freebsd-ports/security
Peter Wemm 82e68e552b Add a compile option so that identd will send encrypted cookies out rather
than usernames.  This makes it much more difficult for somebody to "frame"
one of your users.

ie: instead of people getting:
   connect from peter@spinner.DIALix.COM
in their syslogs, they will get this instead:
   connect from [W+rNvCy5FuPV4xEj8thdXIlfD9qNIbzB]@spinner.DIALix.COM

The remote site will have to send it to you to decode it.  When you are
given one of these cookies, you can know for sure it is not faked, and you
don't have to trust the word of the remote sysadmin when arranging your
local lame hacker-type user to meet with an unfortunate incident :-).

This feature is documented in the man pages.

Also, fix an apparent bug in the code that deals with this, but it might
be a feature of the version of libdes we have on FreeBSD.

Requested by: markm (a fair while ago)
1996-11-05 18:23:42 +00:00
..
donkey
fwtk
libident
openssl
openssl-beta
p5-Crypt-DES
p5-Crypt-IDEA
p5-MD5
p5-PGP
pgp
pgp5
pgp6
pidentd Add a compile option so that identd will send encrypted cookies out rather 1996-11-05 18:23:42 +00:00
pkg
ssh
ssh2
sudo
tcp_wrapper
vscan
xinetd
Makefile