Gentoo Archives: gentoo-user

From: Miroslav Rovis <miro.rovis@××××××××××××××.hr>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Reading the (SSL) traffic with Pale Moon, WAS: from Firefox52: NO pure ALSA? Youtube... Audio: No
Date: Sun, 18 Dec 2016 18:15:59
Message-Id: 20161218181616.GA13242@g0n.xdwgrp
In Reply to: Re: [gentoo-user] Reading the (SSL) traffic with Pale Moon, WAS: from Firefox52: NO pure ALSA? Youtube... Audio: No by Walter Dnes
1 On 161218-02:04-0500, Walter Dnes wrote:
2 > > How come people are so little interested to read the traffic, to learn
3 > > how sites behave which they visit, and often to discover what sites
4 > > really do to them?
5 > >
6 > > I'll go and inquire at the Pale Moon forum about the issues above, and
7 > > will post there this exact question above, I think.
8 >
9 > This is a very obscure topic. Maybe nobody who knows about it read
10 > that post. I only read 3 sub-forums...
11 >
12 > * Announcements... for new versions, etc
13 > * Pale Moon for Linux... because I run the linux version
14 > * Contributed builds... I do an SSE-only contributed 32-bit build. It
15 > is useful for older Pentium 3 class machines, which will not run the
16 > regular Pale Moon build.
17 >
18 > I couldn't find anything about NSS logging on Google... except your
19 Why the Schmoog engine? duckduckgo.com is some much more privacy acceptable...
20
21 But there are links too in the page that I posted the patch, below...
22
23 > question. I followed the instructions in your post here, and that's how
24 > I got it to work. I did not know about it until you told me.
25
26 If Palemoon logs SSL-keys, then it must use some of openssl, libressl,
27 gnutls, or the Mozilla/Google/Oracle (IIRC), but primary Mozilla program
28 Network Security Services, dev-libs/nss-3.27.2 .
29
30 > > Wait... Did you need to patch the nss library to get the $SSLKEYLOGFILE
31 > > being written to? Like in this bug:
32 > >
33 > > >=dev-libs/nss-3.24 - Add USE flag to enable SSL key logging
34 > > https://bugs.gentoo.org/show_bug.cgi?id=587116
35 https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.24_release_notes#Notable_changes_in_NSS_3.24
36 https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/Reference/NSS_environment_variables
37 (from that Bugzilla page)
38 > >
39 > > Did you? (That's about the only patch there, that I submitted to
40 > > Bugzilla anywhere ;-) btw.)
41 >
42 > No patches required to the source code for that.
43 Probably that means what it meant in some of the Mozilla pages... That's
44 not good. Because it means the SSL-key logging is enabled by default.
45 Was in Firefox too. Not, it need to be at user's decision, compile time
46 only possible in Firefox, in optimize ebuilds, with my (minuscule) patch... But in
47 binary releases, it is enabled by default in Firefox...
48 > I do my own custom
49 > manual build, to eliminate the dependancy on dbus, plus other tweaks.
50 > That involves setting options in the mozconfig file, but no source code
51 > changes. If you want to do your own build, see my post on December 9th
52 > https://forum.palemoon.org/viewtopic.php?f=37&t=13898&start=20#p100625
53 > Note; this is version 2 of my build environment. You should see an
54 > attached file "pmmain.tgz" on that post. Do not use version 1, with
55 > (utils.tgz) in the first post of that thread.
56 You know why the no-dbus way above may be my only way of doing it? Or
57 for which reason I might have to give up?
58
59 The only way, because after:
60
61 $ git clone https://github.com/deuiore/palemoon-overlay
62
63 I grep'd a log of dbus lines in that repo :-( , so Palemoon has the dbus
64 dependency... Firefox does not. And not only in Gentoo.
65
66 (And I don't intend to install no poetterware whatsoever --dbus being at
67 least a relative, or maybe better defined as the precursor, which
68 prepared the way for poetterware, IMO.)
69
70 And that also may prove to be the reason that I might have to give up.
71 Which I will only do if it shows to be too difficult for me.
72
73 I've only just downloaded:
74 https://forum.palemoon.org/download/file.php?id=6761
75 from:
76 https://forum.palemoon.org/viewtopic.php?f=37&t=13898&start=20#p100625
77 so I don't yet know...
78
79 We'll see...
80 > --
81 > Walter Dnes <waltdnes@××××××××.org>
82 > I don't run "desktop environments"; I run useful applications
83 >
84
85 Thanks also to Martin Vaeth for his correcting of my assumption.
86
87 Regards!
88 --
89 Miroslav Rovis
90 Zagreb, Croatia
91 http://www.CroatiaFidelis.hr

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-user] Reading the (SSL) traffic with Pale Moon, WAS: from Firefox52: NO pure ALSA? Youtube... Audio: No Miroslav Rovis <miro.rovis@××××××××××××××.hr>