Adamantix support for Debian

Posted by stoyan Mon, 06 Feb 2006 09:26:00 GMT

From Peter Busser’s email to the RSBAC ML:

I have compiled a number of RSBAC and Adamantix packages for Debian Sarge . This allows Debian Sarge users to benefit from some of the Adamantix features…

Adamantix started like Hardened Debian. Using well tested and stable Debian base, they added a lot of modern security stuff: PaX , SSP , RSBAC , making the distro one of the best choices for servers. I was involved in the early stages of the project but stopped contributing, because I was short of time. Still I’m following their progress and I’m happy to see good stuff going to the mainstream Debian also.

For homework: Chicken – Scheme-to-C compilerCHICKEN is a compiler that translates R5RS Scheme into portable C using a technique developed by Henry Baker (“Cheney on the M.T.A.”).

Posted in SysAdmin, Security | no comments

AccessFS

Posted by stoyan Sat, 04 Feb 2006 00:21:00 GMT

Via Stu’s Diary :

AccessFS from Olaf Dietsche allows the system administrator to restrict access to a network port based on uid/gui, so that daemons no longer need to run as the root user:

# mount -t accessfs none /proc/access
# chown www /proc/access/net/ip/bind/80
# chown mail /proc/access/net/ip/bind/25

Posted in Security, SysAdmin | no comments

How To Protect Your Rails Apps Against XSS Attacks

Posted by stoyan Thu, 26 Jan 2006 17:05:00 GMT

Via Exploration Age

The issue of Cross Site Scripting (XSS) vulnerabilities in web applications has been getting a lot of attention lately due to hacks on high-profile sites such as LiveJournal…The attached file ( html_escaper.rb ) makes it easy to protect your Ruby on Rails applications from these attacks…

Posted in Ruby, Security, SysAdmin | no comments

Check your BitTorrent port forwarding

Posted by stoyan Sat, 31 Dec 2005 03:07:00 GMT

Is your router properly configured?

  • Download the .torrent file
  • Paste the torrent link into DumpTorrent
  • Copy the hash ID from its output into NatCheck page

Posted in SysAdmin, Security | no comments

Even better themes and authentication

Posted by stoyan Mon, 14 Nov 2005 00:08:00 GMT

(theme_generator version 1.3.0)

Theme Generator Shapes Up

  • The theme support is now completely encapsulated in a plugin
  • fully supports custom application views
  • supports using liquid templates
  • and it?¢‚Ǩ‚Ñ¢s dead simple to use ;)
acts_as_authenticated
rails myapp && cd myapp && ./script/plugin install \
  http://techno-weenie.net/svn/projects/acts_as_authenticated/
./script/generate authenticated user account
./script/generate authenticated_mailer user

Posted in Programing, Security, Ruby | no comments

Almost secure IM

Posted by sto Thu, 24 Feb 2005 22:53:29 GMT

Joi Ito's blog entry pointed me to Shinkuro – an engrish for synchro – IM, file sharing and collaboration software with a lot of crypto embedded: 2048-bit RSA key pair, 256-bit AES encryption on all messages. And POP3 with plain text ;)

Posted in Security, SysAdmin | no comments | no trackbacks

Powered
Ruby Blogs Directory
Performa
Box.net Refer