07-10-2010, 10:56 AM
I should visit the dev board more often, it's funny here.
It seems you are underestimating the security risk here. LVP is running on a fast box with 100 mbit upload, thus an ideal machine for a botnet or fxp server. Running SSH is already a great potential risk due to brute force attacks. So we use strong non dictionary passwords to ensure our safety.
And the rcon password is used more then once, only shoru told us about it. You don't even need to be in-game to try to brute force the rcon password.
Although I kinda agree that our current rcon password is kinda long
But if /my rcon [on/off] works, almost nobody in the Management needs the real password.
Mostly because there was a bug in the gamemode or scriptfiles with wrong permissions which caused server crashes (Jeej for SA-MP error handling!) Or gamemode restarts, which an automatic restarter doesn't prevent.
And it is not like that we are crashing on a daily base nowdays. So a few hours downtime can happen.
Remember that we are still running this server on a volunteer base, not as a business model. So we don't guarantee a 100% uptime per year.
Quote:[13:54:21] <Jay> They make passwords too hard
[13:54:25] <Jay> like the SSH and rcon password
[13:55:21] <Matthias> well
[13:55:24] <Matthias> there has only been one ban
[13:55:28] <Matthias> by the Anti rcon hack thingy
[13:55:35] <Matthias> (3 times fail login = ban)
[13:55:39] <Matthias> and that was shoru
It seems you are underestimating the security risk here. LVP is running on a fast box with 100 mbit upload, thus an ideal machine for a botnet or fxp server. Running SSH is already a great potential risk due to brute force attacks. So we use strong non dictionary passwords to ensure our safety.
And the rcon password is used more then once, only shoru told us about it. You don't even need to be in-game to try to brute force the rcon password.
Although I kinda agree that our current rcon password is kinda long
But if /my rcon [on/off] works, almost nobody in the Management needs the real password.Quote:[13:53:47] <Jay> there isn't even an automatic restarter...We used to have one, which failed quite often.
Mostly because there was a bug in the gamemode or scriptfiles with wrong permissions which caused server crashes (Jeej for SA-MP error handling!) Or gamemode restarts, which an automatic restarter doesn't prevent.
And it is not like that we are crashing on a daily base nowdays. So a few hours downtime can happen.
Remember that we are still running this server on a volunteer base, not as a business model. So we don't guarantee a 100% uptime per year.