Gentoo Archives: gentoo-security

From: Mark Guertin <guertin@××××××××××××××.com>
To: J Holder <trs-gml@××××××××××.com>
Cc: gentoo-security@l.g.o
Subject: Re: [gentoo-security] Built in integrity?
Date: Tue, 10 Feb 2004 00:09:50
Message-Id: 62035B48-5B5D-11D8-A6CB-000A95DC1AB2@brucemaudesign.com
In Reply to: Re: [gentoo-security] Built in integrity? by J Holder
1 On 9-Feb-04, at 6:12 PM, J Holder wrote:
2
3 >> could these md5's be used? maybe have portage make the files
4 >> immutable,
5 > and find some way to protect them from anyone but root, since if
6 > they've
7 > got root i doubt they would be going to all the trouble of doing that,
8 > unless they want to use your box as a hole for something else, maybe a
9 > way to keep those hashes on some type of removable media? usb flash
10 > devices and such anyone? maybe a floppy for just the binutils and such?
11
12 Tracking the MD5 sums that are stored wouldn't be very useful here.
13 They are for the source files only (and not the actual binaries that
14 would be replaced in the event of rooting).
15
16 Mark
17
18
19
20
21 --
22 gentoo-security@g.o mailing list

Replies

Subject Author
Re: [gentoo-security] Built in integrity? Joby Walker <zorloc@××××××××.org>