You can subscribe to this list here.
| 2001 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
(55) |
Oct
(44) |
Nov
(156) |
Dec
(123) |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2002 |
Jan
(130) |
Feb
(156) |
Mar
(162) |
Apr
(171) |
May
(97) |
Jun
(127) |
Jul
(58) |
Aug
(81) |
Sep
(86) |
Oct
(45) |
Nov
(41) |
Dec
(84) |
| 2003 |
Jan
(71) |
Feb
(87) |
Mar
(133) |
Apr
(152) |
May
(151) |
Jun
(232) |
Jul
(320) |
Aug
(237) |
Sep
(271) |
Oct
(536) |
Nov
(301) |
Dec
(393) |
| 2004 |
Jan
(393) |
Feb
(184) |
Mar
(314) |
Apr
(225) |
May
(139) |
Jun
(77) |
Jul
(87) |
Aug
(75) |
Sep
(139) |
Oct
(50) |
Nov
(8) |
Dec
(28) |
| 2005 |
Jan
(66) |
Feb
(63) |
Mar
(14) |
Apr
(14) |
May
(8) |
Jun
(23) |
Jul
(21) |
Aug
(6) |
Sep
(29) |
Oct
(55) |
Nov
(38) |
Dec
(8) |
| 2006 |
Jan
(5) |
Feb
(10) |
Mar
(1) |
Apr
(15) |
May
(32) |
Jun
(44) |
Jul
(11) |
Aug
(8) |
Sep
(9) |
Oct
(14) |
Nov
(4) |
Dec
(3) |
| 2007 |
Jan
(3) |
Feb
(3) |
Mar
(2) |
Apr
|
May
|
Jun
|
Jul
(35) |
Aug
(49) |
Sep
(8) |
Oct
(42) |
Nov
(44) |
Dec
(7) |
| 2008 |
Jan
(2) |
Feb
(7) |
Mar
(8) |
Apr
(80) |
May
(74) |
Jun
(29) |
Jul
(5) |
Aug
(7) |
Sep
(6) |
Oct
(1) |
Nov
|
Dec
|
| 2009 |
Jan
(8) |
Feb
(19) |
Mar
(3) |
Apr
(24) |
May
(22) |
Jun
(23) |
Jul
(8) |
Aug
(23) |
Sep
(8) |
Oct
(27) |
Nov
(52) |
Dec
(27) |
| 2010 |
Jan
(36) |
Feb
(29) |
Mar
(17) |
Apr
(28) |
May
(21) |
Jun
(4) |
Jul
|
Aug
(28) |
Sep
(18) |
Oct
(6) |
Nov
(34) |
Dec
(16) |
| 2011 |
Jan
(18) |
Feb
(12) |
Mar
|
Apr
|
May
(9) |
Jun
(1) |
Jul
(5) |
Aug
(5) |
Sep
(7) |
Oct
(16) |
Nov
(26) |
Dec
(17) |
| 2012 |
Jan
(6) |
Feb
(34) |
Mar
(52) |
Apr
(10) |
May
(3) |
Jun
|
Jul
|
Aug
(1) |
Sep
|
Oct
(4) |
Nov
(1) |
Dec
(4) |
| 2013 |
Jan
(5) |
Feb
|
Mar
|
Apr
(5) |
May
(4) |
Jun
|
Jul
|
Aug
(14) |
Sep
|
Oct
|
Nov
|
Dec
|
| 2014 |
Jan
|
Feb
(2) |
Mar
(5) |
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
(3) |
Dec
(11) |
| 2015 |
Jan
(5) |
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
(1) |
Sep
(1) |
Oct
(1) |
Nov
|
Dec
|
| 2016 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
(2) |
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
| 2017 |
Jan
(1) |
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
| 2018 |
Jan
(2) |
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
|
From: Diego T. <dt...@co...> - 2003-12-01 19:44:35
|
On Mon, Dec 01, 2003 at 02:20:44PM -0500, hzu...@ra... wrote: > Oh that's very confusing at the beginning, when I just think back until we > had the first working version. time passes very quickly :) > >user logs in. there is a small .bash_rc file that mounts the encrypted > >image > >on the home directory, and umounts it when logging out. > > That's not bad, but that only works with SSH or console logins, correct? right. but also you could make samba to work with this. i think there are a couple of options regarding shell scripts running just before a log-in (when the users authenticates) > >i'm testing it. i'll ask for help on a couple of days ;) btw, we need > >loop-AES > >v1.7 because it has the patches for the 2.4.22 kernel, and a small diff > >from > >loop-AES v2.0b to patch util-linux 2.12. hope that isn't a problem. > > Is v2.0b only for 2.6 Kernels ? no, it has 2.4.23 support, but is not compatible with 2.4.22, it doesn't patch cleanly, 4 or 5 rejects). -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dt...@co... - Madrid / España |
|
From: Diego T. <dt...@co...> - 2003-12-01 19:36:15
|
On Mon, Dec 01, 2003 at 02:18:11PM -0500, hzu...@ra... wrote: > > The protector is enabled for all compiles by default and has to be disabled > for some packages. > So the old stuff is correct, no stack smash protector when GCC got compiled > with it. > > clear? ok, i now understand :) -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dt...@co... - Madrid / España |
|
From: <hzu...@ra...> - 2003-12-01 19:30:36
|
On 11/30/2003 06:22:50 PM Diego Torres wrote: >if [ "$CONFIG_GCC_STACK_PROTECTOR" = "y" ]; then >FLAGS="CFLAGS_KERNEL=-fno-stack-protector" >fi > > >i've found this on some script files... is it ok? sounds strange... >for me this looks better: > >if [ "$CONFIG_GCC_STACK_PROTECTOR" != "y" ]; then >FLAGS="CFLAGS_KERNEL=-fno-stack-protector" >fi The protector is enabled for all compiles by default and has to be disabled for some packages. So the old stuff is correct, no stack smash protector when GCC got compiled with it. clear? Heiko |
|
From: <hzu...@ra...> - 2003-12-01 19:30:33
|
On 11/30/2003 08:36:00 PM Diego Torres wrote: >On Sun, Nov 30, 2003 at 02:28:10PM -0500, hz...@pr... wrote: > >> I personally think it's a good idea to include it. >> We have to ensure that the new loop fs really is compatible with the >old >> one. > >yes, that's what i'm doing now. i'm facing a couple of problems. now >that >loop is compiled as a module, it has to be included in the initrd image >(for the normal bootup process). it's the first time i'm doing such a >thing :) Oh that's very confusing at the beginning, when I just think back until we had the first working version. But that's just something you're never working on a "normal" Linux box. >> One thing has to be clear when you guys want to use a encrypted loop >fs: >> you have to enter the password during bootup, otherwise it doesn't >make any >> sense ! > >well, currently with a per-user encrypted home, the password is asked >when the >user logs in. there is a small .bash_rc file that mounts the encrypted >image >on the home directory, and umounts it when logging out. That's not bad, but that only works with SSH or console logins, correct? >> So if you guys want to include it, ensure all the above works fine >with the >> current 1.1 series and then go ahead. > >i'm testing it. i'll ask for help on a couple of days ;) btw, we need >loop-AES >v1.7 because it has the patches for the 2.4.22 kernel, and a small diff >from >loop-AES v2.0b to patch util-linux 2.12. hope that isn't a problem. Is v2.0b only for 2.6 Kernels ? Heiko |
|
From: <no...@fr...> - 2003-12-01 18:09:53
|
This email is to inform you about the release of version '2.1.17' of 'Cyrus SASL' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/cyrussasl/ The changes in this release are as follows: This release contains minor bugfixes from the previous release. It also contains enhanced Win32 support and better GSSAPI autoconf code. Project description: The Cyrus SASL library is a generic library for easy integration of secure network authentication to any client or server application. It supports authentication via standard plaintext methods as well as CRAM-MD5 and DIGEST-MD5 shared secret methods and KERBEROS_V4 and GSSAPI Kerberos methods. The SASL protocol framework is used by SMTP, IMAP, ACAP, LDAP, and other standard protocols. Trove categories: [Intended Audience ] Developers [License ] OSI Approved :: BSD License (original) [Topic ] Security, Software Development :: Libraries If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ Get Tactical Tools for Practical Results Free downloads & whitepapers DevChannel Development Tools Click to Go There Now! http://tools.devchannel.org/ ____________________________| Advertising |____________________________ |
|
From: <no...@fr...> - 2003-12-01 17:55:01
|
This email is to inform you about the release of version '0.13' of 'gettext' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/gettext/ The changes in this release are as follows: This release has support for shell scripts, Perl scripts, Qt programs, and Glade version 2 descriptions. Support for PHP and Objective C programs has been improved. Format string recognition and portability have been improved. There are more examples. Project description: gettext is the GNU internationalization library. Trove categories: [Intended Audience ] Developers [License ] OSI Approved :: GNU General Public License (GPL) [Topic ] Software Development :: Libraries If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ Get Tactical Tools for Practical Results Free downloads & whitepapers DevChannel Development Tools Click to Go There Now! http://tools.devchannel.org/ ____________________________| Advertising |____________________________ |
|
From: <no...@fr...> - 2003-12-01 14:47:02
|
This email is to inform you about the release of version '20031201' of 'SAGATOR' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/sagator/ The changes in this release are as follows: The decompress module now unpacks rar files properly. The freshclam libs have been updated in /var/lib/clamav (it is changed in clamav 0.65). libclamavmodule now returns an error message if the module is not loaded. Some other bugfixes were made. Project description: SAGATOR is an email antivirus/antispam gateway. It is an interface to any smtpd, which runs an antivirus and/ or spam checker. Its modular architecture can use any combination of antivirus/spam checker according to configuration. It currently supports clamav, nod32d, AVG, sophos, TrendMicro AV, Symantec AV, spamassassin, bogofilter, and quickspamfilter. It has some internal checkers (string_scanner and regexp_scanner). It can parse MIME mails and decompress archives. Trove categories: [Development Status ] 5 - Production/Stable [Environment ] Console (Text Based), No Input/Output (Daemon) [License ] OSI Approved :: GNU General Public License (GPL) [Operating System ] POSIX :: Linux [Programming Language] C, Python [Topic ] Communications :: Email :: Filters If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ Get Tactical Tools for Practical Results Free downloads & whitepapers DevChannel Development Tools Click to Go There Now! http://tools.devchannel.org/ ____________________________| Advertising |____________________________ |
|
From: <no...@fr...> - 2003-12-01 03:51:23
|
This email is to inform you about the release of version '1.9.13' of 'grsecurity' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/grsecurity/ The changes in this release are as follows: Changes in this release include documentation updates, performance enhancements, an initrd bugfix, and PaX updates including PT_GNU_STACK and PT_GNU_HEAP support. grsecurity 1.9.13 is for the 2.4.23 kernel, and gradm has been updated for this release. Project description: grsecurity is a complete security system for Linux 2.4 that implements a detection/prevention/containment strategy. It prevents most forms of address space modification, confines programs with least privilege via its process-based MAC system, hardens syscalls, provides full-featured auditing, and implements many of the OpenBSD randomness features. It was written for performance, ease-of-use, and security. The MAC system has an intelligent learning-mode, and all of grsecurity supports a feature that logs the IP of the attacker that causes an alert or audit. Trove categories: [License ] OSI Approved :: GNU General Public License (GPL) [Operating System ] POSIX :: Linux [Programming Language] C [Topic ] Security, Security :: Cryptography, System :: Logging, System :: Monitoring, System :: Operating System Kernels :: Linux If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ FREE SUBSCRIPTION to Java Pro Magazine. Java Pro is the leading publication for enterprise Java developers who design and build serious business applications with Java. There's no nonsense here - just pragmatic analysis of Java's serious enterprise strengths and the design strategies and coding techniques needed to tap them. Get it now FREE ! http://www.omeda.com/cgi-win/jva.cgi?ADD&p=W311FM ____________________________| Advertising |____________________________ |
|
From: Diego T. <dt...@co...> - 2003-12-01 01:36:33
|
On Sun, Nov 30, 2003 at 02:28:10PM -0500, hz...@pr... wrote: > I personally think it's a good idea to include it. > We have to ensure that the new loop fs really is compatible with the old > one. yes, that's what i'm doing now. i'm facing a couple of problems. now that loop is compiled as a module, it has to be included in the initrd image (for the normal bootup process). it's the first time i'm doing such a thing :) > One thing has to be clear when you guys want to use a encrypted loop fs: > you have to enter the password during bootup, otherwise it doesn't make any > sense ! well, currently with a per-user encrypted home, the password is asked when the user logs in. there is a small .bash_rc file that mounts the encrypted image on the home directory, and umounts it when logging out. > So if you guys want to include it, ensure all the above works fine with the > current 1.1 series and then go ahead. i'm testing it. i'll ask for help on a couple of days ;) btw, we need loop-AES v1.7 because it has the patches for the 2.4.22 kernel, and a small diff from loop-AES v2.0b to patch util-linux 2.12. hope that isn't a problem. -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dt...@co... - Madrid / España |
|
From: Diego T. <dt...@co...> - 2003-11-30 23:23:47
|
if [ "$CONFIG_GCC_STACK_PROTECTOR" = "y" ]; then
FLAGS="CFLAGS_KERNEL=-fno-stack-protector"
fi
i've found this on some script files... is it ok? sounds strange...
for me this looks better:
if [ "$CONFIG_GCC_STACK_PROTECTOR" != "y" ]; then
FLAGS="CFLAGS_KERNEL=-fno-stack-protector"
fi
heiko?
--
-- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799
-- Use of a keyboard or mouse may be linked to serious injuries or disorders.
Diego Torres - dt...@co... - Madrid / España
|
|
From: <hz...@pr...> - 2003-11-30 19:37:42
|
On 11/29/2003 09:57:46 PM Diego Torres wrote: >On Sat, Nov 29, 2003 at 02:56:33PM -0800, Dean Nedelman wrote: > >> Diego - what are you proposing? To have the DL ISO image be AES >encrypted, >> or to allow users to create AES encrypted file systems? > >hope this clarifies some points about AES. > >the loop-aes module is built instead the loop kernel module. it has the >same >functionality PLUS being capable supporting AES encryption calls. (so >it can >be used for encrypting filesystems also). > >i don't want to make the dl iso aes encrypted. this won't add any value >to dl. > >i want loop-aes so i may create encrypted filesystems on a hard disk >(through >a loopback module or on the whole filesystem). for example, per user >encrypted >home directories. I personally think it's a good idea to include it. We have to ensure that the new loop fs really is compatible with the old one. One thing has to be clear when you guys want to use a encrypted loop fs: you have to enter the password during bootup, otherwise it doesn't make any sense ! So if you guys want to include it, ensure all the above works fine with the current 1.1 series and then go ahead. Heiko |
|
From: <no...@fr...> - 2003-11-30 09:44:52
|
This email is to inform you about the release of version '5.0.0 Beta 2' of 'PHP' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/php/ The changes in this release are as follows: This version now features the Zend Engine 2, and XML support has been completely redone. SQLite has been bundled. Streams have been greatly improved, including the ability to access low-level socket operations on streams. Project description: PHP is a widely-used Open Source general-purpose scripting language that is especially suited for Web development and can be embedded into HTML. Its syntax draws upon C, Java, and Perl, and is easy to learn. PHP runs on many different platforms and can be used as a standalone executable or as a module under a variety of Web servers. It has excellent support for databases, XML, LDAP, IMAP, Java, various Internet protocols, and general data manipulation, and is extensible via its powerful API. It is actively developed and supported by a talented and energetic international team. Numerous Open Source and commercial PHP-based application packages are available. Trove categories: [Development Status ] 6 - Mature [Intended Audience ] Developers [License ] The PHP License [Programming Language] C, PHP [Topic ] Internet :: WWW/HTTP :: Dynamic Content, Software Development :: Interpreters If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ FREE SUBSCRIPTION to Java Pro Magazine. Java Pro is the leading publication for enterprise Java developers who design and build serious business applications with Java. There's no nonsense here - just pragmatic analysis of Java's serious enterprise strengths and the design strategies and coding techniques needed to tap them. Get it now FREE ! http://www.omeda.com/cgi-win/jva.cgi?ADD&p=W311FM ____________________________| Advertising |____________________________ |
|
From: <no...@fr...> - 2003-11-30 09:39:37
|
This email is to inform you about the release of version '4.3.4' of 'PHP' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/php/ The changes in this release are as follows: This version fixes disk_total_space() and disk_free_space() under FreeBSD. It also fixes FastCGI support and is now compatible with Mac OS X Panther. Project description: PHP is a widely-used Open Source general-purpose scripting language that is especially suited for Web development and can be embedded into HTML. Its syntax draws upon C, Java, and Perl, and is easy to learn. PHP runs on many different platforms and can be used as a standalone executable or as a module under a variety of Web servers. It has excellent support for databases, XML, LDAP, IMAP, Java, various Internet protocols, and general data manipulation, and is extensible via its powerful API. It is actively developed and supported by a talented and energetic international team. Numerous Open Source and commercial PHP-based application packages are available. Trove categories: [Development Status ] 6 - Mature [Intended Audience ] Developers [License ] The PHP License [Programming Language] C, PHP [Topic ] Internet :: WWW/HTTP :: Dynamic Content, Software Development :: Interpreters If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ FREE SUBSCRIPTION to Java Pro Magazine. Java Pro is the leading publication for enterprise Java developers who design and build serious business applications with Java. There's no nonsense here - just pragmatic analysis of Java's serious enterprise strengths and the design strategies and coding techniques needed to tap them. Get it now FREE ! http://www.omeda.com/cgi-win/jva.cgi?ADD&p=W311FM ____________________________| Advertising |____________________________ |
|
From: Diego T. <dt...@co...> - 2003-11-30 02:58:15
|
On Sat, Nov 29, 2003 at 02:56:33PM -0800, Dean Nedelman wrote: > Diego - what are you proposing? To have the DL ISO image be AES encrypted, > or to allow users to create AES encrypted file systems? hope this clarifies some points about AES. the loop-aes module is built instead the loop kernel module. it has the same functionality PLUS being capable supporting AES encryption calls. (so it can be used for encrypting filesystems also). i don't want to make the dl iso aes encrypted. this won't add any value to dl. i want loop-aes so i may create encrypted filesystems on a hard disk (through a loopback module or on the whole filesystem). for example, per user encrypted home directories. -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dt...@co... - Madrid / España |
|
From: Dean N. <di...@ti...> - 2003-11-29 22:56:44
|
>> > btw, i'm interested in this patch: >> > >> > http://loop-aes.sourceforge.net/loop-AES.README >> > >> > it provides a secure loopback system, so you could use the aes modules >> from >> > kernel to have an encrypted loop device. it is backwards compatible with >> > the classic loop command. >> >[...] >> > >> > anyone/someone/everyone against? agree? opinions? >> >> I would vote against the idea. >> >> While AES is a very good encryption system, I would have to reasons against >> integrating it into DL (for the loopback): >> o Extra CPU power would be required to handle the AES decryption - and that >> is on top of the CPU power required to handle the decompression that is >> already required! Remember - a lot of people run DL on some very old (and >> slow) processors. >> o Not sure I understand the need. What is it about the ISO image that you >> believe requires the encryption? I.e., what are you trying to protect? > > I don't think you understand. (or maybe I don't understand :) Well, it certainly wouldn't be the first time I didn't understand something! > > I believe it's for creating encrypted filesystems, on a hard drive. > I don't think it has anything to do with the DL ISO image. > I also think it's completely optional, so no extra CPU power is required > unless you actually setup an encrypted filesystem (in a loopback file). From Diego's original message: :loop support has to be disabled from kernel. a new loop.o module capable of aes :is build. : :then, a new mount/losetup is needed, so util-linux-2.12 has to be patched. : :so, because this is a big change, and its compatible, it won't have a configurable :entry on make menuconfig, and installed always on dl... Since he says that "loop support has to be disabled" and "a new loop.o module", I took this to mean it is a REPLACEMENT for the existing loop support. And since we now use the existing loop driver for the ISO image (or at least we will with V1.1 were it is already in place), that means that we would end up using the AES encrypted loopback file for the base DL ISO image (or at least that is what I took "...because this is a big change..." to also imply). And yes - I may completely misunderstand Diego's meaning. So let me respond this way: Diego - what are you proposing? To have the DL ISO image be AES encrypted, or to allow users to create AES encrypted file systems? Diego: Your turn! Dean Nedelman TimeLord Consulting |
|
From: Friedrich L. <fl...@fl...> - 2003-11-29 21:46:40
|
Dean Nedelman wrote on 29.11.2003 22:31 MET: >>[...] >> >>btw, i'm interested in this patch: >> >>http://loop-aes.sourceforge.net/loop-AES.README >> >>it provides a secure loopback system, so you could use the aes modules > > from > >>kernel to have an encrypted loop device. it is backwards compatible with >>the classic loop command. >>[...] >> >>anyone/someone/everyone against? agree? opinions? > > > I would vote against the idea. > > While AES is a very good encryption system, I would have to reasons against > integrating it into DL (for the loopback): > o Extra CPU power would be required to handle the AES decryption - and that > is on top of the CPU power required to handle the decompression that is > already required! Remember - a lot of people run DL on some very old (and > slow) processors. When you don't configure it to be used it takes 0% of your CPU. I'm neutral as I think I will never need it but others might. -- MfG / Regards Friedrich Lobenstock ____________________________________________________________________ Friedrich Lobenstock Linux Services Lobenstock URL: http://www.lsl.at/ Email: fl...@fl... ____________________________________________________________________ |
|
From: Bruce S. <bw...@ar...> - 2003-11-29 21:42:12
|
> > btw, i'm interested in this patch: > > > > http://loop-aes.sourceforge.net/loop-AES.README > > > > it provides a secure loopback system, so you could use the aes modules > from > > kernel to have an encrypted loop device. it is backwards compatible with > > the classic loop command. > >[...] > > > > anyone/someone/everyone against? agree? opinions? > > I would vote against the idea. > > While AES is a very good encryption system, I would have to reasons against > integrating it into DL (for the loopback): > o Extra CPU power would be required to handle the AES decryption - and that > is on top of the CPU power required to handle the decompression that is > already required! Remember - a lot of people run DL on some very old (and > slow) processors. > o Not sure I understand the need. What is it about the ISO image that you > believe requires the encryption? I.e., what are you trying to protect? I don't think you understand. (or maybe I don't understand :) I believe it's for creating encrypted filesystems, on a hard drive. I don't think it has anything to do with the DL ISO image. I also think it's completely optional, so no extra CPU power is required unless you actually setup an encrypted filesystem (in a loopback file). - BS |
|
From: Dean N. <di...@ti...> - 2003-11-29 21:32:04
|
>[...] > > btw, i'm interested in this patch: > > http://loop-aes.sourceforge.net/loop-AES.README > > it provides a secure loopback system, so you could use the aes modules from > kernel to have an encrypted loop device. it is backwards compatible with > the classic loop command. >[...] > > anyone/someone/everyone against? agree? opinions? I would vote against the idea. While AES is a very good encryption system, I would have to reasons against integrating it into DL (for the loopback): o Extra CPU power would be required to handle the AES decryption - and that is on top of the CPU power required to handle the decompression that is already required! Remember - a lot of people run DL on some very old (and slow) processors. o Not sure I understand the need. What is it about the ISO image that you believe requires the encryption? I.e., what are you trying to protect? Of course, those are just my thoughts.... Dean Nedelman TimeLord Consulting |
|
From: Diego T. <dt...@co...> - 2003-11-29 17:17:41
|
On Thu, Nov 27, 2003 at 09:43:10AM -0500, Heiko Zuerker wrote: > I will be on vacation until Dec 14th and won't be able to read my email > very often. as you'll probably see when you return, 2.4.23 is out. so, are we going to migrate to 2.4.23? btw, i'm interested in this patch: http://loop-aes.sourceforge.net/loop-AES.README it provides a secure loopback system, so you could use the aes modules from kernel to have an encrypted loop device. it is backwards compatible with the classic loop command. install procedure is like this: loop support has to be disabled from kernel. a new loop.o module capable of aes is build. then, a new mount/losetup is needed, so util-linux-2.12 has to be patched. so, because this is a big change, and its compatible, it won't have a configurable entry on make menuconfig, and installed always on dl... anyone/someone/everyone against? agree? opinions? -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dt...@co... - Madrid / España |
|
From: <no...@fr...> - 2003-11-29 11:24:16
|
This email is to inform you about the release of version '0.9.99' of 'GNU Transport Layer Security Library' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/gnutls/ The changes in this release are as follows: Several minor bugfixes and cleanups are included in this release. Project description: GNU Transport Layer Security Library is a library which implements a secure layer over a reliable transport layer such as TCP/IP. It implements the TLS 1.0 and SSL 3.0 protocols. GnuTLS is available for beta testing. Trove categories: [Development Status ] 4 - Beta [License ] OSI Approved :: GNU General Public License (GPL), OSI Approved :: GNU Lesser General Public License (LGPL) [Operating System ] POSIX, Unix [Programming Language] C [Topic ] Security :: Cryptography, Software Development :: Libraries If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ FREE SUBSCRIPTION to Java Pro Magazine. Java Pro is the leading publication for enterprise Java developers who design and build serious business applications with Java. There's no nonsense here - just pragmatic analysis of Java's serious enterprise strengths and the design strategies and coding techniques needed to tap them. Get it now FREE ! http://www.omeda.com/cgi-win/jva.cgi?ADD&p=W311FM ____________________________| Advertising |____________________________ |
|
From: <no...@fr...> - 2003-11-28 21:05:49
|
This email is to inform you about the release of version '2.4.23' of 'Linux' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/linux/ The changes in this release are as follows: Many fixes, a better VM, and new drivers. Project description: Linux is a clone of the Unix kernel, written from scratch by Linus Torvalds with assistance from a loosely-knit team of hackers across the Net. It aims towards POSIX and Single UNIX Specification compliance. It has all the features you would expect in a modern fully-fledged Unix kernel, including true multitasking, virtual memory, shared libraries, demand loading, shared copy-on-write executables, proper memory management, and TCP/IP networking. Trove categories: [Development Status ] 5 - Production/Stable [Environment ] Console (Text Based) [Intended Audience ] Developers, End Users/Desktop, System Administrators [License ] OSI Approved :: GNU General Public License (GPL) [Operating System ] POSIX, POSIX :: Linux [Programming Language] C, C++ [Topic ] System :: Operating System, System :: Operating System Kernels :: Linux If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ FREE SUBSCRIPTION to Java Pro Magazine. Java Pro is the leading publication for enterprise Java developers who design and build serious business applications with Java. There's no nonsense here - just pragmatic analysis of Java's serious enterprise strengths and the design strategies and coding techniques needed to tap them. Get it now FREE ! http://www.omeda.com/cgi-win/jva.cgi?ADD&p=W311FM ____________________________| Advertising |____________________________ |
|
From: <no...@fr...> - 2003-11-28 04:27:25
|
This email is to inform you about the release of version '1.1.6' of 'Linux-VServer' through freshmeat.net. All URLs and other useful information can be found at http://freshmeat.net/projects/vserver/ The changes in this release are as follows: Another copy/paste bug in tcp6_get_info was fixed. A lockup which occurred when all available dynamic contexts were used and a new one was requested has been eliminated. Structure allocation was changed from vmalloc to kmalloc. A kill (send signal to) context syscall command was added. Project description: Linux-VServer allows you to create virtual private servers and security contexts which operate like a normal Linux server, but allow many independent servers to be run simultaneously in one box at full speed. All services, such as ssh, mail, Web, and databases, can be started on such a VPS, without modification, just like on any real server. Each virtual server has its own user account database and root password and doesn't interfere with other virtual servers. Trove categories: [Development Status ] 5 - Production/Stable [Intended Audience ] System Administrators [License ] OSI Approved, OSI Approved :: GNU General Public License (GPL) [Operating System ] POSIX :: Linux [Topic ] Security, System :: Operating System Kernels :: Linux If you would like to cancel subscription to releases of this project, login to freshmeat.net and choose 'home' from the personal menubar at the top of the page. You'll be presented with a list of projects you're subscribed to in the right column, which you may cancel by highlighting the project in question and clicking the 'delete' button. Sincerely, freshmeat.net ____________________________| Advertising |____________________________ FREE SUBSCRIPTION to Java Pro Magazine. Java Pro is the leading publication for enterprise Java developers who design and build serious business applications with Java. There's no nonsense here - just pragmatic analysis of Java's serious enterprise strengths and the design strategies and coding techniques needed to tap them. Get it now FREE ! http://www.omeda.com/cgi-win/jva.cgi?ADD&p=W311FM ____________________________| Advertising |____________________________ |
|
From: Heiko Z. <he...@zu...> - 2003-11-27 14:46:15
|
Hey Folks, I will be on vacation until Dec 14th and won't be able to read my email very often. So please help each other as much as possible. Regards Heiko |
|
From: Heiko Z. <he...@zu...> - 2003-11-27 14:26:18
|
Martin Glazer wrote: >Hi > >This is my first patch submission, so please be kind.... > > Why should we pass out a chance to pick on somebody ? ;-) The patch works fine ! >The patch fixes the incorrect man page location specified during the build >process of sarg. This causes the install to fail. > > Thanks ! Heiko |
|
From: Martin G. <sou...@gl...> - 2003-11-27 06:00:58
|
Hi This is my first patch submission, so please be kind.... The patch fixes the incorrect man page location specified during the build process of sarg. This causes the install to fail. Martin |