evolve or die
Showing 1 - 25 of 109 RSS Feed

Files

Mandos Encrypted File System Unattended Reboot Utility 1.5.4
Posted May 20, 2012
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: Bugfixes (some for regression bugs) for the server and related utilities.
tags | remote, root
systems | linux, unix
MD5 | 38b0f49d62243d301a132685d7f70ab3
Mandos Encrypted File System Unattended Reboot Utility 1.5.3
Posted Jan 16, 2012
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: The D-Bus property se.recompile.Client.LastCheckerStatus has been added to Server and is used in mandos-monitor to fix a display logic bug. Client bugs in the example "bridge" network hook have been fixed.
tags | remote, root
systems | linux, unix
MD5 | d65283693e462822936a274dee81b499
Mandos Encrypted File System Unattended Reboot Utility 1.5.2
Posted Jan 9, 2012
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: This release removes the recently added D-Bus signal "se.recompile.Mandos.NewRequest"; its implementation was buggy and its utility questionable.
tags | tool, remote, root
systems | linux, unix
MD5 | ab6ab28cf7523469ca537c452f6636b4
Mandos Encrypted File System Unattended Reboot Utility 1.5.1
Posted Jan 2, 2012
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: This version includes the intro (8mandos) manual page, which was missing since the migration from the README file in version 1.4.0.
tags | remote, root
systems | linux, unix
MD5 | c37ef0623d49f6fac7d0c798eee0e0b6
Mandos Encrypted File System Unattended Reboot Utility 1.4.1
Posted Oct 16, 2011
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: This release makes D-Bus properties settable again and handle checkers for disabled clients correctly.
tags | remote, root
systems | linux, unix
MD5 | 01041083433086174f3866f98d5eee73
Mandos Encrypted File System Unattended Reboot Utility 1.4.0
Posted Oct 11, 2011
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: In the client, this release fixes a message about "rmdir: Directory not empty". In the server, it adds a special extra time extension when a client receives a password, so default timeout values have now been tightened. There are new D-Bus properties and new D-Bus bus and interface names to reflect a domain name change.
tags | tool, remote, root
systems | linux, unix
MD5 | c550cc7148618525f19f1683bbb10aa7
Vlock Session Locker 2.2.3
Posted Sep 19, 2011
Authored by Frank Benkstein

vlock is a program to lock one or more sessions on the Linux console. This is especially useful for Linux machines which have multiple users with access to the console. One user may lock his or her session(s) while still allowing other users to use the system on other virtual consoles. If desired, the entire console may be locked and virtual console switching disabled.

Changes: This release fixes vlock not reacting to input when started in the background from bash.
systems | linux, unix
MD5 | 378175c7692a8f288e65fd4dbf8a38eb
Mandos Encrypted File System Unattended Reboot Utility 1.3.1
Posted Jul 28, 2011
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: The client retries all Mandos servers found indefinitely.
tags | remote, root
systems | linux, unix
MD5 | c0a4f4f3993179c04dde4aa9e695dc69
Openwall tcb Suite 1.1
Posted Jul 17, 2011
Site openwall.com

The tcb suite implements the alternative password shadowing scheme on Openwall GNU/*/Linux (Owl) which allows many core system utilities (passwd(1) being the primary example) to operate with little privilege. It is being made available separately from Owl primarily for use by other distributions. This package contains three core components of the tcb suite: pam_tcb (a PAM module which supersedes pam_unix), libnss_tcb (the accompanying NSS module), and libtcb (a library for accessing tcb shadow files, used by the PAM and NSS modules as well as by user management tools on Owl).

Changes: The default hash encoding prefix has been changed from "$2a$" to "$2y$" (which requires crypt_blowfish 1.2 or newer).
systems | linux, unix
MD5 | b4ac25f22fd3bdc9eb32ff6f97f022cd
Mandos Encrypted File System Unattended Reboot Utility 1.3.0
Posted Mar 8, 2011
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: Server and utilities have been updated for Python 2.6. Client bugfixes - the password-prompt plugin does not conflict with Plymouth. initramfs is also updated when purging a package.
tags | remote, root
systems | linux, unix
MD5 | 44a79efe5219d26f3681ed3e0033970c
Linux Security Checklist Tool 2.0.3
Posted Feb 3, 2011
Authored by situ

Linux Security Checklist is a perl script that audits a given Linux host and provides recommendations for security enhancements.

tags | tool, perl, checklist, hardening
systems | linux, unix
MD5 | de61268c0257d238151dfd0a513a6d4c
Mandos Encrypted File System Unattended Reboot Utility 1.2.3
Posted Oct 12, 2010
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: This release has a server bugfix: it also exposes the D-Bus API in non-debug mode.
tags | remote, root
systems | linux
MD5 | 347047d222df6f9760ebc9c7461f16b4
Mandos Encrypted File System Unattended Reboot Utility 1.2.2
Posted Oct 8, 2010
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: This is a minor release to fix compilation of the client with non-Linux kernels.
tags | remote, root
systems | linux
MD5 | 3cb27c4cdad6f817daf599e7218024cd
Mandos Encrypted File System Unattended Reboot Utility 1.2
Posted Sep 30, 2010
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: The client has a new "plymouth" plugin to ask for a password using the Plymouth graphical boot system. The server uses a new D-Bus API. The following new control utilities were added using the new D-Bus API: mandos-ctl, a command-line based utility; and mandos-monitor, a text-based GUI interface.
tags | remote, root
systems | linux
MD5 | 41dc619b509ae626795dcaaa794eebde
Openwall tcb Suite 1.0.6
Posted Jun 14, 2010
Site openwall.com

The tcb suite implements the alternative password shadowing scheme on Openwall GNU/*/Linux (Owl) which allows many core system utilities (passwd(1) being the primary example) to operate with little privilege. It is being made available separately from Owl primarily for use by other distributions. This package contains three core components of the tcb suite: pam_tcb (a PAM module which supersedes pam_unix), libnss_tcb (the accompanying NSS module), and libtcb (a library for accessing tcb shadow files, used by the PAM and NSS modules as well as by user management tools on Owl).

Changes: A faulty check for sparse files has been removed as needed for compatibility with modern filesystems such as btrfs.
systems | linux
MD5 | 97175cefbdced8a2f6ba7ddbfd699bd5
Openwall tcb Suite 1.0.5
Posted Feb 26, 2010
Site openwall.com

The tcb suite implements the alternative password shadowing scheme on Openwall GNU/*/Linux (Owl) which allows many core system utilities (passwd(1) being the primary example) to operate with little privilege. It is being made available separately from Owl primarily for use by other distributions. This package contains three core components of the tcb suite: pam_tcb (a PAM module which supersedes pam_unix), libnss_tcb (the accompanying NSS module), and libtcb (a library for accessing tcb shadow files, used by the PAM and NSS modules as well as by user management tools on Owl).

Changes: The .data section size has been reduced by 256 KB when tcb is compiled against Linux 2.6 kernel headers.
systems | linux
MD5 | f76081990891c19e529f00f4b9477546
Openwall tcb Suite 1.0.4
Posted Feb 12, 2010
Site openwall.com

The tcb suite implements the alternative password shadowing scheme on Openwall GNU/*/Linux (Owl) which allows many core system utilities (passwd(1) being the primary example) to operate with little privilege. It is being made available separately from Owl primarily for use by other distributions. This package contains three core components of the tcb suite: pam_tcb (a PAM module which supersedes pam_unix), libnss_tcb (the accompanying NSS module), and libtcb (a library for accessing tcb shadow files, used by the PAM and NSS modules as well as by user management tools on Owl).

Changes: A non-security buffer overflow bug with more than NGROUPS_MAX groups per user has been fixed. The Makefiles have been cleaned up.
systems | linux
MD5 | 842de6e620df19245057d490e447de7c
Mandos Encrypted File System Unattended Reboot Utility 1.0.14
Posted Oct 27, 2009
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: This release enables building without -pie and -fPIE if BROKEN_PIE is set.
tags | remote, root
systems | linux
MD5 | 8b16753b105c1f61ea7e665d09fe2304
Mandos Encrypted File System Unattended Reboot Utility 1.0.13
Posted Oct 23, 2009
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: This release has a client security bugfix.
tags | remote, root
systems | linux
MD5 | d29aab43926d3bade3a4b3273e2be96c
Mandos Encrypted Root File System
Posted Sep 19, 2009
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: In the client, network interface renaming by "udev" is allowed. User-supplied plugins are now installed correctly. If usplash was used but the password was instead provided by the Mandos server, the usplash daemon used to ignore the first command passed to it. This has been fixed. The "--userid" and "--groupid" options in "plugin-runner.conf" now work. In the server, the LSB header in the init.d script has been fixed to make dependency-based booting work. A client receiving its password now also counts as if a checker was run successfully (i.e. the timeout timer is reset).
tags | remote, root
systems | linux
MD5 | 84c1b523e819c7ab01c80bbdaff0403e
Ksplice Linux Kernel Updater
Posted Aug 24, 2009
Authored by Anders Kaseorg | Site ksplice.com

Ksplice is practical technology for updating the Linux kernel without rebooting. It enables you to avoid the disruptive process of rebooting for kernel security updates and bugfixes. By making it easy to keep your systems up to date, Ksplice helps you avoid the security and stability risks of running out-of-date software.

Changes: This release adds support for applying an already unpacked update tree. It fixes ksplice-create when installed to a prefix other than /usr/local. It improves stack check completeness for self-restarting syscalls.
tags | kernel
systems | linux
MD5 | ceb4301c51d9b075731050b57d9ecd80
Ksplice Linux Kernel Updater
Posted Jul 13, 2009
Authored by Anders Kaseorg | Site ksplice.com

Ksplice is practical technology for updating the Linux kernel without rebooting. It enables you to avoid the disruptive process of rebooting for kernel security updates and bugfixes. By making it easy to keep your systems up to date, Ksplice helps you avoid the security and stability risks of running out-of-date software.

Changes: Improved error handling in the Ksplice Perl utilities. This release has been updated for kernel 2.6.30. Several bugs in the handling of bugline patches have been fixed.
tags | kernel
systems | linux
MD5 | 25679a58ea1dbfd74f84ea373c64ef8a
Mandos Encrypted Root File System
Posted May 19, 2009
Authored by Teddy | Site fukt.bsnet.se

The Mandos system allows computers to have encrypted root file systems and at the same time be capable of remote or unattended reboots. The computers run a small client program in the initial RAM disk environment which will communicate with a server over a network. All network communication is encrypted using TLS. The clients are identified by the server using an OpenPGP key that is unique to each client. The server sends the clients an encrypted password. The encrypted password is decrypted by the clients using the same OpenPGP key, and the password is then used to unlock the root file system.

Changes: This is a security bugfix release.
tags | remote, root
systems | linux
MD5 | 0cf5ff497d3d6c313513e7cb18c50a32
SKPD Running Process Dumping Tool
Posted Apr 15, 2009
Authored by Albert Sellares | Site wekk.net

SKPD is a tool that will dump a running process to an executable ELF file. Written to work on various flavors of Linux.

systems | linux
MD5 | 5ab793154fbbd478a3c7b0142eb8cd13
Openwall tcb Suite
Posted Apr 9, 2009
Site openwall.com

The tcb suite implements the alternative password shadowing scheme on Openwall GNU/*/Linux (Owl) which allows many core system utilities (passwd(1) being the primary example) to operate with little privilege. It is being made available separately from Owl primarily for use by other distributions. This package contains three core components of the tcb suite: pam_tcb (a PAM module which supersedes pam_unix), libnss_tcb (the accompanying NSS module), and libtcb (a library for accessing tcb shadow files, used by the PAM and NSS modules as well as by user management tools on Owl).

Changes: Child processes spawned by pam_tcb will now always use _exit(2) rather than exit(3) to avoid triggering side effects. When changing passwords, pam_tcb will now fsync(2) the temporary file prior to renaming it over the actual shadow file, as needed on filesystems with not entirely atomic rename(2) (XFS).
systems | linux
MD5 | c57cb7f7cdd723e87c426c07ec7ad7b6
Page 1 of 5
Back12345Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Vote Likely On Facebook Privacy Policy Changes
Posted May 22, 2012

tags | headline, privacy, facebook, social
Anonymous Hacks Bureau Of Justice, Leaks 1.7GB Of Data
Posted May 22, 2012

tags | headline, hacker, government, usa, anonymous
Backdoor Sniffed In ZTE's US Android Smartphones
Posted May 22, 2012

tags | headline, phone, google, backdoor
Defend Your Phone Against Loose Networks? There's An App For that
Posted May 22, 2012

tags | headline, hacker, phone, google
Researchers Crack Samsung Galaxy S3 Handset
Posted May 21, 2012

tags | headline, hacker, linux, phone
T-Mobile Slip Exposes 1,100 Email Addresses
Posted May 21, 2012

tags | headline, privacy, phone, data loss
Google Must Answer EU Antitrust Concerns Over Search
Posted May 21, 2012

tags | headline, government, privacy, google
Anonymous Takes Out Indian CERT As Attacks Continue
Posted May 21, 2012

tags | headline, hacker, government, india, denial of service, anonymous
FBI Looking At Law Making Websites WIretap Ready
Posted May 19, 2012

tags | headline, government, privacy, fbi
Facebook Sued For $15 Billion Over Alleged Privacy Infractions
Posted May 19, 2012

tags | headline, privacy, facebook, social
View More News →
packet storm

© 2012 Packet Storm. All rights reserved.

close