Filter out RADIUS secrets from NetScreens

Jee Kay jeekay at gmail.com
Fri Jun 24 07:52:25 UTC 2005


To protect the RADIUS secrets recovered from a NetScreen in the same
way we do for other devices, please apply this patch:

--- nrancid.orig        Thu Jun  9 01:36:24 2005
+++ nrancid     Fri Jun 24 02:46:57 2005
@@ -197,6 +197,12 @@
             ProcessHistory("ADMIN","","",
                "!set admin user $1 password <removed> privilege $3\n");
             next;
+        }
+       if (/^set auth-server (\S+) radius secret \S+$/ && $filter_pwds >= 1 ) {
+           ProcessHistory("ADMIN","","",
+               "!set auth-server $1 radius secret <removed>\n");
+           next;
+       }
        ProcessHistory("","","","$_");
     }
     $found_end=1;




More information about the Rancid-discuss mailing list