com" - string I got from them. There is nowhere in FCS to put user name and password for authentication.
    The e-mail response does not even show in the "View All jobs" window like every other response.
    I tried every flavor of the string, including the port :587 , my e-mail address and such with no luck.
    What am I missing?
    If anyone could help, please.
    Thanks
    Radek

    Thanks Simon,
    I've just spoken to Apple and sure enough, the outgoing mail needs to go through an open relay server for it to work. Well..., open relay servers are getting blacklisted by most ISPs because of all the spam. I also spoke to my ISP and they do not offer any open relay so I'm stuck. I don't want to leave our system vulnerable by going through some shady open mail server. Apple needs to figure out how to make the authentication possible from FCS.
    Thanks again
    Radek

  • Adobe Reader 11.0.04 incompatible with Windows 7

    Downloaded Adobe Reader 11.0.04 it is incapatible with Windows 7 professional (64 bit).  When starting the program, it  will open for about 2-3 seconds then closes.  unable to access the edit tab or other tabs to change settings.  already tried with and without anti-virus installed and uninstalled so it is in conflict with Windows 7.
    also tried the fix capatibility menu with no luck.
    Any ideas on how to fix?

    Hi,
    It seems you have issues with Reader launch. Which version did you have earlier?
    Please try updating Reader to latest 11.0.05.
    http://www.adobe.com/support/downloads/detail.jsp?ftpID=5674
    Do you have NVIDIA driver on your machine? If yes, Please try upgrading it to latest via link below
    http://windows.microsoft.com/en-us/windows/update-drivers-recommended-links#update-drivers -recommended-links=windows-7
    If that is not the case, then please try this adding this registry
    [HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\11.0\Privileged]
    "bProtectedMode"=dword:00000000
    It will disable the protected mode and then try launching Reader
    Note: You should switch "ON" protected mode after verifying the problem. Purpose of Reader XI Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.

  • I recently udpated to Adobe Reader 11.0.7 and now I can not open signature protected documents.  ?Porque?  What is the fix?

    @

    Pasting all the conversation so that others can get help from the discussion.
    Hi David,
    Can you please try disabling protected mode and see if you are able to open these files.
    To disable protected mode:
    Select Edit menu -> Preferences -> Ubcheck Enable Protected Mode at startup and restart Adobe Reader.
    Note:
    "Purpose of Reader XI Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.”
    Please turn back on the protected mode checkup after this testing.
    This seems to be a fix!  Thank you for your help.  Now comes the tricky part.    I have to deploy this as a package across a gov. network using SCCM.  How do I get this to all the users with "enable protected mode..." unchecked.  I can't give them something that does not work out of the box.
    Hi David,
    It is not advisable to turn off protected mode as Purpose of Reader XI Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.
    Please let me know few details so that I can reproduce the issue at my end.
    1) Will it be possible for you to send any test file in which the issue is reproducible.
    2) Can you please check where the certificate (from which the PDF is signed) is stored. (Is it stored at Trusted Root Certificate Authorities or some other store?)
    3) Do you use any other tool other than Adobe Reader plugin to digitally sign/ open a PDF ? (Is any tool other than Adobe Reader is involved?)
    Thanks,
    Shakti K
    Hi David,
    Please do the below test to see if the issue occurs due to signatures applied to the PDF document.
    1) Launch Reader go to Edit -> Preferences -> Security (Enhanced) and check "Enable Protected Mode at startup" and clock OK.
    2) Goto Edit -> Preferences -> Signatures and select Verification . Uncheck "verify signatures when the document is opened." and click OK.
    3) Restart Adobe Reader
    4) Now open the digitally signed protected PDF file in which the issue was observed.
    Please let mw know the observation.
    Thanks,
    Shakti K
    It has nothing to do with the signatures applied.  Any document with a
    signature block, even blank documents, will not open unless the "enable
    protected documents at start up" is unchecked.  It is the same across the
    board for all documents weather signed or unsigned with a signature block.  I
    have it working on my machine, I just need to figure out how to install over
    the  network with the block unchecked during installation.
    1.  Attached form
    2.  I am not sure where reader pulls the cert from.  They are all in a trusted
    root CA because all certs are miiitary
    3.  Other tools used
    ActivClient CAC x64  (6.2)
    e-Sign Desktop 6.6
    Thanks again for the support
    Thanks a lot for all the information.
    A doubt : If the document is not signed (like you mentioned unsigned documents also face the same issue) then how exactly the document is protected. Is it protected using any certificate?
    I cannot find any attached PDF form . Please resend it again.
    I am unable to reproduce the error now.  Even with the protected block check.
    Im not sure if there was a Group Policy change that enabled this.  As of now,
    it looks like the issue has been resolved.  I appreciate all the help.

  • Adobe Reader X creates problems w/coldfusion pdf forms

    Ever since I upgraded to Adobe Reader X, I can not open any of my odf forms on my webapp.  these forms were designed with Acrobat Pro 8.0 and are prepopulated by coldfusion server.  When I browse to one since upgrade, I get the following message:
    To view the full contents of this document, you need a later version of the PDF viewer. You can upgrade
    to the latest version of Adobe Reader from www.adobe.com/products/acrobat/readstep2.html
    Obviously, I have the latest version and Acrobat 8 and Acrobat 9 readers both worked.  Is there an easy work around or a way to get rid of Acrobat X and go back?

    Could you please try turning off reader X protected mode and check if you continue to see the problem?
    You could turn off protected mode using following steps:
    1. Launch Reader X and select Edit->Preferences...
    2. Select General from left navigation
    3. Under application startup uncheck "Enable Protected Mode at Startup"
    Note: You should switch "ON" protected mode after verifying the problem. Purpose of Reader X Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.

  • Error 1324: with adobe reader 11.0.04

    Win 7 Pro 64bit machines. Whether I attempt to update or remove the reader i get the following error.
    Error 1234: The path to my documents or the volume is invalid, please enter again.
    Both machines this has happened to also have Adobe Pro 9/11.  I believe both readers came with the WDS image.
    Thank you, j
    Message was edited by: niblet090966

    Hi,
    It seems you have issues with Reader launch. Which version did you have earlier?
    Please try updating Reader to latest 11.0.05.
    http://www.adobe.com/support/downloads/detail.jsp?ftpID=5674
    Do you have NVIDIA driver on your machine? If yes, Please try upgrading it to latest via link below
    http://windows.microsoft.com/en-us/windows/update-drivers-recommended-links#update-drivers -recommended-links=windows-7
    If that is not the case, then please try this adding this registry
    [HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\11.0\Privileged]
    "bProtectedMode"=dword:00000000
    It will disable the protected mode and then try launching Reader
    Note: You should switch "ON" protected mode after verifying the problem. Purpose of Reader XI Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.

  • Adobe Reader 11.0.04 slow for "save as"

    Since upgrading to Adobe Reader 11.0.04 on our Server 20008 R2 RDS server, when users open an attached PDF in Outlook 2007, then do a "save as", the box takes 20-30 seconds to come up.  If they right-click on the attachment in Outlook and clicxk "save as", it is instant.  They need to open first to see where to save it on the network, as well as the file name to save it as.  PLEASE HELP!

    Hi,
    It seems you have issues with Reader launch. Which version did you have earlier?
    Please try updating Reader to latest 11.0.05.
    http://www.adobe.com/support/downloads/detail.jsp?ftpID=5674
    Do you have NVIDIA driver on your machine? If yes, Please try upgrading it to latest via link below
    http://windows.microsoft.com/en-us/windows/update-drivers-recommended-links#update-drivers -recommended-links=windows-7
    If that is not the case, then please try this adding this registry
    [HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\11.0\Privileged]
    "bProtectedMode"=dword:00000000
    It will disable the protected mode and then try launching Reader
    Note: You should switch "ON" protected mode after verifying the problem. Purpose of Reader XI Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.

  • Pdf files will not open on back up drive

    I have windows xp pro. I am using the latest version of adobe reader x. Adobe reader works good on c: drive but when I copy and paste pdf files from c to a external hard drive as a back up adobe reader says it can't open because there was an error opening it. The external drive is a mybook world. what do i need to do to be able to open them on the external drive

    Could you please try turning off reader X protected mode and check if you continue to see the problem?
    You could turn off protected mode using following steps:
    1. Launch Reader X and select Edit->Preferences...
    2. Select General from left navigation
    3. Under application startup uncheck "Enable Protected Mode at Startup"
    Note: You should switch "ON" protected mode after verifying the problem. Purpose of Reader X Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.

  • Reader X - Holds closed files if appear in splash screen

    Issue:
    Slightly complex issue - sorry
    1. reader is open
    2. files have been opened and closed
    3. no files are now open in reader but original instance is stll running
    4. new splash screen shows a list of files that can be opened (shortcuts ?)
    5. using 995 to 'print' a file to the screen from a CAD program
    6. Reader displays the new file
    7. Attempting to save the file, with the same name as a previous file, cause an access error, even thought the original file is closed
    It appears that Reader X retains the recently opened file names and assumes they are still open and won't allow a save, even when no files are open in reader!!!
    This appears to be an issue with the implementation of the splash screen. This screen appears to be present regardless of any files being opened.
    Looks like the developers haven't thought this one through, although it is a somewhat obscure bug.
    Note if reader has been closed then there is no issue - previous files do not remain linked in memory even though they may appear on the splash screen.
    I have reverted to 9
    Any thoughts???
    Regards
    Gigo

    Could you please try turning off reader X protected mode and check if you continue to see the problem?
    You could turn off protected mode using following steps:
    1. Launch Reader X and select Edit->Preferences...
    2. Select General from left navigation
    3. Under application startup uncheck "Enable Protected Mode at Startup"
    Note: You should switch "ON" protected mode after verifying the problem. Purpose of Reader X Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.

  • VERSION "completed" Indicator not restricting further GR and IR of PO

    Dear SAP Gurus,
    (Sorry, re-creating the Post as the earlier one was created by other user and is closed and i could not assign any points for valuable answers)
    In my case the Version management is behaving in a strange manner,
    I have created a PO value 1000 unit, and got it released,
    now change the value to 2000 it asks for version management i fill the Reason and Text field at Version Management TAB, the system is not asking me to Mark the Version completed indicator ( it is not a mandatory field)
    but my biggest issue is even though the Version Completed Indicator is not Ticked the PO could be used for subsequent process,
    there can be GR made for this PO, and also Invoice made for the same PO,
    system is allowing further processing of the PO where VERSION "completed" Indicator is not ticked.
    Please guide if there is any Config to restrict the PO where VERSION completed Indicator is not ticked from going to GR and IR,
    ( as per the previous posts i also feel making VERSION completed Indicator as mandatory field is not a best Practice, as it will cause new version for small changes in PO)
    Thanks and Regards
    S Kumar

    Hello,
    Thanks for ur reply,
    Yes we have release stratergy implemented, and our release is also not reset until we tick the version Completed Indicator,
    This is really making the system vulnerable as people can make any changes to Qty and Value and neither the system is asking for New version nor resetting the existing Release,
    and people can use the PO for Making GR and IR as well, which is not acceptable.
    Please guide if any Config is missing to check the same,
    Thanks and Regards,
    S Kumar

  • Reader XI.  Can't print protected mode doc

    Reader XI.  Can't print protected mode doc. Printer help says to disable protected mode, choose Edit > Preferences and click Security (Enhanced) on the left. Deselect Enable Protected Mode At Startup. Close Reader, restart it, and try to print the document again.  WHERE DO I FIND EDIT/PREFERENCES?

    Hi no221bbakr,
    Please describe the problem your are facing.
    Are you not able to print any PDF document? or is it something else?
    Why you need to disable protected mode.
    NOTE : Purpose of Reader XI Protected Mode is to keep your system safe from PDF based exploits and keeping protected mode OFF will leave your system vulnerable.
    Thanks,
    Shakti K

Maybe you are looking for

  • Help with Firewall and Internet Sharing

    I'm trying to use my Mac Mini with an Airport Extreme card, which is connected to the internet using Siemens Speedstream 4100 DSL modem, for Internet Sharing with a Windows (work) laptop. So, in the Sharing preferences panel: Share connection from: B

  • Creation of Order from copying existing order in B2B

    Hello Folks, Do we need to do the copying control setting in SAP CRM GUI and also any specific setting in SHOP MANAGEMENT PROFILE for copying exiting transaction on B2B screen? Regards

  • How to save Gradient in Swatches Panel

    Hi! I want to save a gradient in swatches panel. I dont find any option there. What to do?

  • Exchange 2013 Mailbox Using 2010 Public Folders

    Firstly, we will not be migrating completely to Exchange 2013 public folders for quite a while.  Our first Ex2013 server is in a small branch office and won't be appropriate to hose the PF's for the entire company.  Our environment consists of 8 Ex20

  • Add-on Manager crashes or freezes Firefox 15.0

    Ever since I (auto) upgraded to ver 15.0 yesterday, my Firefox browser is WRONG. The Add-on Manager freezes the application entirely. Buttons and graphics are missing from pages, the scroll bar on the right hand size is solid black. I've tried resett