Commit Graph

891 Commits

Author SHA1 Message Date
jakob
f9b865e9b3 - update to v1.5a; heko@saitti.net
- fetch unpacked tar package as DFN CERT compresses on the fly otherwise
2001-07-12 09:10:05 +00:00
lebel
a057236380 use arandom(4) instead of urandom(4); thanks naddy@ 2001-07-09 12:42:04 +00:00
jsyn
398ddf5c5e more binary stripping; pcre/pgpdump - ok jakob@; cgichk/isic/its4 - ok
dugsong@; all ok espie@
2001-07-06 19:34:03 +00:00
avsm
cc29e81ba3 use system (libtool's) libltdl
missing dependency spotted by Heikki Korpela <heko@saitti.net>
2001-07-06 09:27:04 +00:00
jsyn
effaffbc63 grammar fix; ok lebel@ 2001-07-05 23:24:18 +00:00
jsyn
d7f4695410 +hlfl 2001-07-05 20:12:09 +00:00
jsyn
6c01cc650d Import of hlfl-0.52:
--
hlfl (High Level Firewall Language) permits writing firewall rulesets
using its high level language, and transforms them into rules for
real software, including IPFilter, ipchains, Netfilter and Cisco IOS.

hlfl attempts to make the best use of the features of the underlying
firewall, such that a conversion from stateless to stateful requires
no modification to the original script.

hlfl was initiated by Renaud Deraison, co-founder of the Nessus
Project.

WWW: http://www.hlfl.org/

MAINTAINER=	Jason Peel <jsyn@openbsd.org>
2001-07-05 20:10:38 +00:00
lebel
603cd55243 +aescrypt 2001-07-05 03:29:15 +00:00
lebel
f5d033c180 initial import of aescrypt-0.7:
--
Encrypt/decrypt stdin using the Advanced Encryption Standard winner
"Rijndael" encryption algorithm in Cipher Block Feedback (stream)
mode. Uses /dev/urandom to create a salt. Prepends the output stream
with salt when encrypting, strips it off when decrypting.

WWW: http://aescrypt.sourceforge.net/
2001-07-05 03:28:09 +00:00
reinhard
4089b29f98 strip binaries; jsyn <jsyn@nthought.com> 2001-07-03 07:57:46 +00:00
lebel
619fd9b942 Twenty-two ports have HOMEPAGE in their Makefile, but not in DESCR;
from Jason Peel <jsyn@nthought.com>
2001-07-02 16:19:04 +00:00
lebel
8a69c9901d might be a good idea to strip the binary; jsyn@nthought.com 2001-07-02 16:08:00 +00:00
brad
4bf39e6f9d in this case we can use MAKE_FLAGS to override CC, CFLAGS and CCFLAGS and
get the desired results and now we don't need a patch anymore.
2001-06-30 02:12:47 +00:00
lebel
eef8dd4b82 pkg/DEINSTALL should also point to the right file 2001-06-30 00:52:20 +00:00
lebel
014d0aee75 fix the pkg/INSTALL script to not overwrite the config file if its there 2001-06-30 00:48:50 +00:00
jakob
c7815577a5 fix broken links; kevin@open-systems.org 2001-06-29 17:23:19 +00:00
pvalchev
7172dff8eb These do not have licenses, so we cannot distribute distfiles/packages.
Set PERMIT_* to "no license" for now.  Authors will be contacted so that
they are aware of the situation, but we cannot break the copyright law.
2001-06-27 20:56:24 +00:00
lebel
b0c36f4b3b +corkscrew 2001-06-23 15:15:42 +00:00
lebel
e2db8f2662 initial import of corkscrew-1.5:
--
Corkscrew is a tool for tunneling SSH through HTTP proxies.

Corkscrew has been tested against the Gauntlet, CacheFlow, and
JunkBuster proxies.

WWW: http://www.agroman.net/corkscrew/

Submitted by Jason Peel <jsyn@nthought.com>
2001-06-23 15:14:40 +00:00
jakob
29f8bd4a3f The vomit utility converts a Cisco IP phone conversation into a wave file
that can be played with ordinary sound players. The phone conversation can
either be played directly from the network or from a tcpdump output file.
Vomit is also capable of inserting wavefiles into ongoing telephone
conversations. Vomit can be used as a network debugging tool, a speaker
phone, etc ...

vomit is written by Niels Provos and the port created by Jason Peel.
2001-06-22 07:12:55 +00:00
lebel
bd33ab9eb1 add support for security/mhash; from jakob@ 2001-06-20 21:55:18 +00:00
jakob
1c94752cb8 s/PREFIX/LOCALBASE/ 2001-06-20 20:50:46 +00:00
pvalchev
e8a2398d62 Remove deprecated LICENSE_TYPE and set appropriate # comments
with its contents.
2001-06-20 01:43:11 +00:00
avsm
2804cd0a10 update to p5-Crypt-SSLeay-0.27 2001-06-19 20:31:14 +00:00
reinhard
50c0fbccdd add nessus and gnupg flavors 2001-06-17 09:47:15 +00:00
reinhard
1a5957a9e4 add 'experimental' flavor (save-session and knowledge base capabilities)
take MAINTAINER
ok matt@
2001-06-17 09:40:10 +00:00
lebel
7827e1af4e +siphon 2001-06-16 14:57:35 +00:00
lebel
fbf9768fcf initial import of siphon-0.666:
--
The Siphon Project is a portable passive network mapping suite.  In
the latest public version, Siphon passively maps TCP ports and
performs passive operating system detection.  Through the magic of
RFC ambiguity and programmer uniqueness, different machines exhibit
telltale characteristics that enable Siphon to make a fairly accurate
guess at what operating system is running on machines sending packets
out over the wire.  The beauty of this method is that our tool does
not need to send out a slew of non-RFC compliant packets that trip
intrusion detection systems. In fact, we send out no packets at
all.  Whereas nmap crashes some machines and network hardware when
performing its active OS detection tests, Siphon would never crash
remote machines.  Siphon is available for UNIX and Win32.
 
WWW: http://www.gravitino.net/projects/siphon/

Submitted by Jason Peel <jsyn@nthought.com>
2001-06-16 14:56:26 +00:00
brad
c585fc16d9 don't set USE_X11 period for the no_x11 FLAVOR
--
Problem reported by: Alexis Tremblay <apleks@descension.org>
2001-06-13 01:28:01 +00:00
avsm
7e1be2dd39 update to mcrypt-2.5.7 2001-06-12 16:05:55 +00:00
avsm
534562a1e7 update to libmcrypt-2.4.15 2001-06-12 16:05:13 +00:00
lebel
a9378675af +sentinel; submitted by Jason Peel <jsyn@nthought.com> 2001-06-11 14:45:24 +00:00
lebel
c509fa3184 initial import of sentinel-0.8:
--
The Sentinel project is designed to be a portable, accurate
implementation of all publicly known promiscuous detection
techniques.
 
These include:
   DNS Test - Etherping Test - ARP Test - ICMP Ping Latency Test
2001-06-11 14:43:57 +00:00
dugsong
7a7bc74e6a update MASTER_SITES 2001-06-11 13:14:39 +00:00
shell
54349a0c29 Don't need this file too.. 2001-06-07 17:05:05 +00:00
shell
b8339517da Upgrade to 0.4.2 2001-06-07 17:00:33 +00:00
lebel
e50777a1d4 +aide 2001-06-07 14:27:40 +00:00
lebel
e3f7b12896 initial import of aide-0.7:
--
AIDE (Advanced Intrusion Detection Environment) is a free replacement
for Tripwire. It does the same things as the semi-free Tripwire and
more.
 
What does it do?
 
It creates a database from the regular expression rules that it
finds from the config file. Once this database is initialized it
can be used to verify the integrity of the files. It has several
message digest algorithms (md5,sha1,rmd160,tiger,haval,etc.) that
are used to check the integrity of the file. More algorithms can
be added with relative ease. All of the usual file attributes can
also be checked for inconsistencies. It can read databases from
older or newer versions. See the manual pages within the distribution
for further info. There is also a beginning of a manual.

WWW: http://www.cs.tut.fi/~rammer/aide.html
2001-06-07 14:26:22 +00:00
obecian
21d087aa28 add arirang-1.5 2001-06-06 07:58:27 +00:00
obecian
a088ddbc57 arirang 1.5 import
powerful webserver security scanner from <pilot@monkey.org>
2001-06-06 07:56:05 +00:00
naddy
11533c99b9 fix plist: remove @dirrm's for directories not under exclusive control
of this package
2001-06-05 16:02:32 +00:00
reinhard
9879992112 update to gnupg-1.0.6; SECURITY FIX
*) Fixed a format string bug which is exploitable if --batch is not used.
*) Checked all translations for format strings bugs.
*) Removed the Russian translation due to too many bugs.
*) Fixed keyserver access and expire time calculation.

ok maintainer
2001-06-05 09:19:05 +00:00
jakob
c7ac8b4fc8 update to Dante v1.1.10 2001-05-29 14:51:33 +00:00
matt
fa0e3f47b4 stop confusing portslogger 2001-05-28 15:55:24 +00:00
obecian
6f5e7a52db fix md5 - source looks ok 2001-05-27 08:48:37 +00:00
jakob
268dafd232 add pgpdump 2001-05-24 19:23:36 +00:00
jakob
abe736f6c9 "pgpdump" is a PGP packet visualizer which displays the packet format of
OpenPGP (RFC 2440 + bis) and PGP version 2 (RFC 1991).
2001-05-24 19:21:09 +00:00
jakob
436c5ffef5 update to v1.0.5. ok markus@. 2001-05-23 15:28:49 +00:00
jakob
40cba3e91d update to v4.14.0 2001-05-22 23:00:44 +00:00
jakob
56bde94c72 update to v4139 2001-05-22 23:00:32 +00:00
shell
27d9b7f2d8 - Add BUILD_DEPENDS
Reported by David Krause <openbsd@davidkrause.com>
2001-05-21 04:09:14 +00:00
pvalchev
70d7819bab make -> ${MAKE_PROGRAM} 2001-05-20 22:48:54 +00:00
markus
9ab4955e51 remove sftp, creates only confusion 2001-05-19 16:20:53 +00:00
jakob
a3f3bb9890 also build heimdal,no_x11 2001-05-16 15:30:13 +00:00
jakob
bc04199269 add no_x11 flavour. requested and tested by <russ@madhaus.cns.utoronto.ca>. 2001-05-16 15:20:21 +00:00
jakob
bceccac395 update to dat file 4137 2001-05-14 13:34:05 +00:00
avsm
bf76191aee upgrade to mcrypt-2.5.6
contains locale updates
2001-05-10 22:21:21 +00:00
naddy
ec4ede3197 Use MACHINE_ARCH instead of ARCH in p5-* dependencies. 2001-05-10 22:11:27 +00:00
avsm
2ebd016e7f upgrade to libmcrypt-2.4.11
closes some memory leaks
2001-05-10 22:08:06 +00:00
naddy
7670a4e329 Use MACHINE_ARCH instead of ARCH in PLIST for m68k-based architectures.
Bump NEED_VERSION accordingly.
2001-05-10 19:20:40 +00:00
danh
ba562425b7 bump NEED_VERSION and change ARCH to MACHINE_ARCH 2001-05-09 19:26:10 +00:00
marc
5baac03397 COMMENT= with shell meta characters MUST be in quotes 2001-05-08 06:20:49 +00:00
shell
cc49eab753 - Change ARCH to MACHINE_ARCH
- bump VERSION
2001-05-08 03:45:14 +00:00
shell
f4e19f25a6 SUBDIR += gpa 2001-05-07 03:13:02 +00:00
shell
20cf79d25b Initial import gpa-0.4.1
---
The GNU Privacy Assistant is a graphical user interface for the GNU
Privacy Guard (GnuPG).
2001-05-07 03:12:07 +00:00
shell
2be5728132 SUBDIR += p5-Net_SSLeay 2001-05-07 02:55:32 +00:00
shell
a8a8637cb8 Initial import p5-Net_SSLeay-1.07
---
This module offers some high level convenience functions for accessing
web pages on SSL servers, a sslcat() function for writing your own
clients, and finally access to the SSL api of SSLeay package so you can
write servers or clients for more complicated applications.
2001-05-07 02:51:50 +00:00
matt
807b74a1f4 - ignore existing nessus,nasl-config scripts when building
- more --enable-gmp fixes to configure scripts
2001-05-06 14:38:33 +00:00
lebel
c691794c19 security: integrate COMMENT, bump NEED_VERSION. 2001-05-06 03:45:31 +00:00
fgsch
aada1aebe5 - Integrate COMMENT.
- bump NEED_VERSION.
- Add HOMEPAGE.
2001-05-05 22:56:14 +00:00
espie
b186afd8b2 , -> : in flavor deps. 2001-05-05 21:28:04 +00:00
naddy
dcd3e3fcff - Fix MASTER_SITES.
- Pull COMMENT into Makefile while we're here.
Submitted by maintainer.
2001-04-22 21:12:23 +00:00
obecian
f67415d160 update to crank-0.1.1
(BUGFIX: resolved segfault on execution)
2001-04-21 03:32:32 +00:00
wilfried
50eef9f0b3 give unnumbered ports a version number 2001-04-19 10:41:14 +00:00
avsm
1597e2b535 update to p5-Crypt-SSLeay-0.25 and integrate COMMENT 2001-04-18 21:47:12 +00:00
reinhard
cbf72a17e0 better fetch target for idea flavor 2001-04-17 20:53:04 +00:00
shell
91d63998f0 Change MAINTAINER email address 2001-04-17 06:37:33 +00:00
peter
344e90dd29 add p5-GnuPG, p5-GnuPG-Interface and p5-GPG
my oversight - again. need to stop trying to give up coffee.
2001-04-14 10:26:17 +00:00
peter
474f2278fd update GnuPG interfaces to ignore dependency on specific gnupg version
update NEED_VERSION
2001-04-13 20:19:10 +00:00
bmc
852f6d502f * integrated COMMENT
* bumped NEED_VERSION
* updated my address

ok obecian@
2001-04-12 15:59:15 +00:00
peter
30c7ec4b4a import GPG-0.06 2001-04-11 14:35:55 +00:00
espie
2da58bdddf Chris is doing other things, and doesn't currently have time to maintain
ports -> revert these to default MAINTAINER.
2001-04-10 14:01:19 +00:00
avsm
a646a606df put COMMENT at the top 2001-04-10 00:17:38 +00:00
avsm
7b1f853815 put COMMENT at the top, and shorten slightly 2001-04-09 13:25:08 +00:00
brad
3b852de2c7 upgrade to scanssh 1.55 2001-04-06 16:58:32 +00:00
avsm
3e8a480750 apostrophe police 2001-04-05 22:21:48 +00:00
peter
e601840d4e Am I embarrased; these two ports really do need GnuPG to work 2001-04-05 21:12:40 +00:00
peter
3d73aa841a GPG::Interface and it's associated modules are designed to provide
an object-oriented method for interacting with GnuPG, being able
to perform functions such as but not limited to encrypting, signing,
decryption, verification, and key-listing parsing.
2001-04-05 15:34:48 +00:00
peter
49d2a3a103 missed some commented out deps 2001-04-05 15:20:02 +00:00
peter
70df890da8 GnuPG is a perl interface to the GNU Privacy Guard. It uses the
shared memory coprocess interface that gpg provides for its wrappers.
It tries its best to map the interactive interface of the gpg to a
more programmatic model.
2001-04-05 15:11:21 +00:00
avsm
3f58909adb Integrate COMMENT, bump NEED_VERSION
From: Shell Hung <i@shellhung.org>
2001-03-29 17:37:40 +00:00
reinhard
5bb13cf514 update to smbsniff-0.0.1b
*) ${PREFIX}/bin -> ${PREFIX}/sbin
*) integrate COMMENT
*) bump NEED_VERSION
2001-03-28 14:20:29 +00:00
obecian
3ddc7889cb kill pkg/COMMENT 2001-03-28 09:43:30 +00:00
obecian
b0a75aed3b + integrate COMMENT
+ bump NEED_VERSION
2001-03-28 08:33:55 +00:00
todd
0421c85fc6 move COMMENTS to Makefile's 2001-03-26 15:58:17 +00:00
jakob
33df7372f6 update to v0.8.9 2001-03-25 22:35:45 +00:00
jakob
85ce1136fe update to v0.2.4 2001-03-25 22:34:44 +00:00
matt
c5d394a42b move COMMENTs into Makefiles 2001-03-25 19:17:45 +00:00
jakob
3e8e077b48 quote COMMENT; <kwesterback@home.com> 2001-03-25 18:17:18 +00:00
jakob
1d0220ad49 move COMMENT into Makefile & touch NEED_VERSION 2001-03-24 19:55:27 +00:00
avsm
e1b305a16e - update LIB_DEPENDS for new libmcrypt
- bump NEED_VERSION
- move COMMENT into Makefile
2001-03-24 01:34:45 +00:00
avsm
ef2ce67c14 - upgrade to libmcrypt-2.4.10
- bump NEED_vERSION
- move COMMENT file into Makefile

This update has bugfixes in the blowfish[-compat] modules
2001-03-24 01:34:00 +00:00
reinhard
fb98f9a8d8 kill pkg/COMMENT 2001-03-23 16:30:16 +00:00
reinhard
36bdf033ff SECURITY UPDATE (Klima-Rosa attack)
patch from:
Florian Weimer <Florian.Weimer@RUS.UNI-STUTTGART.DE>
# http://cert.uni-stuttgart.de/files/fw/gnupg-klima-rosa.diff
# http://cert.uni-stuttgart.de/files/fw/gnupg-klima-rosa.diff.asc

It introduces additional consistency checks, as suggested by the
authors of the paper.  The checks are slightly different, but they
make the two additional attacks infeasible, I think.  In the future,
it might be a good idea to add a check the generated signature for
validity, this will detect bugs in the MPI implementation which could
result in a revealed secret key, too.


ok markus@
2001-03-23 13:10:20 +00:00
brad
3e8d522623 - mkdir -> ${INSTALL_DATA_DIR}
- kill off FreeBSD-ism (NOPORTDOCS knob)
--
Patch from: Pete Fritchman <petef@databits.net>
2001-03-22 22:06:35 +00:00
danh
486bb2b44d +p5-Crypt-CBC
+p5-Crypt-DES
2001-03-19 04:37:39 +00:00
danh
3a903bc6ea Import of p5-Crypt-DES 2.03
This is Crypt::DES, an XS-based implementation of the DES cryptography
algorithm.
2001-03-19 04:35:55 +00:00
danh
a5130ef41c Import of p5-Crypt-CBC 1.25
This is Crypt::CBC, a Perl-only implementation of the cryptographic
cipher block chaining mode (CBC).  In  combination with a block cipher
such as Crypt::DES or Crypt::IDEA, you can encrypt and decrypt messages
of arbitrarily long length.
2001-03-19 04:33:12 +00:00
obecian
58d83f101a respect CC/CFLAGS (from wilfried@) 2001-03-17 20:44:43 +00:00
wilfried
b4ca092a9e * respect CC/CFLAGS
* redo patches with update-patches
2001-03-17 15:46:36 +00:00
avsm
5a99d3abad update to p5-Crypt-SSLeay-0.2 2001-03-17 00:38:34 +00:00
todd
1b14c73993 fix build process to obey CFLAGS 2001-03-16 16:39:31 +00:00
wilfried
c3ea3d09d1 respect CFLAGS, modernize old patch files, ok maintainer 2001-03-16 10:24:05 +00:00
wilfried
f83f632cbe + klaxon 2001-03-15 20:57:16 +00:00
wilfried
e8d0fa9816 Initial import of klaxon-1.5
small service wedge to do ident lookup on connecting party

Submitted by:  Jose Nazario <jose@crimelabs.net>
2001-03-15 20:54:30 +00:00
brad
2e976c506f another dist site. 2001-03-15 12:45:42 +00:00
jakob
8c9733fab2 update to v1.1.9. this release is a bugfix release. it fixes a serious
problem in the parsing of rules. everyone should upgrade.
2001-03-14 13:19:47 +00:00
brad
ba3ca92ec5 upgrade to scanssh 1.5 2001-03-12 17:01:34 +00:00
wilfried
8b42118511 respect CC/CFLAGS 2001-03-12 15:20:13 +00:00
dugsong
2dc66e8f21 missing msgsnarf - pointed out by <jakob@crt.se> 2001-03-09 18:10:42 +00:00
jakob
ed53ba135b update to dat-4127; niklas@ 2001-03-08 20:26:14 +00:00
avsm
6bf1e99ab1 update libmcrypt library depend, spotted by inphobia.bsd@pandora.be 2001-03-06 08:34:02 +00:00
kevlo
cdfded3d2d Add portsentry 2001-03-06 07:28:14 +00:00
kevlo
7a61bc3845 Initial import of portsentry 1.0
portsentry is a port scan detection and active defense tool.
2001-03-06 07:26:59 +00:00
brad
c7494118eb fixup Makefile 2001-03-05 18:54:06 +00:00
brad
a184931e0b - trim out unnecessary mention of additional modules
- better entry for FLAVORs
2001-03-05 18:53:10 +00:00
brad
2a744b66b0 - hardcoded --enable-shared -> ${CONFIGURE_SHARED}
- add libtool patches
- use new framework for PLISTs when dealing with shared libraries
- add missing @dirrm tags to PLIST
2001-03-05 17:20:08 +00:00
danh
bf589a9e6e MAINTAINER set to ports@openbsd.org.
Received no response from these individuals in a request for their real
names to be added to MAINTAINER.
2001-03-03 19:26:10 +00:00
reinhard
3a4405288e patches for idea flavor 2001-03-03 17:20:26 +00:00
reinhard
f4aa1ff9a5 o) minor fix for one of the MASTER_SITES; Pete Fritchman <petef@databits.net>
o) use /dev/arandom; suggested by markus@
o) add idea FLAVOR; suggested by markus@
o) add another MASTER_SITE
o) bump NEED_VERSION
2001-03-03 17:17:28 +00:00
naddy
65f5600a07 ONLY_FOR_ARCH -> ONLY_FOR_ARCHS 2001-03-02 02:12:50 +00:00
jakob
a4ceebd9e8 sync PLIST/PFRAG with latest OpenSSL changes; todd@ 2001-03-01 07:51:24 +00:00
naddy
db5feb6b92 - replace dead MASTER_SITE with working ones (verified) plucked from
ftpsearch
- simplify build
- we don't preformat ports man pages
- use INSTALL_ macros
- respect CC and CFLAGS
- reformat DESCR
ok turan@
2001-02-28 21:40:56 +00:00
jakob
7213bcf2a6 remove id-tag 2001-02-28 19:31:07 +00:00
jakob
631823542f fix building with -current. problem noted by ho@, patch from assar@. 2001-02-28 16:26:46 +00:00
avsm
af52d69683 correct bad LIB_DEPENDS (two colons, not one) 2001-02-26 04:48:29 +00:00
brad
1258bf05f5 libnet has a shared library now 2001-02-26 04:02:35 +00:00
brad
6368ae3671 remove extra dependency 2001-02-26 03:57:45 +00:00
brad
002fe93019 reorganize Makefile and remove unnecessary extra dependency. 2001-02-26 03:53:05 +00:00
espie
6557a71018 Remove junk from MASTER_SITES 2001-02-24 18:05:18 +00:00
jakob
56dc6d6c3a update to stunnel v3.14.
--
This release fixes a bug in pid creation.  If a user specified -P /dirname
instead of -P /dirname/ stunnel would assume that it's a file, delete it and
create a new one.  Now stunnel makes sure if it's really a file.
2001-02-23 14:39:15 +00:00
avsm
36def2cc30 add pgp/pgp5 flavors for p5-PGP-Sign 2001-02-22 20:19:15 +00:00
avsm
0443466ba5 + p5-PGP-Sign 2001-02-22 19:37:58 +00:00
avsm
e058281ba3 Initial import pf p5-PGP-Sign-0.16
Based on a tarball from Shell Hung <i@shellhung.org>

--
This module sprung out of a need to do one thing and one thing only,
do it securely, and do it well.  This module creates and checks
detached signatures for data.  That's it.  If you want to do anything
else that PGP lets you do, look elsewhere.
2001-02-22 19:37:02 +00:00
obecian
2ca52d3559 bfbtester 2.0 update 2001-02-22 06:59:26 +00:00
jakob
f71768cf70 update to dante v1.1.8 (contrib missing from last version) 2001-02-20 22:46:00 +00:00
danh
5ee629216a sync libtool patches 2001-02-20 20:52:21 +00:00
danh
e3e7dbad90 sync libtool patches 2001-02-20 18:40:33 +00:00
danh
935653e6ac sync libtool patches 2001-02-20 18:09:54 +00:00
brad
86d49e678d upgrade to scanssh 1.4 2001-02-20 14:01:29 +00:00
jakob
5a68de168b update to Dante v1.1.7.
--
Compared to the previous release, this version brings amongst other
changes the following:

 o Support for giving interfacenames as internal/external address.

 o contrib/ directory added.

 o contrib/sockd-stat.awk, provides statistics based on sockd logfiles.
   Contributed by Stephan Eisvogel <eisvogel@hawo.stw.uni-erlangen.de>.

 o If gethostbyname() fails, treat it as if resolveprotocol was set to
   fake, meaning we hope the socksserver will be able to resolve it.
   Will presumably make certain dns configurations work better for
   client.

See the NEWS file for a more complete list.
2001-02-20 08:04:19 +00:00
danh
8fb2bcf379 use included libtool; sync patches 2001-02-19 17:44:52 +00:00
jakob
b2bebdd921 add heimdal 2001-02-17 11:57:40 +00:00
jakob
65449e30d0 heimdal, a free kerberos 5 implementation 2001-02-17 11:57:18 +00:00
jakob
97552c9110 change to redhat_base for linux emul 2001-02-17 11:34:21 +00:00
dugsong
0e049ad10e upgrade to version 0.2. looks good, niels! :-) 2001-02-14 03:02:35 +00:00
brad
8fcc3373df This should not be prefixed with the name of the program, start with
"a" and there is no need for "free" in the COMMENT.
2001-02-14 00:51:35 +00:00
matt
afbff691b5 update to 1.0.7a 2001-02-13 03:00:11 +00:00
jakob
680a1bf575 update to dat-4120 2001-02-12 20:13:39 +00:00
jakob
161adf09e1 add scanssh 2001-02-12 19:53:00 +00:00
jakob
713abef355 scanssh port 2001-02-12 19:52:17 +00:00
obecian
cafa37ef68 security/Makefile adjustment for new security/crank port 2001-02-06 08:10:23 +00:00
obecian
66f3bffd10 Crank is short for "CRyptANalysis toolKit", and its overall purpose
is to provide a powerful and extensible environment for solving
classical (pen-and-paper) ciphers, providing as much automation as
possible. Classical ciphers include common schemes like monoalphabetic
substitutions, where each letter of the alphabet is mapped to another
(usually different) letter consistently through the text. The first
version of Crank is restricting itself to these special ciphers. Other
algorithms forever devoid of Crank's attentions include Enigma, RSA,
DES, MurkelFish, or anything else invented after 1900.
2001-02-06 08:07:48 +00:00
avsm
bb5e5d3a0b - upgrade to libmcrypt-2.4.9
NEWS:
- Due to an endianness handling problem Blowfish algorithm was not compatible
  with other implementations. Now it has been corrected. If you want
  to access the old algorithm used use the "blowfish-compat" module.
- Fixes in mcrypt_list_algorithms() for some systems. Bugs pointed out by
  Jonathan Woolmington <jwool@ind.tansu.com.au>
- Fixes in stream mode.
- mcrypt_generic_init() no longer fails if smaller key is used. It uses
  the most appropriate key size of the algorithm and pads with zeros.
- Fixes in wake algorithm (and support for IV).
- IV is now used in arcfour (arcfour-iv is now longer used).
  Speedups in Arcfour.
2001-02-05 08:18:26 +00:00
reinhard
e7797db1c1 +smbsniff 2001-02-04 19:33:48 +00:00
reinhard
7734822c45 Smbsniff is a LanManager packet sniffer that will write to your
disk all the files shared and the documents printed in a LanManager
environnement (all the Microsoft and Samba machines using LanManager
protocol to share data).
This is a proof of concept to show that LanManager (CIFS) is an
extremely insecure protocol.
2001-02-04 19:30:07 +00:00
jakob
fca35cf978 update to v3.13;
- pthread_sigmask() argument in sthreads.c corrected.
- OOB data is now handled correctly.
2001-02-02 12:03:42 +00:00
avsm
769dbb079f Upgrade to p5-Crypt-SSLeay-0.22
Minor bug fixes
2001-01-30 10:31:20 +00:00
dugsong
7d13ad9b7b typo, noted by dengue@deadly.org 2001-01-29 05:01:11 +00:00
brad
a6159b2950 - add ONLY_FOR_ARCHS and list archs that support shared libraries and
dynamic loading.
- patch autoconf so dante does not compile with debugging symbols
- add libtool patches
2001-01-22 17:15:28 +00:00
brad
e844819305 - sort PLIST
- add RCS id
- better COMMENT
2001-01-22 14:49:44 +00:00
jakob
8f91c8cd51 dat-4116 2001-01-21 16:22:18 +00:00
jakob
6406622d74 fix broken piddir 2001-01-19 18:39:50 +00:00
matt
38ccbb4d16 fix gmp detection bug; 1.0.7 will have this fix included 2001-01-13 03:32:07 +00:00
avsm
b31d74b312 - update to p5-Crypt-SSLeay-0.21
- our patch incorporated into source, no longer needed
2001-01-11 13:56:48 +00:00
kevlo
ac85b27d19 Remove .packlist 2001-01-11 01:44:31 +00:00
brad
3c029b90d8 USE_X11 2001-01-10 01:19:49 +00:00
avsm
9cea9c33d0 stoopid cvs seemed to miss this file in previous commit 2001-01-09 23:38:15 +00:00
avsm
7ef04a943e - update to p5-Crypt-SSLeay-0.19
- bump NEED_vERSION
- regenerate using update-patches
- new patch cures a bad \ which shouldn't be there (fed back to author)
2001-01-09 23:30:44 +00:00
kevlo
ab64d0d0dc Remove .packlist 2001-01-09 03:16:54 +00:00
avsm
3fdc6aad7e cull .packlist from the PLIST 2001-01-08 21:07:39 +00:00
kevlo
b351e70950 Add p5-Crypt-Blowfish and p5-Crypt-Twofish 2001-01-06 15:59:31 +00:00
kevlo
36dd7b707a Initial import of Crypt-Twofish-1.0
This module to implement the Twofish cipher
2001-01-06 15:58:22 +00:00
kevlo
9cc7a45224 Initial import of Crypt-Blowfish-2.06
This interface to the Blowfish encryption alogorithm
2001-01-06 15:57:15 +00:00
avsm
f770298716 new MASTER_SITES 2001-01-06 11:18:33 +00:00
avsm
181f3d7cdf - update to libmcrypt-2.4.8
- our patch has been incorporated into source; removed from here
- new MASTER_SITE, bump NEED_VERSION
2001-01-06 11:17:36 +00:00
danh
eaced7c960 +despoof 2001-01-05 23:26:15 +00:00
danh
c8f4c24fc5 command-line anti-spoofing detection utility
Submitted by:	Brian Caswell <bmc@mitre.org>
2001-01-05 23:25:06 +00:00
brad
c7881f6a8a bye bye NO_CDROM and MIRROR_DISTFILE 2001-01-05 16:35:58 +00:00
avsm
110bcd1017 correct RCS tag 2001-01-04 11:36:04 +00:00
kevlo
8a50246126 Add p5-MD5 2001-01-04 02:10:00 +00:00
kevlo
549822c289 Initial import of MD5-1.7
This module is the interface to md5 message-digest algorithm.
2001-01-04 02:09:18 +00:00
espie
d4830cdc18 trim unneeded parts, dammit. 2001-01-04 00:03:01 +00:00
danh
b087bd72b4 +slurpie 2001-01-03 22:35:35 +00:00
danh
4fb9d93ace Slurpie is a passwd file cracker similar to CrackerJack and John
the Ripper except that it can be run in a distributed environment
(multiple computers aka nodes).

Submitted by:	Brian Caswell <bmc@mitre.org>
2001-01-03 22:34:09 +00:00
matt
7328d212f1 - up to 1.0.6
- patch included libtools
- use ports gmp now that our gmp is gone
- make included scripts more readable
2000-12-28 16:07:05 +00:00
jakob
565b70f0a4 update to v3.11 2000-12-27 10:10:08 +00:00
reinhard
64f02cb85e increment PKGNAME; thx naddy@ for pointing out 2000-12-23 16:48:06 +00:00
reinhard
5e2899097a Security update, from the original patch:
It has been pointed out that there is another bug in the signature
verification code of GnuPG.

         * This can easily lead to false positives *

All versions of GnuPG released before today are vulnerable!

To check a detached singature you normally do this:

  gpg --verify foo.sig foo.txt

The problem here is that someone may replace foo.sig with a standard
signature containing some arbitrary signed text and its signature,
and then modify foo.txt - GnuPG does not detect this - Ooops.

The solution for this problem ist not easy and needs a change in the
semantics of the --verify command: It will not any longer be
possible to do this:

  gpg --verify foo.sig <foo.txt

Instead you have to use this

  gpg --verify foo.sig - <foo.txt

The difference here is that gpg sees 2 files on the command lines
and thereby knows that it should check a detached signature.  We
really need this information and there is no way to avoid that
change, sorry.  You should make sure that you never use the first
form, because this will lead to false positives when foo.sig is not
a detached signature - gnupg does detect the other case and warns
you, but this is not sufficient.  If you use GnuPG from other
applications, please change it.

ok markus@
2000-12-23 15:20:59 +00:00
naddy
abfa9851a8 If HOMEPAGE is defined in Makefile, reference it in DESCR, too.
authorized by espie@

Fix a few minor cosmetic issues along the way.
2000-12-21 21:20:34 +00:00
dugsong
814be5ac70 update checksum, i suk 2000-12-20 13:53:14 +00:00
espie
c287b9d0c1 Missing ports 2000-12-19 15:30:47 +00:00
naddy
beb20af917 Add pointer to home page. 2000-12-19 11:54:46 +00:00
obecian
8e18f618f5 stunnel-3.9 update
Version 3.9, 2000.12.13:
* Updated temporary key generation:
   - stunnel is now honoring requested key-lengths correctly,
   - temporary key is changed every hour.
* transfer() no longer hangs on some platforms.
  Special thanks to Peter Wagemans for the patch.
* Potential security problem with syslog() call fixed.
2000-12-19 05:46:03 +00:00
dugsong
7de996922a update to dsniff-2.3 2000-12-18 13:16:41 +00:00
brad
ce5ed433c2 - cleanup Makefile
- remove USE_LIBTOOL
- sync patch-ltconfig with my original patch
- add missing patch-ltmain.sh
- fixup PLISTs
2000-12-14 17:37:40 +00:00
espie
4bce863756 Fuck cvs, missed file again.
Make update to r11 effective.
2000-12-11 18:19:52 +00:00
obecian
a97326dff8 MASTER_SITES update
found by Brian Poole <raj@cerias.purdue.edu>
2000-12-09 05:19:29 +00:00
brad
801d914a55 oops, remove SEPARATE_BUILD. I'll come back later and fix the one minor
bug with installing the man page when using SEPARATE_BUILD.
2000-12-08 00:01:22 +00:00
brad
4f697a54b3 upgrade to mhash 0.8.3 2000-12-07 18:31:21 +00:00
avsm
f171a88d7a add in mcrypt and libmcrypt 2000-11-27 15:58:05 +00:00
avsm
91cb19a468 import mcrypt-2.5.5
--

mcrypt is intended to be a replacement of the old unix crypt(1)
under the GNU General Public License. Unix crypt(1) was a popular
file encryption program in unix boxes.

It was based on the Enigma encryption algorithm but it was considerable
trivialized. Since this was not adequate, even for individual privacy
needs, mcrypt was created as a similar program using some modern
block encryption algorithms.

Mcrypt also has a compatibility mode with unix crypt(1) and with
Solaris des(1). It supports all the algorithms and modes found in
libmcrypt and it is very extendable.

At the time writing this, it supports the algorithms: BLOWFISH,
TWOFISH, DES, TripleDES, 3-WAY, SAFER, LOKI97, GOST, RC2, RC6, MARS,
IDEA, RIJNDAEL, SERPENT, CAST, ARCFOUR and WAKE.

Block algorithms are implemented in modes: CFB, CBC, ECB, OFB (8
bit and n bit, where n is the size of the algorithm's block length).
For a brief description of the algorithms and the modes look at the
mcrypt manpage (this may be out of date).  In mcrypt it is on the
user to decide which algorithm he considers best for encrypting his
data.
2000-11-27 15:56:03 +00:00
avsm
7769275ab2 import of libmcrypt-2.4.7
--

libmcrypt is the library which implements all the algorithms and
modes found in mcrypt. It is currently under development but it
seems to work pretty good.

Unlike most encryption libraries libmcrypt does not have everything
(random number generators, hashes, hmac implementation, key exchange,
public key encryption etc.).  Libmcrypt only implements an interface
to access block and stream encryption algorithms.

Its purpose was to assist in the development of mcrypt by providing
a uniform interface to access several different encryption algorithms,
so that the main program is independent of the encryption algorithms
and the modes used.

Libmcrypt supports the algorithms: BLOWFISH, TWOFISH, DES, TripleDES,
3-WAY, SAFER-sk64, SAFER-sk128, SAFER+, LOKI97, GOST, RC2, RC6,
MARS, IDEA, RIJNDAEL-128 (AES), RIJNDAEL-192, RIJNDAEL-256, SERPENT,
CAST-128 (known as CAST5), CAST-256, ARCFOUR and WAKE.  Block
algorithms can be used in: CBC, ECB, CFB and OFB (8 bit and n bit,
where n is the size of the algorithm's block length).
2000-11-27 15:41:46 +00:00
jakob
821a4a7f10 update to v1.1.6.
***  Tuesday, November 21, 2000 -- Dante v1.1.6

 o fix a bug related to hostnamelength parsing in server.
   Thanks to "Thomas Jarosch" <thomas.jarosch@styletec.de>.
2000-11-21 10:38:25 +00:00
camield
eb22302678 - update to version 2.2 (no longer requires any patches)
- make adding users more user-friendly in MESSAGE

From maintainer: Joshua Stein <jcs@rt.fm>
2000-11-20 07:38:02 +00:00
jakob
dfa4244b6b update to v1.1.15. NEWS excerpt:
***  Monday, October 16, 2000 -- Dante v1.1.5

 o New prototype for gethostbyaddr in RedHat 7.0 added.
   First reported by Paul R Streitman <prs@us.ibm.com>.

 o RedHat needs libnsl for tcpwrappers to work.

***  Thursday, October 5, 2000 -- Dante v1.1.4

 o fix bug affecting clients going through socks v4 servers.
   Reported and nicely diagnosed by Jack Keane (jkeane@OpenReach.com).

 o increase default listen backlog to 511, based on request by
   Doug Hardie (bc979@lafn.org).

***  Monday, September 25, 2000 -- Dante v1.1.3

 o some fixes/additions to example/ files.

 o HP-UX 11.00 should now work.
   Thanks to Malte Cornils <malte@cornils.net> for testing.

 o httpproxysupport in client (meaning "socksify" can work
   when going through webproxies too).

 o expire badmarking on bad/non-working routes/proxyservers after
   configured time.  Default to never expiring, as in previous
   versions.  See BADROUTE_EXPIRE in config.h.

 o say what address we expected the bindreply to come from in
   "unexpected bindreply ..."

 o don't close controlconnection if another socket is using it.
   Fixes a bug triggered when using the bindextension in certain
   cases.  Problem reported by Jacques A. Vidrine (n@nectar.com).

 o compilation outside source directory fixed, based on patch from
   NISHIMURA Daisuke <nishi@graco.c.u-tokyo.ac.jp>

 o bsdi uses elf; NISHIMURA Daisuke <nishi@graco.c.u-tokyo.ac.jp>

 o dlib/hostcache.c now compiled again. First reported by
   "Jacques A. Vidrine" <n@nectar.com>
2000-11-19 12:26:07 +00:00
dugsong
2886304e62 fix port - markus@ 2000-11-18 06:27:25 +00:00
espie
82f34a7ab5 r10 vanished.
r11 includes most patches.

+ gcc -shared to build object module.
2000-11-02 17:39:46 +00:00
espie
1c1b99c22d Repair john.
Flavorize k6, as package buildings should be reproducible
2000-10-31 14:53:58 +00:00
markus
07aae00303 security update, since 1.0.3 does not detect modifications of files with multiple signatures 2000-10-30 12:52:32 +00:00
espie
aff2e05260 Maintainer 2000-10-22 17:02:40 +00:00
espie
64eb9106d9 Another one 2000-10-22 16:30:10 +00:00
espie
03116ad3c6 A few more. 2000-10-22 16:21:17 +00:00
espie
46b5f232b5 Kill
FAKE=Yes
HAS_CONFIGURE, GNU_CONFIGURE, USE_IMAKE, NO_INSTALL_MANPAGES, USE_AUTOCONF
and bump NEED_VERSION accordingly.
2000-10-22 15:41:23 +00:00
espie
aa4a7733cc Complete a few MAINTAINER names. 2000-10-22 14:02:46 +00:00
espie
944fbc0454 Fix bogus dependency.
I shouldn't have to do this. Jakob, your quality control is lacking...
2000-10-22 12:45:36 +00:00
fgsch
45aeb71d96 add real names to MAINTAINER. 2000-10-16 13:30:30 +00:00
avsm
ffbbe033d3 add real name to MAINTAINER and minor cleanups 2000-10-09 00:18:48 +00:00
jakob
f3f6dc0a6e rename patchfile 2000-10-08 22:35:56 +00:00
jakob
ce7dadcdb0 add fullname to MAINTAINER 2000-10-04 21:53:59 +00:00
jakob
2ef981add6 add mhash & shash 2000-10-04 21:18:00 +00:00
jakob
69f32fc494 secure hash generator 2000-10-04 21:16:18 +00:00
jakob
daf5e064a7 secure hash library 2000-10-04 21:11:09 +00:00
dugsong
3997978a57 update to 1.1.1 2000-10-03 05:41:01 +00:00
dugsong
e09d6443dc PFRAG, not PLIST. i suk 2000-10-02 20:21:36 +00:00
dugsong
d2c01dc9e2 add no_x11 flavor 2000-10-02 20:06:07 +00:00
matt
501c5c5bdd reflect DIST_SUBDIR change 2000-10-01 00:45:03 +00:00
matt
588bbc9101 - update to 1.0.5
- patch names, MAINTAINER -> current conventions
2000-10-01 00:41:45 +00:00
matt
a6ba53fea6 - update to 1.0.5
- patch names, MAINTAINER -> current conventions
2000-10-01 00:35:50 +00:00
avsm
5c943aea03 add p5-Crypt-SSLeay to subdir list 2000-09-29 10:24:33 +00:00
avsm
08fd8852b8 import CPAN module p5-Crypt-SSLeay-0.17
--

This Perl module provides support for the https protocol under LWP,
so that a LWP::UserAgent can make https GET & HEAD & POST requests.

Please see 'perldoc LWP' for more information on POST requests.
2000-09-29 10:20:46 +00:00
brad
f99c40395e - use DISTNAME as part of PKGNAME
- better COMMENT
- sort PLIST and add missing @dirrm tags
2000-09-28 22:19:01 +00:00
avsm
ebbd2e1767 - update to latest version 2.12
- correct bad master site subdirectory
- bump NEED_VERSION
- add MAINTAINER name

ok'ed by maintainer
2000-09-26 17:25:15 +00:00
jakob
c56c52ded2 update to version 4094 2000-09-25 21:16:33 +00:00
brad
3918ceb4a1 add name to MAINTAINER 2000-09-24 07:03:59 +00:00
aaron
41a5d86f80 Fix some pkg/COMMENT formatting:
- Decapitalize first letter of comment if appropriate.
- Remove trailing blank lines.
- Remove punctuation.
- Remove version numbers which are often overlooked when updating.
- espie@ ok
2000-09-22 14:55:55 +00:00
brad
1ea6743d0d upgrade to gnupg 1.0.3 2000-09-19 13:18:50 +00:00
obecian
620e0ba79d cvs forgot the parent Makefile 2000-09-18 09:08:25 +00:00
obecian
2abc3ac9e1 patched client.c to avoid segfaults on user/pass list exhaustion
updated port to comply with -current changes
2000-09-18 08:51:31 +00:00
avsm
c02ec69931 Update from 2.2 -> 3.0.1
It now FAKEs, and installs in a nice clean CPAN way

- CONFIGURE_STYLE is perl now, remove a lot of old manual code
- remove all old patches, and add in a new one which cleans up
  the program a bit (remove small linux specific hacks)

thanks to brad@ for the review
2000-09-17 20:01:40 +00:00