Last updated: 
4 months 1 week ago
Blog Manager
We are the Computer Security and Incident Response Team (CSIRT) for the Janet network. Part of Jisc's Security Operations Centre, our mission is to safeguard the current and future network security of Janet (steering the security policies for all Janet connections) and of our customers, creating a secure environment to conduct your online activities. Our primary function is monitor and resolve any security incidents that occur on the Janet network, with specialists tracking a range of platforms, including Unix, Linux and Windows.

Critical Vulnerability in FreeRADIUS

Monday, September 10, 2012 - 16:04
A critical vulnerability had been found in FreeRADIUS versions 2.1.10 - 2.1.12 with configurations using TLS-based EAP
methods (including EAP-TLS, EAP-TTLS, and PEAP) this allows an attacker to execute code on affected systems prior to authenticated.
 
In order to mitigate the vulnerability it is advisable to upgrade all affected systems to FreeRADIUS 2.2.0 as soon as possible.
 
Further details of this issue are available at http://www.pre-cert.de/advisories/PRE-SA-2012-06.txt