Commit Graph

695 Commits

Author SHA1 Message Date
jakob
a1f4a6d437 update to v3.15 and enable new tcp-wrappers support.
- Serious bug resulting in random transfer() hangs fixed.
- Separate file descriptors are used for inetd mode.
- -f (foreground) logs are now stamped with time.
- New ./configure option: --with-tcp-wrappers by Brian Hatch.
- pop3 protocol client support (-n pop3) by Martin Germann.
- nntp protocol client support (-n nntp) by Martin Germann.
- RFC 2487 (smtp STARTTLS) client mode support.
- Transparency support for Tru64 added.
- Some #includes for AIX added.
2001-07-15 18:37:01 +00:00
naddy
49afc89ea6 MASTER_SITES fix by Heikki Korpela <heko@saitti.net>:
- Add ftp.funet.fi and ftp.sunet.se mirrors where available.
- Remove broken ftp.funet.fi references.
2001-07-13 11:23:37 +00:00
reinhard
0ee577796d add new MASTER_SITES for idea flavor 2001-07-12 16:07:17 +00:00
naddy
90028c000c make this work with current bsd.port.mk 2001-07-12 15:06:53 +00:00
jakob
f9b865e9b3 - update to v1.5a; heko@saitti.net
- fetch unpacked tar package as DFN CERT compresses on the fly otherwise
2001-07-12 09:10:05 +00:00
lebel
a057236380 use arandom(4) instead of urandom(4); thanks naddy@ 2001-07-09 12:42:04 +00:00
jsyn
398ddf5c5e more binary stripping; pcre/pgpdump - ok jakob@; cgichk/isic/its4 - ok
dugsong@; all ok espie@
2001-07-06 19:34:03 +00:00
avsm
cc29e81ba3 use system (libtool's) libltdl
missing dependency spotted by Heikki Korpela <heko@saitti.net>
2001-07-06 09:27:04 +00:00
jsyn
effaffbc63 grammar fix; ok lebel@ 2001-07-05 23:24:18 +00:00
jsyn
d7f4695410 +hlfl 2001-07-05 20:12:09 +00:00
jsyn
6c01cc650d Import of hlfl-0.52:
--
hlfl (High Level Firewall Language) permits writing firewall rulesets
using its high level language, and transforms them into rules for
real software, including IPFilter, ipchains, Netfilter and Cisco IOS.

hlfl attempts to make the best use of the features of the underlying
firewall, such that a conversion from stateless to stateful requires
no modification to the original script.

hlfl was initiated by Renaud Deraison, co-founder of the Nessus
Project.

WWW: http://www.hlfl.org/

MAINTAINER=	Jason Peel <jsyn@openbsd.org>
2001-07-05 20:10:38 +00:00
lebel
603cd55243 +aescrypt 2001-07-05 03:29:15 +00:00
lebel
f5d033c180 initial import of aescrypt-0.7:
--
Encrypt/decrypt stdin using the Advanced Encryption Standard winner
"Rijndael" encryption algorithm in Cipher Block Feedback (stream)
mode. Uses /dev/urandom to create a salt. Prepends the output stream
with salt when encrypting, strips it off when decrypting.

WWW: http://aescrypt.sourceforge.net/
2001-07-05 03:28:09 +00:00
reinhard
4089b29f98 strip binaries; jsyn <jsyn@nthought.com> 2001-07-03 07:57:46 +00:00
lebel
619fd9b942 Twenty-two ports have HOMEPAGE in their Makefile, but not in DESCR;
from Jason Peel <jsyn@nthought.com>
2001-07-02 16:19:04 +00:00
lebel
8a69c9901d might be a good idea to strip the binary; jsyn@nthought.com 2001-07-02 16:08:00 +00:00
brad
4bf39e6f9d in this case we can use MAKE_FLAGS to override CC, CFLAGS and CCFLAGS and
get the desired results and now we don't need a patch anymore.
2001-06-30 02:12:47 +00:00
lebel
eef8dd4b82 pkg/DEINSTALL should also point to the right file 2001-06-30 00:52:20 +00:00
lebel
014d0aee75 fix the pkg/INSTALL script to not overwrite the config file if its there 2001-06-30 00:48:50 +00:00
jakob
c7815577a5 fix broken links; kevin@open-systems.org 2001-06-29 17:23:19 +00:00
pvalchev
7172dff8eb These do not have licenses, so we cannot distribute distfiles/packages.
Set PERMIT_* to "no license" for now.  Authors will be contacted so that
they are aware of the situation, but we cannot break the copyright law.
2001-06-27 20:56:24 +00:00
lebel
b0c36f4b3b +corkscrew 2001-06-23 15:15:42 +00:00
lebel
e2db8f2662 initial import of corkscrew-1.5:
--
Corkscrew is a tool for tunneling SSH through HTTP proxies.

Corkscrew has been tested against the Gauntlet, CacheFlow, and
JunkBuster proxies.

WWW: http://www.agroman.net/corkscrew/

Submitted by Jason Peel <jsyn@nthought.com>
2001-06-23 15:14:40 +00:00
jakob
29f8bd4a3f The vomit utility converts a Cisco IP phone conversation into a wave file
that can be played with ordinary sound players. The phone conversation can
either be played directly from the network or from a tcpdump output file.
Vomit is also capable of inserting wavefiles into ongoing telephone
conversations. Vomit can be used as a network debugging tool, a speaker
phone, etc ...

vomit is written by Niels Provos and the port created by Jason Peel.
2001-06-22 07:12:55 +00:00
lebel
bd33ab9eb1 add support for security/mhash; from jakob@ 2001-06-20 21:55:18 +00:00
jakob
1c94752cb8 s/PREFIX/LOCALBASE/ 2001-06-20 20:50:46 +00:00
pvalchev
e8a2398d62 Remove deprecated LICENSE_TYPE and set appropriate # comments
with its contents.
2001-06-20 01:43:11 +00:00
avsm
2804cd0a10 update to p5-Crypt-SSLeay-0.27 2001-06-19 20:31:14 +00:00
reinhard
50c0fbccdd add nessus and gnupg flavors 2001-06-17 09:47:15 +00:00
reinhard
1a5957a9e4 add 'experimental' flavor (save-session and knowledge base capabilities)
take MAINTAINER
ok matt@
2001-06-17 09:40:10 +00:00
lebel
7827e1af4e +siphon 2001-06-16 14:57:35 +00:00
lebel
fbf9768fcf initial import of siphon-0.666:
--
The Siphon Project is a portable passive network mapping suite.  In
the latest public version, Siphon passively maps TCP ports and
performs passive operating system detection.  Through the magic of
RFC ambiguity and programmer uniqueness, different machines exhibit
telltale characteristics that enable Siphon to make a fairly accurate
guess at what operating system is running on machines sending packets
out over the wire.  The beauty of this method is that our tool does
not need to send out a slew of non-RFC compliant packets that trip
intrusion detection systems. In fact, we send out no packets at
all.  Whereas nmap crashes some machines and network hardware when
performing its active OS detection tests, Siphon would never crash
remote machines.  Siphon is available for UNIX and Win32.
 
WWW: http://www.gravitino.net/projects/siphon/

Submitted by Jason Peel <jsyn@nthought.com>
2001-06-16 14:56:26 +00:00
brad
c585fc16d9 don't set USE_X11 period for the no_x11 FLAVOR
--
Problem reported by: Alexis Tremblay <apleks@descension.org>
2001-06-13 01:28:01 +00:00
avsm
7e1be2dd39 update to mcrypt-2.5.7 2001-06-12 16:05:55 +00:00
avsm
534562a1e7 update to libmcrypt-2.4.15 2001-06-12 16:05:13 +00:00
lebel
a9378675af +sentinel; submitted by Jason Peel <jsyn@nthought.com> 2001-06-11 14:45:24 +00:00
lebel
c509fa3184 initial import of sentinel-0.8:
--
The Sentinel project is designed to be a portable, accurate
implementation of all publicly known promiscuous detection
techniques.
 
These include:
   DNS Test - Etherping Test - ARP Test - ICMP Ping Latency Test
2001-06-11 14:43:57 +00:00
dugsong
7a7bc74e6a update MASTER_SITES 2001-06-11 13:14:39 +00:00
shell
54349a0c29 Don't need this file too.. 2001-06-07 17:05:05 +00:00
shell
b8339517da Upgrade to 0.4.2 2001-06-07 17:00:33 +00:00
lebel
e50777a1d4 +aide 2001-06-07 14:27:40 +00:00
lebel
e3f7b12896 initial import of aide-0.7:
--
AIDE (Advanced Intrusion Detection Environment) is a free replacement
for Tripwire. It does the same things as the semi-free Tripwire and
more.
 
What does it do?
 
It creates a database from the regular expression rules that it
finds from the config file. Once this database is initialized it
can be used to verify the integrity of the files. It has several
message digest algorithms (md5,sha1,rmd160,tiger,haval,etc.) that
are used to check the integrity of the file. More algorithms can
be added with relative ease. All of the usual file attributes can
also be checked for inconsistencies. It can read databases from
older or newer versions. See the manual pages within the distribution
for further info. There is also a beginning of a manual.

WWW: http://www.cs.tut.fi/~rammer/aide.html
2001-06-07 14:26:22 +00:00
obecian
21d087aa28 add arirang-1.5 2001-06-06 07:58:27 +00:00
obecian
a088ddbc57 arirang 1.5 import
powerful webserver security scanner from <pilot@monkey.org>
2001-06-06 07:56:05 +00:00
naddy
11533c99b9 fix plist: remove @dirrm's for directories not under exclusive control
of this package
2001-06-05 16:02:32 +00:00
reinhard
9879992112 update to gnupg-1.0.6; SECURITY FIX
*) Fixed a format string bug which is exploitable if --batch is not used.
*) Checked all translations for format strings bugs.
*) Removed the Russian translation due to too many bugs.
*) Fixed keyserver access and expire time calculation.

ok maintainer
2001-06-05 09:19:05 +00:00
jakob
c7ac8b4fc8 update to Dante v1.1.10 2001-05-29 14:51:33 +00:00
matt
fa0e3f47b4 stop confusing portslogger 2001-05-28 15:55:24 +00:00
obecian
6f5e7a52db fix md5 - source looks ok 2001-05-27 08:48:37 +00:00
jakob
268dafd232 add pgpdump 2001-05-24 19:23:36 +00:00