Tales from the Gryphon

Archives for 2005/03

  • Edit this page
  • RecentChanges
  • History
  • Preferences
  • ?Discussion
Tales from the Gryphon ::  archives ::  2005 :: 

Relevant Links

  • New key
  • GPG key
  • PGP key
  • Policy

Categories(89)

  • Books(29)
    • Action(3)
    • Classics(1)
    • Espionage(9)
    • Fantasy(10)
    • Fiction(1)
    • Sci-Fi(5)
  • Debian(8)
    • Official(2)
  • Software(26)
    • Arch(1)
    • Git(4)
    • Packaging(7)
    • Debian(9)
    • IkiWiki(2)
    • Security(3)
  • Movies(6)
  • SysAdmin(1)
  • Spam(10)
  • Travel(2)
  • Miscellaneous(6)

Archives

← 2010
Months
Jan Feb Mar Apr May Jun
Jul Aug Sep Oct Nov Dec
March
Sun Mon Tue Wed Thu Fri Sat
  1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30 31      

Indices

  • 2004
    • 05
    • 06
    • 07
    • 10
    • 11
  • 2005
    • 03
    • 05
    • 06
  • 2006
    • 01
    • 08
    • 12
  • 2007
    • 01
    • 08
    • 11
    • 12
  • 2008
    • 01
    • 04
    • 05
    • 06
  • 2009
    • 02
    • 03
    • 04
    • 05

My Books:
Widget_logo


Valid XHTML 1.1 Valid CSS! Linux Counter #69681 RSS Valid Ikiwiki hacker emblem

Manoj's hackergotchi
Add a new post titled:
Saturday 12 March
2005
The SELinux UML page updated
[
  • software :: 
  • security :: 
]

Posted late Friday night, March 12th, 2005

I finally got around to updating the SELinux UML recipe page to the latest 2.6.11.2 kernel. Of course, the new linux UML kernel expects a newer version of SELinux policy (19) than I had in my root_fs, so I’ll have to rebuild a new root file system. I wanted to get the newest version of the SELinux tools into Sid, but I seem to be coming down with a flu like thing. Since I would like to see Etch be SELinux capable, it is important that the barrier of entry be low for people wanting to play around with it.

Manoj

Thursday 10 March
2005
Project Leader Candidate rebuttals posted
[
  • debian :: 
  • official :: 
]

Posted Thursday night, March 10th, 2005

Well, all but one, since we still do not have one of the contributions in. I also think we have an agreement about the timing of the IRC debate, so we are well on our way to having a properly educated and primed electorate. As always, look at the vote page for details.

While working on my key-signing-helper script, I came across examples of IO::Select usage that I think shall benefit devotee, though I am leery of changing things this close to a vote. Oh, well, I guess the new gpg output processing code shall see the light of day with the first GR of the season.

Manoj

Thursday 10 March
2005
Guessnet: welcome back
[
  • misc :: 
]

Posted Thursday night, March 10th, 2005

A while ago, my guessnet setup started messing up, just before a business trip, and I did not have the time to debug the error. After a quick consult on IRC, I installed and configured laptop-net, which worked.

While I had a working package that would let me carry my laptop from home to LUG to office, and various trips with Hotel networks once in a while, I always had to tell the system which scheme to use, since several of the networks used similar IP addresses and topologies (welcome to the world of NAT). I have never been comfortable with the fact that laptop-net did not consider MAC addresses while making its determinations.

laptop-net, on the other hand, is like a combination of ifplugd, intuitively, and switchconf, except better since it is all integrated and works seamlessly. guessnet does seem to work better for me, though, if for nothing else since it can actually determine where the laptop finds itself. I have successfully integrated guessnet in with ifplugd, and made sure that things play nice even with hotplug in the picture. So I am a happy Guessnet camper once again.

Manoj

Monday 07 March
2005
Securing Debian: SELinux integration into Etch
[
  • software :: 
  • security :: 
]

Posted Monday afternoon, March 7th, 2005

Well, yes, that sounds somewhat pompous. But I do think this is a worthwhile release goal; from where I stand I think that hard-hat security is a critical option for any OS to remain viable in the current security conscious environment, and Debian, after a period of being well ahead of the curve (thanks to Russell Coker, Colin Walters, Brian May, and others), has fallen well behind entities like Red Hat and Gentoo when it comes to providing a hardened, secure platform.

So, along with a few other people (Greg T. Norris, Lorenzo Garcia-Heirro), I have started a mini project to bring Debian’s SELinux patched packages back in sync with the latest upstream and the latest SELinux patches, and to make it easier for Debian developers to access SELinux patches. The only package that is ready to go is coreutils, and that is thanks to Greg.

I’ve just come back from the Se-Linux symposium, followed by the Central Pennsylvania LUG Security conference, which was a lot of fun. I also managed to get myself talked into upgrading to the X Org server, which is to be 3expected after spending two days sitting Next to Jim Gettys at a conference watching the neat gizmos.

And, if I get through this key signing process, I may get my key connectivity ranking up again (also thanks to getting it signed by Russell Coker). Of course, due to my weird key signing protocol this is more tedious than the norm, but hey, that’s what you get for trying to add value to your signature.

Manoj


Webmaster <webmaster@golden-gryphon.com>
Last commit: Wednesday afternoon, January 7th, 2009

License: GPL

Last edited Wednesday afternoon, January 7th, 2009